./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product50.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 2329fc70 Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product50.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8 --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 0552f986eafe304f33f56d4376c7c6a56e2d691e1035259c5c13e13b2a7157c1 --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-2329fc7 [2022-12-13 20:11:26,114 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-12-13 20:11:26,116 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-12-13 20:11:26,134 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-12-13 20:11:26,135 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-12-13 20:11:26,136 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-12-13 20:11:26,137 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-12-13 20:11:26,138 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-12-13 20:11:26,140 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-12-13 20:11:26,141 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-12-13 20:11:26,142 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-12-13 20:11:26,143 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-12-13 20:11:26,143 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-12-13 20:11:26,144 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-12-13 20:11:26,145 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-12-13 20:11:26,146 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-12-13 20:11:26,147 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-12-13 20:11:26,148 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-12-13 20:11:26,149 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-12-13 20:11:26,151 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-12-13 20:11:26,152 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-12-13 20:11:26,154 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-12-13 20:11:26,155 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-12-13 20:11:26,156 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-12-13 20:11:26,159 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-12-13 20:11:26,159 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-12-13 20:11:26,160 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-12-13 20:11:26,161 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-12-13 20:11:26,161 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-12-13 20:11:26,162 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-12-13 20:11:26,162 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-12-13 20:11:26,163 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-12-13 20:11:26,164 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-12-13 20:11:26,165 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-12-13 20:11:26,166 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-12-13 20:11:26,166 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-12-13 20:11:26,166 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-12-13 20:11:26,167 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-12-13 20:11:26,167 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-12-13 20:11:26,168 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-12-13 20:11:26,168 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-12-13 20:11:26,169 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/config/svcomp-Reach-32bit-Automizer_Default.epf [2022-12-13 20:11:26,188 INFO L113 SettingsManager]: Loading preferences was successful [2022-12-13 20:11:26,189 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-12-13 20:11:26,189 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-12-13 20:11:26,189 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-12-13 20:11:26,190 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-12-13 20:11:26,190 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-12-13 20:11:26,191 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2022-12-13 20:11:26,191 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2022-12-13 20:11:26,191 INFO L138 SettingsManager]: * Use SBE=true [2022-12-13 20:11:26,191 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-12-13 20:11:26,191 INFO L138 SettingsManager]: * sizeof long=4 [2022-12-13 20:11:26,191 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-12-13 20:11:26,196 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-12-13 20:11:26,197 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-12-13 20:11:26,197 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-12-13 20:11:26,197 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-12-13 20:11:26,197 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-12-13 20:11:26,197 INFO L138 SettingsManager]: * sizeof long double=12 [2022-12-13 20:11:26,198 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-12-13 20:11:26,198 INFO L138 SettingsManager]: * Use constant arrays=true [2022-12-13 20:11:26,198 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-12-13 20:11:26,198 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-12-13 20:11:26,198 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2022-12-13 20:11:26,199 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-12-13 20:11:26,199 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-12-13 20:11:26,199 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-12-13 20:11:26,199 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-12-13 20:11:26,199 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-12-13 20:11:26,200 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2022-12-13 20:11:26,200 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-12-13 20:11:26,200 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2022-12-13 20:11:26,200 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-12-13 20:11:26,200 INFO L138 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2022-12-13 20:11:26,201 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2022-12-13 20:11:26,201 INFO L138 SettingsManager]: * Independence relation used for large block encoding in concurrent analysis=SYNTACTIC [2022-12-13 20:11:26,201 INFO L138 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 0552f986eafe304f33f56d4376c7c6a56e2d691e1035259c5c13e13b2a7157c1 [2022-12-13 20:11:26,390 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-12-13 20:11:26,405 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-12-13 20:11:26,407 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-12-13 20:11:26,408 INFO L271 PluginConnector]: Initializing CDTParser... [2022-12-13 20:11:26,409 INFO L275 PluginConnector]: CDTParser initialized [2022-12-13 20:11:26,410 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/../../sv-benchmarks/c/product-lines/minepump_spec3_product50.cil.c [2022-12-13 20:11:29,012 INFO L500 CDTParser]: Created temporary CDT project at NULL [2022-12-13 20:11:29,197 INFO L351 CDTParser]: Found 1 translation units. [2022-12-13 20:11:29,198 INFO L172 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/sv-benchmarks/c/product-lines/minepump_spec3_product50.cil.c [2022-12-13 20:11:29,209 INFO L394 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/data/83548c8ba/bcdf34bd8d3a432eb57406faf6dbd3d4/FLAG3a21b14e3 [2022-12-13 20:11:29,222 INFO L402 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/data/83548c8ba/bcdf34bd8d3a432eb57406faf6dbd3d4 [2022-12-13 20:11:29,224 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-12-13 20:11:29,226 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-12-13 20:11:29,227 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-12-13 20:11:29,227 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-12-13 20:11:29,230 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-12-13 20:11:29,230 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,231 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@66f937d6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29, skipping insertion in model container [2022-12-13 20:11:29,231 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,238 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-12-13 20:11:29,269 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-12-13 20:11:29,444 WARN L237 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/sv-benchmarks/c/product-lines/minepump_spec3_product50.cil.c[15143,15156] [2022-12-13 20:11:29,458 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-12-13 20:11:29,467 INFO L203 MainTranslator]: Completed pre-run [2022-12-13 20:11:29,507 WARN L237 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/sv-benchmarks/c/product-lines/minepump_spec3_product50.cil.c[15143,15156] [2022-12-13 20:11:29,514 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-12-13 20:11:29,527 INFO L208 MainTranslator]: Completed translation [2022-12-13 20:11:29,527 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29 WrapperNode [2022-12-13 20:11:29,527 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-12-13 20:11:29,528 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-12-13 20:11:29,528 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-12-13 20:11:29,528 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-12-13 20:11:29,534 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,544 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,562 INFO L138 Inliner]: procedures = 56, calls = 100, calls flagged for inlining = 24, calls inlined = 21, statements flattened = 210 [2022-12-13 20:11:29,562 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-12-13 20:11:29,563 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-12-13 20:11:29,563 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-12-13 20:11:29,563 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-12-13 20:11:29,570 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,570 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,572 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,572 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,576 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,579 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,580 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,581 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,582 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-12-13 20:11:29,583 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-12-13 20:11:29,583 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-12-13 20:11:29,583 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-12-13 20:11:29,584 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (1/1) ... [2022-12-13 20:11:29,589 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-12-13 20:11:29,597 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/z3 [2022-12-13 20:11:29,607 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-12-13 20:11:29,609 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-12-13 20:11:29,641 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-12-13 20:11:29,642 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-12-13 20:11:29,642 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-12-13 20:11:29,642 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-12-13 20:11:29,642 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-12-13 20:11:29,642 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-12-13 20:11:29,643 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-12-13 20:11:29,643 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2022-12-13 20:11:29,643 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2022-12-13 20:11:29,643 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2022-12-13 20:11:29,643 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2022-12-13 20:11:29,644 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-12-13 20:11:29,644 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-12-13 20:11:29,644 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-12-13 20:11:29,644 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-12-13 20:11:29,644 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-12-13 20:11:29,644 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-12-13 20:11:29,645 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-12-13 20:11:29,718 INFO L235 CfgBuilder]: Building ICFG [2022-12-13 20:11:29,720 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-12-13 20:11:29,958 INFO L276 CfgBuilder]: Performing block encoding [2022-12-13 20:11:29,968 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-12-13 20:11:29,968 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-12-13 20:11:29,970 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.12 08:11:29 BoogieIcfgContainer [2022-12-13 20:11:29,970 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-12-13 20:11:29,973 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-12-13 20:11:29,973 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-12-13 20:11:29,976 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-12-13 20:11:29,976 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 13.12 08:11:29" (1/3) ... [2022-12-13 20:11:29,977 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@59ee6a5d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.12 08:11:29, skipping insertion in model container [2022-12-13 20:11:29,977 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 08:11:29" (2/3) ... [2022-12-13 20:11:29,977 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@59ee6a5d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.12 08:11:29, skipping insertion in model container [2022-12-13 20:11:29,977 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.12 08:11:29" (3/3) ... [2022-12-13 20:11:29,979 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product50.cil.c [2022-12-13 20:11:29,997 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-12-13 20:11:29,998 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-12-13 20:11:30,050 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-12-13 20:11:30,057 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@579485ea, mLbeIndependenceSettings=[IndependenceType=SYNTACTIC, AbstractionType=NONE, UseConditional=, UseSemiCommutativity=, Solver=, SolverTimeout=] [2022-12-13 20:11:30,057 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-12-13 20:11:30,062 INFO L276 IsEmpty]: Start isEmpty. Operand has 89 states, 69 states have (on average 1.391304347826087) internal successors, (96), 77 states have internal predecessors, (96), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2022-12-13 20:11:30,072 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2022-12-13 20:11:30,072 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:30,073 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:30,073 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:30,079 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:30,079 INFO L85 PathProgramCache]: Analyzing trace with hash 497933795, now seen corresponding path program 1 times [2022-12-13 20:11:30,089 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:30,089 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [345680876] [2022-12-13 20:11:30,090 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:30,090 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:30,216 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,274 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2022-12-13 20:11:30,277 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,280 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:30,281 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:30,281 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [345680876] [2022-12-13 20:11:30,282 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [345680876] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:30,282 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:30,282 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-12-13 20:11:30,283 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1489798577] [2022-12-13 20:11:30,284 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:30,287 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-12-13 20:11:30,287 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:30,309 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-12-13 20:11:30,310 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-12-13 20:11:30,311 INFO L87 Difference]: Start difference. First operand has 89 states, 69 states have (on average 1.391304347826087) internal successors, (96), 77 states have internal predecessors, (96), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 20:11:30,336 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:30,336 INFO L93 Difference]: Finished difference Result 170 states and 231 transitions. [2022-12-13 20:11:30,337 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-12-13 20:11:30,338 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2022-12-13 20:11:30,338 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:30,344 INFO L225 Difference]: With dead ends: 170 [2022-12-13 20:11:30,344 INFO L226 Difference]: Without dead ends: 80 [2022-12-13 20:11:30,347 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-12-13 20:11:30,349 INFO L413 NwaCegarLoop]: 112 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 112 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:30,350 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 112 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 20:11:30,363 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 80 states. [2022-12-13 20:11:30,378 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 80 to 80. [2022-12-13 20:11:30,379 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 80 states, 62 states have (on average 1.3225806451612903) internal successors, (82), 69 states have internal predecessors, (82), 11 states have call successors, (11), 7 states have call predecessors, (11), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) [2022-12-13 20:11:30,380 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 80 states to 80 states and 103 transitions. [2022-12-13 20:11:30,381 INFO L78 Accepts]: Start accepts. Automaton has 80 states and 103 transitions. Word has length 25 [2022-12-13 20:11:30,382 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:30,382 INFO L495 AbstractCegarLoop]: Abstraction has 80 states and 103 transitions. [2022-12-13 20:11:30,382 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 20:11:30,382 INFO L276 IsEmpty]: Start isEmpty. Operand 80 states and 103 transitions. [2022-12-13 20:11:30,384 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2022-12-13 20:11:30,384 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:30,384 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:30,384 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-12-13 20:11:30,384 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:30,385 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:30,385 INFO L85 PathProgramCache]: Analyzing trace with hash -470356708, now seen corresponding path program 1 times [2022-12-13 20:11:30,385 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:30,385 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [711842566] [2022-12-13 20:11:30,385 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:30,386 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:30,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,454 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-12-13 20:11:30,456 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,458 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:30,458 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:30,459 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [711842566] [2022-12-13 20:11:30,459 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [711842566] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:30,459 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:30,459 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-12-13 20:11:30,459 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1425253840] [2022-12-13 20:11:30,459 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:30,460 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-12-13 20:11:30,461 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:30,461 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-12-13 20:11:30,461 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-12-13 20:11:30,462 INFO L87 Difference]: Start difference. First operand 80 states and 103 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 20:11:30,474 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:30,474 INFO L93 Difference]: Finished difference Result 125 states and 161 transitions. [2022-12-13 20:11:30,475 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-12-13 20:11:30,475 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2022-12-13 20:11:30,475 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:30,476 INFO L225 Difference]: With dead ends: 125 [2022-12-13 20:11:30,476 INFO L226 Difference]: Without dead ends: 71 [2022-12-13 20:11:30,476 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-12-13 20:11:30,477 INFO L413 NwaCegarLoop]: 90 mSDtfsCounter, 13 mSDsluCounter, 73 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 163 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:30,478 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 163 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 20:11:30,479 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 71 states. [2022-12-13 20:11:30,484 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 71 to 71. [2022-12-13 20:11:30,484 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 71 states, 56 states have (on average 1.3392857142857142) internal successors, (75), 63 states have internal predecessors, (75), 8 states have call successors, (8), 6 states have call predecessors, (8), 6 states have return successors, (8), 6 states have call predecessors, (8), 8 states have call successors, (8) [2022-12-13 20:11:30,485 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 71 states to 71 states and 91 transitions. [2022-12-13 20:11:30,485 INFO L78 Accepts]: Start accepts. Automaton has 71 states and 91 transitions. Word has length 26 [2022-12-13 20:11:30,485 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:30,485 INFO L495 AbstractCegarLoop]: Abstraction has 71 states and 91 transitions. [2022-12-13 20:11:30,486 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 20:11:30,486 INFO L276 IsEmpty]: Start isEmpty. Operand 71 states and 91 transitions. [2022-12-13 20:11:30,487 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2022-12-13 20:11:30,487 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:30,487 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:30,487 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-12-13 20:11:30,487 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:30,488 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:30,488 INFO L85 PathProgramCache]: Analyzing trace with hash 1793997224, now seen corresponding path program 1 times [2022-12-13 20:11:30,488 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:30,488 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [827514039] [2022-12-13 20:11:30,488 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:30,488 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:30,503 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,570 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-12-13 20:11:30,571 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,572 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:30,573 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:30,573 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [827514039] [2022-12-13 20:11:30,573 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [827514039] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:30,573 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:30,573 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-12-13 20:11:30,573 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1373407192] [2022-12-13 20:11:30,573 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:30,574 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-12-13 20:11:30,574 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:30,574 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-12-13 20:11:30,574 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-12-13 20:11:30,575 INFO L87 Difference]: Start difference. First operand 71 states and 91 transitions. Second operand has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 20:11:30,621 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:30,621 INFO L93 Difference]: Finished difference Result 135 states and 176 transitions. [2022-12-13 20:11:30,621 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-12-13 20:11:30,622 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2022-12-13 20:11:30,622 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:30,622 INFO L225 Difference]: With dead ends: 135 [2022-12-13 20:11:30,623 INFO L226 Difference]: Without dead ends: 71 [2022-12-13 20:11:30,623 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-12-13 20:11:30,624 INFO L413 NwaCegarLoop]: 84 mSDtfsCounter, 116 mSDsluCounter, 136 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 116 SdHoareTripleChecker+Valid, 220 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:30,624 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [116 Valid, 220 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 20:11:30,625 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 71 states. [2022-12-13 20:11:30,630 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 71 to 71. [2022-12-13 20:11:30,630 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 71 states, 56 states have (on average 1.3214285714285714) internal successors, (74), 63 states have internal predecessors, (74), 8 states have call successors, (8), 6 states have call predecessors, (8), 6 states have return successors, (8), 6 states have call predecessors, (8), 8 states have call successors, (8) [2022-12-13 20:11:30,631 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 71 states to 71 states and 90 transitions. [2022-12-13 20:11:30,631 INFO L78 Accepts]: Start accepts. Automaton has 71 states and 90 transitions. Word has length 31 [2022-12-13 20:11:30,631 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:30,631 INFO L495 AbstractCegarLoop]: Abstraction has 71 states and 90 transitions. [2022-12-13 20:11:30,631 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 20:11:30,631 INFO L276 IsEmpty]: Start isEmpty. Operand 71 states and 90 transitions. [2022-12-13 20:11:30,632 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2022-12-13 20:11:30,632 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:30,632 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:30,632 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-12-13 20:11:30,633 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:30,633 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:30,633 INFO L85 PathProgramCache]: Analyzing trace with hash -668349169, now seen corresponding path program 1 times [2022-12-13 20:11:30,633 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:30,633 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2091672967] [2022-12-13 20:11:30,633 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:30,633 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:30,643 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,695 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-12-13 20:11:30,698 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,712 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-12-13 20:11:30,713 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,715 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2022-12-13 20:11:30,717 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,719 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:30,719 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:30,719 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2091672967] [2022-12-13 20:11:30,719 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2091672967] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:30,719 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:30,719 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-12-13 20:11:30,720 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1271924508] [2022-12-13 20:11:30,720 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:30,720 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-12-13 20:11:30,720 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:30,720 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-12-13 20:11:30,720 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-12-13 20:11:30,721 INFO L87 Difference]: Start difference. First operand 71 states and 90 transitions. Second operand has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2022-12-13 20:11:30,869 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:30,869 INFO L93 Difference]: Finished difference Result 213 states and 271 transitions. [2022-12-13 20:11:30,869 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-12-13 20:11:30,870 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 41 [2022-12-13 20:11:30,870 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:30,871 INFO L225 Difference]: With dead ends: 213 [2022-12-13 20:11:30,871 INFO L226 Difference]: Without dead ends: 149 [2022-12-13 20:11:30,871 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2022-12-13 20:11:30,872 INFO L413 NwaCegarLoop]: 121 mSDtfsCounter, 173 mSDsluCounter, 176 mSDsCounter, 0 mSdLazyCounter, 109 mSolverCounterSat, 41 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 175 SdHoareTripleChecker+Valid, 297 SdHoareTripleChecker+Invalid, 150 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 41 IncrementalHoareTripleChecker+Valid, 109 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:30,872 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [175 Valid, 297 Invalid, 150 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [41 Valid, 109 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-12-13 20:11:30,873 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 149 states. [2022-12-13 20:11:30,885 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 149 to 143. [2022-12-13 20:11:30,886 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 143 states, 112 states have (on average 1.2767857142857142) internal successors, (143), 119 states have internal predecessors, (143), 14 states have call successors, (14), 13 states have call predecessors, (14), 16 states have return successors, (19), 15 states have call predecessors, (19), 14 states have call successors, (19) [2022-12-13 20:11:30,887 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 143 states to 143 states and 176 transitions. [2022-12-13 20:11:30,887 INFO L78 Accepts]: Start accepts. Automaton has 143 states and 176 transitions. Word has length 41 [2022-12-13 20:11:30,887 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:30,887 INFO L495 AbstractCegarLoop]: Abstraction has 143 states and 176 transitions. [2022-12-13 20:11:30,887 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2022-12-13 20:11:30,887 INFO L276 IsEmpty]: Start isEmpty. Operand 143 states and 176 transitions. [2022-12-13 20:11:30,888 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2022-12-13 20:11:30,888 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:30,888 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:30,888 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-12-13 20:11:30,888 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:30,889 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:30,889 INFO L85 PathProgramCache]: Analyzing trace with hash 103943489, now seen corresponding path program 1 times [2022-12-13 20:11:30,889 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:30,889 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1350368110] [2022-12-13 20:11:30,889 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:30,889 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:30,898 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,951 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-12-13 20:11:30,954 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,982 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2022-12-13 20:11:30,983 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:30,985 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:30,985 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:30,985 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1350368110] [2022-12-13 20:11:30,986 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1350368110] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:30,986 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:30,986 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2022-12-13 20:11:30,986 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1590809999] [2022-12-13 20:11:30,986 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:30,987 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2022-12-13 20:11:30,987 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:30,987 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2022-12-13 20:11:30,987 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2022-12-13 20:11:30,988 INFO L87 Difference]: Start difference. First operand 143 states and 176 transitions. Second operand has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 6 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2022-12-13 20:11:31,123 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:31,124 INFO L93 Difference]: Finished difference Result 301 states and 377 transitions. [2022-12-13 20:11:31,124 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2022-12-13 20:11:31,124 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 6 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 45 [2022-12-13 20:11:31,124 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:31,125 INFO L225 Difference]: With dead ends: 301 [2022-12-13 20:11:31,125 INFO L226 Difference]: Without dead ends: 165 [2022-12-13 20:11:31,126 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 9 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=35, Invalid=97, Unknown=0, NotChecked=0, Total=132 [2022-12-13 20:11:31,127 INFO L413 NwaCegarLoop]: 85 mSDtfsCounter, 109 mSDsluCounter, 329 mSDsCounter, 0 mSdLazyCounter, 153 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 112 SdHoareTripleChecker+Valid, 414 SdHoareTripleChecker+Invalid, 176 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 153 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:31,127 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [112 Valid, 414 Invalid, 176 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 153 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-12-13 20:11:31,128 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 165 states. [2022-12-13 20:11:31,139 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 165 to 145. [2022-12-13 20:11:31,139 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 114 states have (on average 1.2719298245614035) internal successors, (145), 121 states have internal predecessors, (145), 14 states have call successors, (14), 13 states have call predecessors, (14), 16 states have return successors, (19), 15 states have call predecessors, (19), 14 states have call successors, (19) [2022-12-13 20:11:31,140 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 178 transitions. [2022-12-13 20:11:31,140 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 178 transitions. Word has length 45 [2022-12-13 20:11:31,140 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:31,140 INFO L495 AbstractCegarLoop]: Abstraction has 145 states and 178 transitions. [2022-12-13 20:11:31,140 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 6 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2022-12-13 20:11:31,140 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 178 transitions. [2022-12-13 20:11:31,141 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2022-12-13 20:11:31,141 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:31,141 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:31,141 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-12-13 20:11:31,141 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:31,142 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:31,142 INFO L85 PathProgramCache]: Analyzing trace with hash 921591939, now seen corresponding path program 1 times [2022-12-13 20:11:31,142 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:31,142 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [134167436] [2022-12-13 20:11:31,142 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:31,142 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:31,150 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,177 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-12-13 20:11:31,180 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,200 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2022-12-13 20:11:31,202 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,203 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:31,203 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:31,204 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [134167436] [2022-12-13 20:11:31,204 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [134167436] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:31,204 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:31,204 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-12-13 20:11:31,204 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2062245009] [2022-12-13 20:11:31,204 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:31,205 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-12-13 20:11:31,205 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:31,205 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-12-13 20:11:31,205 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-12-13 20:11:31,206 INFO L87 Difference]: Start difference. First operand 145 states and 178 transitions. Second operand has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2022-12-13 20:11:31,310 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:31,310 INFO L93 Difference]: Finished difference Result 291 states and 361 transitions. [2022-12-13 20:11:31,310 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-12-13 20:11:31,311 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 45 [2022-12-13 20:11:31,311 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:31,311 INFO L225 Difference]: With dead ends: 291 [2022-12-13 20:11:31,312 INFO L226 Difference]: Without dead ends: 153 [2022-12-13 20:11:31,312 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=32, Invalid=58, Unknown=0, NotChecked=0, Total=90 [2022-12-13 20:11:31,313 INFO L413 NwaCegarLoop]: 85 mSDtfsCounter, 64 mSDsluCounter, 282 mSDsCounter, 0 mSdLazyCounter, 113 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 66 SdHoareTripleChecker+Valid, 367 SdHoareTripleChecker+Invalid, 131 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 113 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:31,313 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [66 Valid, 367 Invalid, 131 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 113 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-12-13 20:11:31,314 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 153 states. [2022-12-13 20:11:31,324 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 153 to 148. [2022-12-13 20:11:31,324 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 148 states, 117 states have (on average 1.264957264957265) internal successors, (148), 124 states have internal predecessors, (148), 14 states have call successors, (14), 13 states have call predecessors, (14), 16 states have return successors, (19), 15 states have call predecessors, (19), 14 states have call successors, (19) [2022-12-13 20:11:31,325 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 148 states to 148 states and 181 transitions. [2022-12-13 20:11:31,325 INFO L78 Accepts]: Start accepts. Automaton has 148 states and 181 transitions. Word has length 45 [2022-12-13 20:11:31,325 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:31,325 INFO L495 AbstractCegarLoop]: Abstraction has 148 states and 181 transitions. [2022-12-13 20:11:31,326 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2022-12-13 20:11:31,326 INFO L276 IsEmpty]: Start isEmpty. Operand 148 states and 181 transitions. [2022-12-13 20:11:31,326 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2022-12-13 20:11:31,326 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:31,326 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:31,327 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-12-13 20:11:31,327 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:31,327 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:31,327 INFO L85 PathProgramCache]: Analyzing trace with hash 322798207, now seen corresponding path program 1 times [2022-12-13 20:11:31,327 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:31,327 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [111434651] [2022-12-13 20:11:31,327 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:31,327 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:31,334 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,379 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-12-13 20:11:31,382 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,393 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2022-12-13 20:11:31,394 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,396 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:31,396 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:31,396 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [111434651] [2022-12-13 20:11:31,396 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [111434651] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:31,396 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:31,397 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-12-13 20:11:31,397 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1882635963] [2022-12-13 20:11:31,397 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:31,397 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-12-13 20:11:31,397 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:31,398 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-12-13 20:11:31,398 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-12-13 20:11:31,398 INFO L87 Difference]: Start difference. First operand 148 states and 181 transitions. Second operand has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2022-12-13 20:11:31,570 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:31,570 INFO L93 Difference]: Finished difference Result 416 states and 530 transitions. [2022-12-13 20:11:31,571 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-12-13 20:11:31,571 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 45 [2022-12-13 20:11:31,571 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:31,573 INFO L225 Difference]: With dead ends: 416 [2022-12-13 20:11:31,573 INFO L226 Difference]: Without dead ends: 275 [2022-12-13 20:11:31,574 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2022-12-13 20:11:31,575 INFO L413 NwaCegarLoop]: 133 mSDtfsCounter, 206 mSDsluCounter, 168 mSDsCounter, 0 mSdLazyCounter, 156 mSolverCounterSat, 48 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 212 SdHoareTripleChecker+Valid, 301 SdHoareTripleChecker+Invalid, 204 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 48 IncrementalHoareTripleChecker+Valid, 156 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:31,575 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [212 Valid, 301 Invalid, 204 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [48 Valid, 156 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-12-13 20:11:31,576 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 275 states. [2022-12-13 20:11:31,607 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 275 to 267. [2022-12-13 20:11:31,608 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 267 states, 208 states have (on average 1.2548076923076923) internal successors, (261), 219 states have internal predecessors, (261), 29 states have call successors, (29), 28 states have call predecessors, (29), 29 states have return successors, (44), 29 states have call predecessors, (44), 29 states have call successors, (44) [2022-12-13 20:11:31,610 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 267 states to 267 states and 334 transitions. [2022-12-13 20:11:31,610 INFO L78 Accepts]: Start accepts. Automaton has 267 states and 334 transitions. Word has length 45 [2022-12-13 20:11:31,610 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:31,610 INFO L495 AbstractCegarLoop]: Abstraction has 267 states and 334 transitions. [2022-12-13 20:11:31,611 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2022-12-13 20:11:31,611 INFO L276 IsEmpty]: Start isEmpty. Operand 267 states and 334 transitions. [2022-12-13 20:11:31,612 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2022-12-13 20:11:31,612 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:31,612 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:31,612 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-12-13 20:11:31,613 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:31,613 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:31,613 INFO L85 PathProgramCache]: Analyzing trace with hash -916701465, now seen corresponding path program 1 times [2022-12-13 20:11:31,613 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:31,614 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [767511238] [2022-12-13 20:11:31,614 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:31,614 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:31,624 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,674 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-12-13 20:11:31,677 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,681 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2022-12-13 20:11:31,682 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,683 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2022-12-13 20:11:31,684 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,686 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:31,687 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:31,687 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [767511238] [2022-12-13 20:11:31,687 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [767511238] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:31,687 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:31,687 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-12-13 20:11:31,687 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [582314166] [2022-12-13 20:11:31,687 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:31,688 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-12-13 20:11:31,688 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:31,688 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-12-13 20:11:31,688 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-12-13 20:11:31,689 INFO L87 Difference]: Start difference. First operand 267 states and 334 transitions. Second operand has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-12-13 20:11:31,824 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:31,825 INFO L93 Difference]: Finished difference Result 530 states and 663 transitions. [2022-12-13 20:11:31,825 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-12-13 20:11:31,825 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 47 [2022-12-13 20:11:31,826 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:31,827 INFO L225 Difference]: With dead ends: 530 [2022-12-13 20:11:31,828 INFO L226 Difference]: Without dead ends: 270 [2022-12-13 20:11:31,829 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2022-12-13 20:11:31,829 INFO L413 NwaCegarLoop]: 79 mSDtfsCounter, 112 mSDsluCounter, 253 mSDsCounter, 0 mSdLazyCounter, 143 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 116 SdHoareTripleChecker+Valid, 332 SdHoareTripleChecker+Invalid, 166 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 143 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:31,830 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [116 Valid, 332 Invalid, 166 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 143 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-12-13 20:11:31,831 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 270 states. [2022-12-13 20:11:31,856 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 270 to 265. [2022-12-13 20:11:31,857 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 265 states, 206 states have (on average 1.2475728155339805) internal successors, (257), 217 states have internal predecessors, (257), 29 states have call successors, (29), 28 states have call predecessors, (29), 29 states have return successors, (44), 29 states have call predecessors, (44), 29 states have call successors, (44) [2022-12-13 20:11:31,858 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 265 states to 265 states and 330 transitions. [2022-12-13 20:11:31,859 INFO L78 Accepts]: Start accepts. Automaton has 265 states and 330 transitions. Word has length 47 [2022-12-13 20:11:31,859 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:31,859 INFO L495 AbstractCegarLoop]: Abstraction has 265 states and 330 transitions. [2022-12-13 20:11:31,859 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-12-13 20:11:31,859 INFO L276 IsEmpty]: Start isEmpty. Operand 265 states and 330 transitions. [2022-12-13 20:11:31,860 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2022-12-13 20:11:31,861 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:31,861 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:31,861 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2022-12-13 20:11:31,861 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:31,861 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:31,862 INFO L85 PathProgramCache]: Analyzing trace with hash 1637594841, now seen corresponding path program 1 times [2022-12-13 20:11:31,862 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:31,862 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [560976488] [2022-12-13 20:11:31,862 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:31,862 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:31,872 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,929 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-12-13 20:11:31,930 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,936 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2022-12-13 20:11:31,938 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,945 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 38 [2022-12-13 20:11:31,946 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:31,948 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:31,948 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:31,949 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [560976488] [2022-12-13 20:11:31,949 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [560976488] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:31,949 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:31,949 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2022-12-13 20:11:31,949 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [38224945] [2022-12-13 20:11:31,949 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:31,950 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2022-12-13 20:11:31,950 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:31,950 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2022-12-13 20:11:31,950 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2022-12-13 20:11:31,951 INFO L87 Difference]: Start difference. First operand 265 states and 330 transitions. Second operand has 7 states, 7 states have (on average 6.0) internal successors, (42), 5 states have internal predecessors, (42), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-12-13 20:11:32,234 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:32,235 INFO L93 Difference]: Finished difference Result 525 states and 658 transitions. [2022-12-13 20:11:32,235 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2022-12-13 20:11:32,235 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.0) internal successors, (42), 5 states have internal predecessors, (42), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 49 [2022-12-13 20:11:32,235 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:32,238 INFO L225 Difference]: With dead ends: 525 [2022-12-13 20:11:32,238 INFO L226 Difference]: Without dead ends: 314 [2022-12-13 20:11:32,239 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 25 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 24 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=87, Invalid=185, Unknown=0, NotChecked=0, Total=272 [2022-12-13 20:11:32,240 INFO L413 NwaCegarLoop]: 121 mSDtfsCounter, 212 mSDsluCounter, 374 mSDsCounter, 0 mSdLazyCounter, 314 mSolverCounterSat, 44 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 216 SdHoareTripleChecker+Valid, 495 SdHoareTripleChecker+Invalid, 358 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 44 IncrementalHoareTripleChecker+Valid, 314 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:32,240 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [216 Valid, 495 Invalid, 358 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [44 Valid, 314 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-12-13 20:11:32,240 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 314 states. [2022-12-13 20:11:32,257 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 314 to 301. [2022-12-13 20:11:32,257 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 301 states, 236 states have (on average 1.228813559322034) internal successors, (290), 250 states have internal predecessors, (290), 32 states have call successors, (32), 28 states have call predecessors, (32), 32 states have return successors, (44), 32 states have call predecessors, (44), 32 states have call successors, (44) [2022-12-13 20:11:32,258 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 301 states to 301 states and 366 transitions. [2022-12-13 20:11:32,258 INFO L78 Accepts]: Start accepts. Automaton has 301 states and 366 transitions. Word has length 49 [2022-12-13 20:11:32,259 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:32,259 INFO L495 AbstractCegarLoop]: Abstraction has 301 states and 366 transitions. [2022-12-13 20:11:32,259 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.0) internal successors, (42), 5 states have internal predecessors, (42), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-12-13 20:11:32,259 INFO L276 IsEmpty]: Start isEmpty. Operand 301 states and 366 transitions. [2022-12-13 20:11:32,259 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2022-12-13 20:11:32,260 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:32,260 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:32,260 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2022-12-13 20:11:32,260 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:32,260 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:32,260 INFO L85 PathProgramCache]: Analyzing trace with hash -32680003, now seen corresponding path program 1 times [2022-12-13 20:11:32,260 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:32,260 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [366344506] [2022-12-13 20:11:32,260 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:32,261 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:32,267 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,303 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-12-13 20:11:32,305 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,309 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2022-12-13 20:11:32,312 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,342 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2022-12-13 20:11:32,343 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,344 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 40 [2022-12-13 20:11:32,345 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,347 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:32,347 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:32,347 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [366344506] [2022-12-13 20:11:32,347 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [366344506] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:32,347 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:32,347 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2022-12-13 20:11:32,347 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [387675144] [2022-12-13 20:11:32,347 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:32,348 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2022-12-13 20:11:32,348 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:32,348 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2022-12-13 20:11:32,348 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=57, Unknown=0, NotChecked=0, Total=72 [2022-12-13 20:11:32,349 INFO L87 Difference]: Start difference. First operand 301 states and 366 transitions. Second operand has 9 states, 9 states have (on average 4.666666666666667) internal successors, (42), 7 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-12-13 20:11:32,582 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:32,582 INFO L93 Difference]: Finished difference Result 550 states and 676 transitions. [2022-12-13 20:11:32,582 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2022-12-13 20:11:32,582 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 4.666666666666667) internal successors, (42), 7 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 51 [2022-12-13 20:11:32,583 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:32,585 INFO L225 Difference]: With dead ends: 550 [2022-12-13 20:11:32,585 INFO L226 Difference]: Without dead ends: 305 [2022-12-13 20:11:32,586 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 25 GetRequests, 12 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 9 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=54, Invalid=156, Unknown=0, NotChecked=0, Total=210 [2022-12-13 20:11:32,587 INFO L413 NwaCegarLoop]: 65 mSDtfsCounter, 170 mSDsluCounter, 356 mSDsCounter, 0 mSdLazyCounter, 324 mSolverCounterSat, 40 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 172 SdHoareTripleChecker+Valid, 421 SdHoareTripleChecker+Invalid, 364 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 40 IncrementalHoareTripleChecker+Valid, 324 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:32,587 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [172 Valid, 421 Invalid, 364 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [40 Valid, 324 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-12-13 20:11:32,588 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 305 states. [2022-12-13 20:11:32,600 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 305 to 301. [2022-12-13 20:11:32,601 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 301 states, 236 states have (on average 1.2245762711864407) internal successors, (289), 250 states have internal predecessors, (289), 32 states have call successors, (32), 28 states have call predecessors, (32), 32 states have return successors, (44), 32 states have call predecessors, (44), 32 states have call successors, (44) [2022-12-13 20:11:32,602 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 301 states to 301 states and 365 transitions. [2022-12-13 20:11:32,602 INFO L78 Accepts]: Start accepts. Automaton has 301 states and 365 transitions. Word has length 51 [2022-12-13 20:11:32,602 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:32,602 INFO L495 AbstractCegarLoop]: Abstraction has 301 states and 365 transitions. [2022-12-13 20:11:32,602 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 4.666666666666667) internal successors, (42), 7 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-12-13 20:11:32,602 INFO L276 IsEmpty]: Start isEmpty. Operand 301 states and 365 transitions. [2022-12-13 20:11:32,603 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2022-12-13 20:11:32,603 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:32,603 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:32,603 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2022-12-13 20:11:32,603 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:32,603 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:32,603 INFO L85 PathProgramCache]: Analyzing trace with hash -251534721, now seen corresponding path program 1 times [2022-12-13 20:11:32,603 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:32,603 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1787376714] [2022-12-13 20:11:32,603 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:32,603 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:32,610 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,628 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-12-13 20:11:32,629 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,632 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2022-12-13 20:11:32,634 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,648 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2022-12-13 20:11:32,649 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,650 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 40 [2022-12-13 20:11:32,651 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,652 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 20:11:32,652 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:32,652 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1787376714] [2022-12-13 20:11:32,653 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1787376714] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 20:11:32,653 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 20:11:32,653 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-12-13 20:11:32,653 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1232519826] [2022-12-13 20:11:32,653 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 20:11:32,653 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-12-13 20:11:32,653 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:32,654 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-12-13 20:11:32,654 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-12-13 20:11:32,654 INFO L87 Difference]: Start difference. First operand 301 states and 365 transitions. Second operand has 6 states, 6 states have (on average 7.0) internal successors, (42), 4 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-12-13 20:11:32,788 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:32,788 INFO L93 Difference]: Finished difference Result 521 states and 638 transitions. [2022-12-13 20:11:32,789 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-12-13 20:11:32,789 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 7.0) internal successors, (42), 4 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 51 [2022-12-13 20:11:32,789 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:32,791 INFO L225 Difference]: With dead ends: 521 [2022-12-13 20:11:32,791 INFO L226 Difference]: Without dead ends: 276 [2022-12-13 20:11:32,792 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=33, Invalid=57, Unknown=0, NotChecked=0, Total=90 [2022-12-13 20:11:32,792 INFO L413 NwaCegarLoop]: 71 mSDtfsCounter, 135 mSDsluCounter, 223 mSDsCounter, 0 mSdLazyCounter, 170 mSolverCounterSat, 30 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 137 SdHoareTripleChecker+Valid, 294 SdHoareTripleChecker+Invalid, 200 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 170 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:32,793 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [137 Valid, 294 Invalid, 200 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 170 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-12-13 20:11:32,793 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 276 states. [2022-12-13 20:11:32,813 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 276 to 272. [2022-12-13 20:11:32,813 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 272 states, 214 states have (on average 1.2242990654205608) internal successors, (262), 227 states have internal predecessors, (262), 29 states have call successors, (29), 25 states have call predecessors, (29), 28 states have return successors, (37), 28 states have call predecessors, (37), 29 states have call successors, (37) [2022-12-13 20:11:32,814 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 272 states to 272 states and 328 transitions. [2022-12-13 20:11:32,814 INFO L78 Accepts]: Start accepts. Automaton has 272 states and 328 transitions. Word has length 51 [2022-12-13 20:11:32,814 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:32,814 INFO L495 AbstractCegarLoop]: Abstraction has 272 states and 328 transitions. [2022-12-13 20:11:32,814 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 7.0) internal successors, (42), 4 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-12-13 20:11:32,815 INFO L276 IsEmpty]: Start isEmpty. Operand 272 states and 328 transitions. [2022-12-13 20:11:32,816 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 82 [2022-12-13 20:11:32,816 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 20:11:32,816 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:32,816 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2022-12-13 20:11:32,816 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 20:11:32,816 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 20:11:32,816 INFO L85 PathProgramCache]: Analyzing trace with hash -614822540, now seen corresponding path program 1 times [2022-12-13 20:11:32,816 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 20:11:32,817 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [451637311] [2022-12-13 20:11:32,817 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:32,817 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 20:11:32,828 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,868 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-12-13 20:11:32,869 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,875 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-12-13 20:11:32,877 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,890 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2022-12-13 20:11:32,891 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,894 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2022-12-13 20:11:32,895 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,896 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 70 [2022-12-13 20:11:32,897 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,898 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 5 proven. 1 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2022-12-13 20:11:32,898 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 20:11:32,898 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [451637311] [2022-12-13 20:11:32,898 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [451637311] provided 0 perfect and 1 imperfect interpolant sequences [2022-12-13 20:11:32,898 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1035910536] [2022-12-13 20:11:32,899 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 20:11:32,899 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-12-13 20:11:32,899 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/z3 [2022-12-13 20:11:32,900 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-12-13 20:11:32,901 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-12-13 20:11:32,967 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 20:11:32,969 INFO L263 TraceCheckSpWp]: Trace formula consists of 300 conjuncts, 13 conjunts are in the unsatisfiable core [2022-12-13 20:11:32,976 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-12-13 20:11:33,135 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 3 proven. 12 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2022-12-13 20:11:33,135 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-12-13 20:11:33,369 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 8 proven. 4 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2022-12-13 20:11:33,369 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1035910536] provided 0 perfect and 2 imperfect interpolant sequences [2022-12-13 20:11:33,370 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-12-13 20:11:33,370 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 9] total 17 [2022-12-13 20:11:33,370 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [714587954] [2022-12-13 20:11:33,370 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-12-13 20:11:33,370 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 17 states [2022-12-13 20:11:33,371 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 20:11:33,371 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 17 interpolants. [2022-12-13 20:11:33,371 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=56, Invalid=216, Unknown=0, NotChecked=0, Total=272 [2022-12-13 20:11:33,372 INFO L87 Difference]: Start difference. First operand 272 states and 328 transitions. Second operand has 17 states, 17 states have (on average 7.117647058823529) internal successors, (121), 13 states have internal predecessors, (121), 6 states have call successors, (17), 9 states have call predecessors, (17), 6 states have return successors, (15), 6 states have call predecessors, (15), 6 states have call successors, (15) [2022-12-13 20:11:34,022 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 20:11:34,022 INFO L93 Difference]: Finished difference Result 557 states and 715 transitions. [2022-12-13 20:11:34,023 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2022-12-13 20:11:34,023 INFO L78 Accepts]: Start accepts. Automaton has has 17 states, 17 states have (on average 7.117647058823529) internal successors, (121), 13 states have internal predecessors, (121), 6 states have call successors, (17), 9 states have call predecessors, (17), 6 states have return successors, (15), 6 states have call predecessors, (15), 6 states have call successors, (15) Word has length 81 [2022-12-13 20:11:34,023 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 20:11:34,024 INFO L225 Difference]: With dead ends: 557 [2022-12-13 20:11:34,024 INFO L226 Difference]: Without dead ends: 0 [2022-12-13 20:11:34,027 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 221 GetRequests, 170 SyntacticMatches, 7 SemanticMatches, 44 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 393 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=628, Invalid=1442, Unknown=0, NotChecked=0, Total=2070 [2022-12-13 20:11:34,027 INFO L413 NwaCegarLoop]: 73 mSDtfsCounter, 515 mSDsluCounter, 465 mSDsCounter, 0 mSdLazyCounter, 591 mSolverCounterSat, 191 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 517 SdHoareTripleChecker+Valid, 538 SdHoareTripleChecker+Invalid, 782 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 191 IncrementalHoareTripleChecker+Valid, 591 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-12-13 20:11:34,028 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [517 Valid, 538 Invalid, 782 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [191 Valid, 591 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-12-13 20:11:34,028 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-12-13 20:11:34,028 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-12-13 20:11:34,028 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-12-13 20:11:34,028 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-12-13 20:11:34,028 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 81 [2022-12-13 20:11:34,028 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 20:11:34,028 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-12-13 20:11:34,029 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 17 states, 17 states have (on average 7.117647058823529) internal successors, (121), 13 states have internal predecessors, (121), 6 states have call successors, (17), 9 states have call predecessors, (17), 6 states have return successors, (15), 6 states have call predecessors, (15), 6 states have call successors, (15) [2022-12-13 20:11:34,029 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-12-13 20:11:34,029 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-12-13 20:11:34,031 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-12-13 20:11:34,038 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2022-12-13 20:11:34,231 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2022-12-13 20:11:34,233 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-12-13 20:11:36,262 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 806 812) no Hoare annotation was computed. [2022-12-13 20:11:36,262 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 806 812) the Hoare annotation is: true [2022-12-13 20:11:36,262 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 486 497) the Hoare annotation is: true [2022-12-13 20:11:36,262 INFO L899 garLoopResultBuilder]: For program point L490-1(lines 486 497) no Hoare annotation was computed. [2022-12-13 20:11:36,263 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 486 497) no Hoare annotation was computed. [2022-12-13 20:11:36,263 INFO L899 garLoopResultBuilder]: For program point L704(line 704) no Hoare annotation was computed. [2022-12-13 20:11:36,263 INFO L895 garLoopResultBuilder]: At program point isLowWaterSensorDry_returnLabel#1(lines 553 561) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or (and (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1)) (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1))) [2022-12-13 20:11:36,263 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 782 805) no Hoare annotation was computed. [2022-12-13 20:11:36,263 INFO L899 garLoopResultBuilder]: For program point L965(lines 965 969) no Hoare annotation was computed. [2022-12-13 20:11:36,263 INFO L899 garLoopResultBuilder]: For program point L965-2(lines 965 969) no Hoare annotation was computed. [2022-12-13 20:11:36,263 INFO L895 garLoopResultBuilder]: At program point L854(line 854) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1 (and (= |timeShift_processEnvironment_~tmp~7#1| 0) (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1))))) [2022-12-13 20:11:36,263 INFO L895 garLoopResultBuilder]: At program point getWaterLevel_returnLabel#1(lines 530 538) the Hoare annotation is: (let ((.cse6 (= ~pumpRunning~0 0)) (.cse2 (<= ~waterLevel~0 1)) (.cse4 (<= |timeShift_getWaterLevel_#res#1| 1)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (= ~pumpRunning~0 1)) (.cse1 (= 0 ~systemActive~0)) (.cse7 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (= |timeShift_getWaterLevel_#res#1| 1)) (let ((.cse3 (<= ~waterLevel~0 |old(~waterLevel~0)|))) (or (and (= |timeShift_processEnvironment_~tmp~7#1| 0) .cse2 .cse3 .cse4 .cse5) (not (= |old(~pumpRunning~0)| 1)) (and .cse6 .cse2 .cse3 .cse4) .cse1 .cse7)) (let ((.cse8 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse6 .cse2 .cse8 .cse4) .cse0 (and (<= 2 ~waterLevel~0) .cse8 .cse5) .cse1 .cse7)))) [2022-12-13 20:11:36,263 INFO L899 garLoopResultBuilder]: For program point L466(lines 466 470) no Hoare annotation was computed. [2022-12-13 20:11:36,263 INFO L895 garLoopResultBuilder]: At program point L466-2(lines 462 473) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or (and (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1)) (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1))) [2022-12-13 20:11:36,263 INFO L899 garLoopResultBuilder]: For program point L429(lines 429 449) no Hoare annotation was computed. [2022-12-13 20:11:36,264 INFO L895 garLoopResultBuilder]: At program point L859(line 859) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0 .cse1) (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1))) [2022-12-13 20:11:36,264 INFO L895 garLoopResultBuilder]: At program point L859-1(lines 840 864) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse4 (= 0 ~systemActive~0)) (.cse5 (not (<= |old(~waterLevel~0)| 2))) (.cse1 (<= ~waterLevel~0 1)) (.cse3 (= ~pumpRunning~0 1))) (and (let ((.cse2 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse0 .cse1 .cse2) (not (= |old(~pumpRunning~0)| 0)) (and (<= 2 ~waterLevel~0) .cse2 .cse3) .cse4 .cse5)) (let ((.cse6 (<= ~waterLevel~0 |old(~waterLevel~0)|))) (or (not (= |old(~pumpRunning~0)| 1)) (and .cse0 .cse1 .cse6) .cse4 .cse5 (and (= |timeShift_processEnvironment_~tmp~7#1| 0) .cse1 .cse6 .cse3))))) [2022-12-13 20:11:36,264 INFO L899 garLoopResultBuilder]: For program point L793-1(lines 793 799) no Hoare annotation was computed. [2022-12-13 20:11:36,264 INFO L895 garLoopResultBuilder]: At program point __automaton_fail_returnLabel#1(lines 700 707) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1))) [2022-12-13 20:11:36,264 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 782 805) the Hoare annotation is: (let ((.cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse0 (= 0 ~systemActive~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1 (and .cse2 (= ~pumpRunning~0 1))) (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) .cse2) .cse0 .cse1))) [2022-12-13 20:11:36,264 INFO L895 garLoopResultBuilder]: At program point deactivatePump_returnLabel#1(lines 873 880) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or (not (= |old(~pumpRunning~0)| 1)) (and (= ~pumpRunning~0 0) (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|)) .cse0 .cse1))) [2022-12-13 20:11:36,264 INFO L895 garLoopResultBuilder]: At program point isLowWaterLevel_returnLabel#1(lines 956 974) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or (and (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1)) (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1))) [2022-12-13 20:11:36,264 INFO L899 garLoopResultBuilder]: For program point L439(lines 439 445) no Hoare annotation was computed. [2022-12-13 20:11:36,264 INFO L899 garLoopResultBuilder]: For program point L435(lines 435 448) no Hoare annotation was computed. [2022-12-13 20:11:36,264 INFO L895 garLoopResultBuilder]: At program point L435-1(lines 420 452) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse4 (= 0 ~systemActive~0)) (.cse5 (not (<= |old(~waterLevel~0)| 2))) (.cse1 (<= ~waterLevel~0 1)) (.cse3 (= ~pumpRunning~0 1))) (and (let ((.cse2 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse0 .cse1 .cse2) (not (= |old(~pumpRunning~0)| 0)) (and (<= 2 ~waterLevel~0) .cse2 .cse3) .cse4 .cse5)) (let ((.cse6 (<= ~waterLevel~0 |old(~waterLevel~0)|))) (or (not (= |old(~pumpRunning~0)| 1)) (and .cse0 .cse1 .cse6) .cse4 .cse5 (and (= |timeShift_processEnvironment_~tmp~7#1| 0) .cse1 .cse6 .cse3))))) [2022-12-13 20:11:36,264 INFO L899 garLoopResultBuilder]: For program point L786-1(lines 785 804) no Hoare annotation was computed. [2022-12-13 20:11:36,265 INFO L899 garLoopResultBuilder]: For program point L848(lines 848 856) no Hoare annotation was computed. [2022-12-13 20:11:36,265 INFO L899 garLoopResultBuilder]: For program point L844(lines 844 861) no Hoare annotation was computed. [2022-12-13 20:11:36,265 INFO L895 garLoopResultBuilder]: At program point L427(line 427) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse4 (= 0 ~systemActive~0)) (.cse5 (not (<= |old(~waterLevel~0)| 2))) (.cse1 (<= ~waterLevel~0 1)) (.cse3 (= ~pumpRunning~0 1))) (and (let ((.cse2 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse0 .cse1 .cse2) (not (= |old(~pumpRunning~0)| 0)) (and (<= 2 ~waterLevel~0) .cse2 .cse3) .cse4 .cse5)) (let ((.cse6 (<= ~waterLevel~0 |old(~waterLevel~0)|))) (or (not (= |old(~pumpRunning~0)| 1)) (and .cse0 .cse1 .cse6) .cse4 .cse5 (and (= |timeShift_processEnvironment_~tmp~7#1| 0) .cse1 .cse6 .cse3))))) [2022-12-13 20:11:36,265 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 782 805) no Hoare annotation was computed. [2022-12-13 20:11:36,265 INFO L899 garLoopResultBuilder]: For program point L427-1(line 427) no Hoare annotation was computed. [2022-12-13 20:11:36,265 INFO L895 garLoopResultBuilder]: At program point isPumpRunning_returnLabel#1(lines 892 900) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0)) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and (= |timeShift_isPumpRunning_#res#1| 1) (<= 2 ~waterLevel~0) (= |old(~waterLevel~0)| ~waterLevel~0) (= ~pumpRunning~0 1)) .cse0 .cse1) (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1))) [2022-12-13 20:11:36,265 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 704) no Hoare annotation was computed. [2022-12-13 20:11:36,265 INFO L899 garLoopResultBuilder]: For program point L576(line 576) no Hoare annotation was computed. [2022-12-13 20:11:36,265 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 565 594) no Hoare annotation was computed. [2022-12-13 20:11:36,265 INFO L902 garLoopResultBuilder]: At program point L575-2(lines 575 589) the Hoare annotation is: true [2022-12-13 20:11:36,265 INFO L902 garLoopResultBuilder]: At program point L571(line 571) the Hoare annotation is: true [2022-12-13 20:11:36,265 INFO L899 garLoopResultBuilder]: For program point L571-1(line 571) no Hoare annotation was computed. [2022-12-13 20:11:36,265 INFO L902 garLoopResultBuilder]: At program point L590(lines 565 594) the Hoare annotation is: true [2022-12-13 20:11:36,265 INFO L899 garLoopResultBuilder]: For program point L586(line 586) no Hoare annotation was computed. [2022-12-13 20:11:36,265 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 565 594) the Hoare annotation is: true [2022-12-13 20:11:36,265 INFO L899 garLoopResultBuilder]: For program point L579(lines 579 583) no Hoare annotation was computed. [2022-12-13 20:11:36,266 INFO L902 garLoopResultBuilder]: At program point L579-1(lines 579 583) the Hoare annotation is: true [2022-12-13 20:11:36,266 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 498 506) the Hoare annotation is: true [2022-12-13 20:11:36,266 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 498 506) no Hoare annotation was computed. [2022-12-13 20:11:36,266 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 498 506) no Hoare annotation was computed. [2022-12-13 20:11:36,266 INFO L895 garLoopResultBuilder]: At program point startSystem_returnLabel#1(lines 975 982) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~4#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (<= ~waterLevel~0 2)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~pumpRunning~0 1)))) [2022-12-13 20:11:36,266 INFO L899 garLoopResultBuilder]: For program point L758(lines 758 762) no Hoare annotation was computed. [2022-12-13 20:11:36,266 INFO L895 garLoopResultBuilder]: At program point L758-2(lines 750 763) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~4#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (<= ~waterLevel~0 2)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~pumpRunning~0 1)))) [2022-12-13 20:11:36,266 INFO L899 garLoopResultBuilder]: For program point L721(lines 720 767) no Hoare annotation was computed. [2022-12-13 20:11:36,266 INFO L902 garLoopResultBuilder]: At program point runTest_returnLabel#1(lines 628 637) the Hoare annotation is: true [2022-12-13 20:11:36,266 INFO L899 garLoopResultBuilder]: For program point L750(lines 750 763) no Hoare annotation was computed. [2022-12-13 20:11:36,266 INFO L899 garLoopResultBuilder]: For program point L651(lines 651 658) no Hoare annotation was computed. [2022-12-13 20:11:36,266 INFO L895 garLoopResultBuilder]: At program point select_features_returnLabel#1(lines 676 682) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-12-13 20:11:36,266 INFO L899 garLoopResultBuilder]: For program point L651-2(lines 651 658) no Hoare annotation was computed. [2022-12-13 20:11:36,266 INFO L902 garLoopResultBuilder]: At program point main_returnLabel#1(lines 641 663) the Hoare annotation is: true [2022-12-13 20:11:36,266 INFO L895 garLoopResultBuilder]: At program point L742(line 742) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~4#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (<= ~waterLevel~0 2)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~pumpRunning~0 1)))) [2022-12-13 20:11:36,266 INFO L902 garLoopResultBuilder]: At program point L771(lines 710 775) the Hoare annotation is: true [2022-12-13 20:11:36,266 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2022-12-13 20:11:36,266 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2022-12-13 20:11:36,267 INFO L899 garLoopResultBuilder]: For program point L730(lines 730 736) no Hoare annotation was computed. [2022-12-13 20:11:36,267 INFO L899 garLoopResultBuilder]: For program point L730-1(lines 730 736) no Hoare annotation was computed. [2022-12-13 20:11:36,267 INFO L899 garLoopResultBuilder]: For program point L722(lines 722 726) no Hoare annotation was computed. [2022-12-13 20:11:36,267 INFO L895 garLoopResultBuilder]: At program point setup_returnLabel#1(lines 620 626) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= |ULTIMATE.start_main_~tmp~4#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-12-13 20:11:36,267 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-12-13 20:11:36,267 INFO L895 garLoopResultBuilder]: At program point L768(lines 719 769) the Hoare annotation is: false [2022-12-13 20:11:36,267 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2022-12-13 20:11:36,267 INFO L895 garLoopResultBuilder]: At program point select_helpers_returnLabel#1(lines 683 689) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-12-13 20:11:36,267 INFO L899 garLoopResultBuilder]: For program point L740(lines 740 746) no Hoare annotation was computed. [2022-12-13 20:11:36,267 INFO L899 garLoopResultBuilder]: For program point L740-1(lines 740 746) no Hoare annotation was computed. [2022-12-13 20:11:36,267 INFO L895 garLoopResultBuilder]: At program point L765(lines 720 767) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~4#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and (= ~pumpRunning~0 0) .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 .cse3) (and .cse0 .cse1 .cse2 (<= ~waterLevel~0 2) .cse3 (= ~pumpRunning~0 1)))) [2022-12-13 20:11:36,267 INFO L895 garLoopResultBuilder]: At program point L732(line 732) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~4#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and (= ~pumpRunning~0 0) .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 .cse3) (and .cse0 .cse1 .cse2 (<= ~waterLevel~0 2) .cse3 (= ~pumpRunning~0 1)))) [2022-12-13 20:11:36,267 INFO L895 garLoopResultBuilder]: At program point valid_product_returnLabel#1(lines 690 698) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-12-13 20:11:36,267 INFO L899 garLoopResultBuilder]: For program point L543(lines 543 549) no Hoare annotation was computed. [2022-12-13 20:11:36,267 INFO L895 garLoopResultBuilder]: At program point L828(line 828) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (<= ~waterLevel~0 1))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2)) .cse1) (or (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~6#1| 0)) .cse0 .cse2 .cse1) (or (not (= |old(~pumpRunning~0)| 1)) .cse2 .cse1))) [2022-12-13 20:11:36,267 INFO L895 garLoopResultBuilder]: At program point activatePump_returnLabel#1(lines 865 872) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and (not (= |processEnvironment__wrappee__highWaterSensor_~tmp~6#1| 0)) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~8#1| 0) (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0)) (<= 2 ~waterLevel~0) (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~2#1|) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 1)) (not (<= ~waterLevel~0 2)) .cse0) (or (not (= |old(~pumpRunning~0)| 1)) (not (<= ~waterLevel~0 1)) .cse0))) [2022-12-13 20:11:36,268 INFO L899 garLoopResultBuilder]: For program point L822(lines 822 830) no Hoare annotation was computed. [2022-12-13 20:11:36,268 INFO L899 garLoopResultBuilder]: For program point L818(lines 818 835) no Hoare annotation was computed. [2022-12-13 20:11:36,268 INFO L899 garLoopResultBuilder]: For program point L946(lines 946 950) no Hoare annotation was computed. [2022-12-13 20:11:36,268 INFO L899 garLoopResultBuilder]: For program point L946-2(lines 946 950) no Hoare annotation was computed. [2022-12-13 20:11:36,268 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 814 838) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) (not (<= ~waterLevel~0 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (<= ~waterLevel~0 2)) .cse0))) [2022-12-13 20:11:36,268 INFO L895 garLoopResultBuilder]: At program point isHighWaterSensorDry_returnLabel#1(lines 539 552) the Hoare annotation is: (let ((.cse2 (<= ~waterLevel~0 1)) (.cse3 (= 0 ~systemActive~0))) (and (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0))) (or (not (= |old(~pumpRunning~0)| 0)) (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 .cse2 (not .cse1)) (not (<= ~waterLevel~0 2)) .cse3)) (or (not (= |old(~pumpRunning~0)| 1)) (not .cse2) .cse3))) [2022-12-13 20:11:36,268 INFO L895 garLoopResultBuilder]: At program point L833(line 833) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) (not (<= ~waterLevel~0 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) (not (<= ~waterLevel~0 2)) .cse0))) [2022-12-13 20:11:36,268 INFO L899 garLoopResultBuilder]: For program point L833-1(lines 814 838) no Hoare annotation was computed. [2022-12-13 20:11:36,268 INFO L895 garLoopResultBuilder]: At program point isHighWaterLevel_returnLabel#1(lines 937 955) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0))) (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0)) (.cse4 (not .cse6)) (.cse5 (not (<= ~waterLevel~0 1)))) (and (or .cse0 (and .cse1 .cse2 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~2#1| 0) .cse3 .cse4) .cse5 .cse6) (or .cse0 (and .cse1 .cse2 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~8#1| 0) (not .cse3) (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~2#1|) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0) .cse4) (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2)) .cse6) (or (not (= |old(~pumpRunning~0)| 1)) .cse5 .cse6)))) [2022-12-13 20:11:36,268 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 814 838) no Hoare annotation was computed. [2022-12-13 20:11:36,268 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 474 485) no Hoare annotation was computed. [2022-12-13 20:11:36,268 INFO L899 garLoopResultBuilder]: For program point L478-1(lines 474 485) no Hoare annotation was computed. [2022-12-13 20:11:36,268 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 474 485) the Hoare annotation is: (let ((.cse0 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (<= |old(~waterLevel~0)| 1)) (not (= ~pumpRunning~0 0)) .cse0 .cse1) (or (not (= ~pumpRunning~0 1)) .cse0 .cse1 (not (<= |old(~waterLevel~0)| 2))))) [2022-12-13 20:11:36,271 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 20:11:36,272 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-12-13 20:11:36,288 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 13.12 08:11:36 BoogieIcfgContainer [2022-12-13 20:11:36,288 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-12-13 20:11:36,288 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-12-13 20:11:36,288 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-12-13 20:11:36,288 INFO L275 PluginConnector]: Witness Printer initialized [2022-12-13 20:11:36,289 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.12 08:11:29" (3/4) ... [2022-12-13 20:11:36,291 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-12-13 20:11:36,295 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-12-13 20:11:36,295 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-12-13 20:11:36,295 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-12-13 20:11:36,295 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-12-13 20:11:36,295 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2022-12-13 20:11:36,296 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2022-12-13 20:11:36,296 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-12-13 20:11:36,300 INFO L961 BoogieBacktranslator]: Reduced CFG by removing 25 nodes and edges [2022-12-13 20:11:36,300 INFO L961 BoogieBacktranslator]: Reduced CFG by removing 8 nodes and edges [2022-12-13 20:11:36,300 INFO L961 BoogieBacktranslator]: Reduced CFG by removing 4 nodes and edges [2022-12-13 20:11:36,300 INFO L961 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-12-13 20:11:36,301 INFO L961 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-12-13 20:11:36,318 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2022-12-13 20:11:36,318 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && \result == 1) && tmp == 1) && waterLevel == 1) && !(0 == systemActive) [2022-12-13 20:11:36,318 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0 && \result == 1) && waterLevel <= 1) && tmp == 1) && splverifierCounter == 0) && !(0 == systemActive)) || (((((\result == 1 && tmp == 1) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) && pumpRunning == 1) [2022-12-13 20:11:36,318 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && (((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) [2022-12-13 20:11:36,319 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || ((2 <= waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && ((((!(\old(pumpRunning) == 1) || ((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (((tmp == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && pumpRunning == 1)) [2022-12-13 20:11:36,319 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0 && \result == 1) && tmp == 1) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) || (((((\result == 1 && tmp == 1) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) && pumpRunning == 1) [2022-12-13 20:11:36,319 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || ((2 <= waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && ((((!(\old(pumpRunning) == 1) || ((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (((tmp == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && pumpRunning == 1)) [2022-12-13 20:11:36,319 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && (((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) [2022-12-13 20:11:36,319 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || \result == 1) && ((((((((tmp == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && \result <= 1) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || (((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && \result <= 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2))) && (((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) && \result <= 1) || !(\old(pumpRunning) == 0)) || ((2 <= waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) [2022-12-13 20:11:36,319 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || ((pumpRunning == 0 && 2 <= waterLevel) && \result == 0)) || ((pumpRunning == 0 && waterLevel <= 1) && !(\result == 0))) || !(waterLevel <= 2)) || 0 == systemActive) && ((!(\old(pumpRunning) == 1) || !(waterLevel <= 1)) || 0 == systemActive) [2022-12-13 20:11:36,319 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && (((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) [2022-12-13 20:11:36,320 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || (((\result == 1 && 2 <= waterLevel) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 1) || 0 == systemActive) || !(\old(waterLevel) <= 2)) [2022-12-13 20:11:36,320 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || ((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && tmp___0 == 0) && \result == 0) && !(0 == systemActive))) || !(waterLevel <= 1)) || 0 == systemActive) && ((((!(\old(pumpRunning) == 0) || ((((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && tmp == 0) && !(\result == 0)) && 1 <= tmp___0) && \result == 0) && !(0 == systemActive))) || !(2 <= waterLevel)) || !(waterLevel <= 2)) || 0 == systemActive)) && ((!(\old(pumpRunning) == 1) || !(waterLevel <= 1)) || 0 == systemActive) [2022-12-13 20:11:36,320 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && (((!(\old(pumpRunning) == 1) || ((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) [2022-12-13 20:11:36,320 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || ((((((!(tmp == 0) && tmp == 0) && !(\result == 0)) && 2 <= waterLevel) && 1 <= tmp___0) && \result == 0) && pumpRunning == 1)) || !(waterLevel <= 2)) || 0 == systemActive) && ((!(\old(pumpRunning) == 1) || !(waterLevel <= 1)) || 0 == systemActive) [2022-12-13 20:11:36,320 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 1) || 0 == systemActive) || !(\old(waterLevel) <= 2)) [2022-12-13 20:11:36,333 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/witness.graphml [2022-12-13 20:11:36,333 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-12-13 20:11:36,334 INFO L158 Benchmark]: Toolchain (without parser) took 7108.08ms. Allocated memory was 134.2MB in the beginning and 161.5MB in the end (delta: 27.3MB). Free memory was 98.5MB in the beginning and 57.3MB in the end (delta: 41.2MB). Peak memory consumption was 71.6MB. Max. memory is 16.1GB. [2022-12-13 20:11:36,334 INFO L158 Benchmark]: CDTParser took 0.12ms. Allocated memory is still 134.2MB. Free memory is still 103.9MB. There was no memory consumed. Max. memory is 16.1GB. [2022-12-13 20:11:36,334 INFO L158 Benchmark]: CACSL2BoogieTranslator took 300.99ms. Allocated memory is still 134.2MB. Free memory was 98.1MB in the beginning and 79.6MB in the end (delta: 18.5MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2022-12-13 20:11:36,334 INFO L158 Benchmark]: Boogie Procedure Inliner took 34.17ms. Allocated memory is still 134.2MB. Free memory was 79.6MB in the beginning and 77.1MB in the end (delta: 2.5MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2022-12-13 20:11:36,334 INFO L158 Benchmark]: Boogie Preprocessor took 19.86ms. Allocated memory is still 134.2MB. Free memory was 77.1MB in the beginning and 75.5MB in the end (delta: 1.6MB). There was no memory consumed. Max. memory is 16.1GB. [2022-12-13 20:11:36,334 INFO L158 Benchmark]: RCFGBuilder took 387.29ms. Allocated memory is still 134.2MB. Free memory was 75.5MB in the beginning and 59.1MB in the end (delta: 16.3MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2022-12-13 20:11:36,335 INFO L158 Benchmark]: TraceAbstraction took 6315.00ms. Allocated memory was 134.2MB in the beginning and 161.5MB in the end (delta: 27.3MB). Free memory was 58.2MB in the beginning and 62.5MB in the end (delta: -4.3MB). Peak memory consumption was 49.2MB. Max. memory is 16.1GB. [2022-12-13 20:11:36,335 INFO L158 Benchmark]: Witness Printer took 44.97ms. Allocated memory is still 161.5MB. Free memory was 62.5MB in the beginning and 57.3MB in the end (delta: 5.2MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2022-12-13 20:11:36,336 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.12ms. Allocated memory is still 134.2MB. Free memory is still 103.9MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 300.99ms. Allocated memory is still 134.2MB. Free memory was 98.1MB in the beginning and 79.6MB in the end (delta: 18.5MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 34.17ms. Allocated memory is still 134.2MB. Free memory was 79.6MB in the beginning and 77.1MB in the end (delta: 2.5MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Boogie Preprocessor took 19.86ms. Allocated memory is still 134.2MB. Free memory was 77.1MB in the beginning and 75.5MB in the end (delta: 1.6MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 387.29ms. Allocated memory is still 134.2MB. Free memory was 75.5MB in the beginning and 59.1MB in the end (delta: 16.3MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 6315.00ms. Allocated memory was 134.2MB in the beginning and 161.5MB in the end (delta: 27.3MB). Free memory was 58.2MB in the beginning and 62.5MB in the end (delta: -4.3MB). Peak memory consumption was 49.2MB. Max. memory is 16.1GB. * Witness Printer took 44.97ms. Allocated memory is still 161.5MB. Free memory was 62.5MB in the beginning and 57.3MB in the end (delta: 5.2MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 704]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 89 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 6.2s, OverallIterations: 12, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.2s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1855 SdHoareTripleChecker+Valid, 1.2s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1825 mSDsluCounter, 3954 SdHoareTripleChecker+Invalid, 1.0s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2835 mSDsCounter, 467 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 2083 IncrementalHoareTripleChecker+Invalid, 2550 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 467 mSolverCounterUnsat, 1119 mSDtfsCounter, 2083 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 384 GetRequests, 255 SyntacticMatches, 7 SemanticMatches, 122 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 445 ImplicationChecksByTransitivity, 0.7s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=301occurred in iteration=9, InterpolantAutomatonStates: 115, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 12 MinimizatonAttempts, 65 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 41 LocationsWithAnnotation, 960 PreInvPairs, 1144 NumberOfFragments, 1193 HoareAnnotationTreeSize, 960 FomulaSimplifications, 115 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 41 FomulaSimplificationsInter, 6658 FormulaSimplificationTreeSizeReductionInter, 1.8s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 1.2s InterpolantComputationTime, 618 NumberOfCodeBlocks, 618 NumberOfCodeBlocksAsserted, 13 NumberOfCheckSat, 685 ConstructedInterpolants, 0 QuantifiedInterpolants, 1270 SizeOfPredicates, 4 NumberOfNonLiveVariables, 300 ConjunctsInSsa, 13 ConjunctsInUnsatCore, 14 InterpolantComputations, 11 PerfectInterpolantSequences, 46/63 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 620]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && \result == 1) && tmp == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 420]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || ((2 <= waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && ((((!(\old(pumpRunning) == 1) || ((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (((tmp == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && pumpRunning == 1)) - InvariantResult [Line: 975]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0 && \result == 1) && tmp == 1) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) || (((((\result == 1 && tmp == 1) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 700]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 1) || 0 == systemActive) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 720]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0 && \result == 1) && waterLevel <= 1) && tmp == 1) && splverifierCounter == 0) && !(0 == systemActive)) || (((((\result == 1 && tmp == 1) && splverifierCounter == 0) && waterLevel <= 2) && !(0 == systemActive)) && pumpRunning == 1) - InvariantResult [Line: 676]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 865]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || ((((((!(tmp == 0) && tmp == 0) && !(\result == 0)) && 2 <= waterLevel) && 1 <= tmp___0) && \result == 0) && pumpRunning == 1)) || !(waterLevel <= 2)) || 0 == systemActive) && ((!(\old(pumpRunning) == 1) || !(waterLevel <= 1)) || 0 == systemActive) - InvariantResult [Line: 530]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || \result == 1) && ((((((((tmp == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && \result <= 1) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || (((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && \result <= 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2))) && (((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) && \result <= 1) || !(\old(pumpRunning) == 0)) || ((2 <= waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 690]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 719]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 956]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && (((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 840]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || ((2 <= waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && ((((!(\old(pumpRunning) == 1) || ((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) || (((tmp == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && pumpRunning == 1)) - InvariantResult [Line: 683]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 462]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && (((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 641]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 892]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || (((\result == 1 && 2 <= waterLevel) && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 1) || 0 == systemActive) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 575]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 539]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || ((pumpRunning == 0 && 2 <= waterLevel) && \result == 0)) || ((pumpRunning == 0 && waterLevel <= 1) && !(\result == 0))) || !(waterLevel <= 2)) || 0 == systemActive) && ((!(\old(pumpRunning) == 1) || !(waterLevel <= 1)) || 0 == systemActive) - InvariantResult [Line: 710]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 553]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && (((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(\old(pumpRunning) == 1)) || 0 == systemActive) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 873]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || 0 == systemActive) || !(\old(waterLevel) <= 2)) && (((!(\old(pumpRunning) == 1) || ((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel))) || 0 == systemActive) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 937]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || ((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && tmp___0 == 0) && \result == 0) && !(0 == systemActive))) || !(waterLevel <= 1)) || 0 == systemActive) && ((((!(\old(pumpRunning) == 0) || ((((((pumpRunning == \old(pumpRunning) && pumpRunning == 0) && tmp == 0) && !(\result == 0)) && 1 <= tmp___0) && \result == 0) && !(0 == systemActive))) || !(2 <= waterLevel)) || !(waterLevel <= 2)) || 0 == systemActive)) && ((!(\old(pumpRunning) == 1) || !(waterLevel <= 1)) || 0 == systemActive) - InvariantResult [Line: 628]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 565]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2022-12-13 20:11:36,352 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_873813c7-161c-4619-9111-c2644ebf1538/bin/uautomizer-uyxdKDjOR8/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE