./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec2_product58.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version e7bb482b Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec2_product58.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash a5df7e7a530538a677becf014bfb990c6b0570c5e1058d85d7e78cec25f53253 --- Real Ultimate output --- This is Ultimate 0.2.3-dev-e7bb482 [2023-11-06 22:07:00,964 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-06 22:07:01,097 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-06 22:07:01,106 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-06 22:07:01,107 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-06 22:07:01,151 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-06 22:07:01,152 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-06 22:07:01,152 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-06 22:07:01,154 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-06 22:07:01,159 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-06 22:07:01,160 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-06 22:07:01,160 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-06 22:07:01,161 INFO L153 SettingsManager]: * Use SBE=true [2023-11-06 22:07:01,163 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-06 22:07:01,163 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-06 22:07:01,164 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-06 22:07:01,164 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-06 22:07:01,165 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-06 22:07:01,165 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-06 22:07:01,166 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-06 22:07:01,166 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-06 22:07:01,167 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-06 22:07:01,167 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-06 22:07:01,168 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-06 22:07:01,168 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-06 22:07:01,180 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-06 22:07:01,181 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-06 22:07:01,181 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-06 22:07:01,182 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 22:07:01,182 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-06 22:07:01,184 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-06 22:07:01,184 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2023-11-06 22:07:01,185 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-06 22:07:01,185 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-06 22:07:01,185 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-06 22:07:01,185 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-06 22:07:01,186 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-06 22:07:01,186 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-06 22:07:01,187 INFO L153 SettingsManager]: * Independence relation used for large block encoding in concurrent analysis=SYNTACTIC [2023-11-06 22:07:01,187 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> a5df7e7a530538a677becf014bfb990c6b0570c5e1058d85d7e78cec25f53253 [2023-11-06 22:07:01,539 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-06 22:07:01,577 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-06 22:07:01,580 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-06 22:07:01,582 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-06 22:07:01,583 INFO L274 PluginConnector]: CDTParser initialized [2023-11-06 22:07:01,584 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/../../sv-benchmarks/c/product-lines/minepump_spec2_product58.cil.c [2023-11-06 22:07:04,915 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-06 22:07:05,216 INFO L384 CDTParser]: Found 1 translation units. [2023-11-06 22:07:05,216 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/sv-benchmarks/c/product-lines/minepump_spec2_product58.cil.c [2023-11-06 22:07:05,234 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/data/13abc8b85/fb7562a8c39949d994060810eb271931/FLAGab64a3c58 [2023-11-06 22:07:05,266 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/data/13abc8b85/fb7562a8c39949d994060810eb271931 [2023-11-06 22:07:05,269 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-06 22:07:05,271 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-06 22:07:05,273 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-06 22:07:05,273 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-06 22:07:05,280 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-06 22:07:05,281 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:05,282 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6252791a and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05, skipping insertion in model container [2023-11-06 22:07:05,283 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:05,338 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-06 22:07:05,712 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/sv-benchmarks/c/product-lines/minepump_spec2_product58.cil.c[19170,19183] [2023-11-06 22:07:05,720 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 22:07:05,739 INFO L202 MainTranslator]: Completed pre-run [2023-11-06 22:07:05,754 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [49] [2023-11-06 22:07:05,757 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [160] [2023-11-06 22:07:05,757 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [526] [2023-11-06 22:07:05,758 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [596] [2023-11-06 22:07:05,758 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [824] [2023-11-06 22:07:05,758 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [864] [2023-11-06 22:07:05,759 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [902] [2023-11-06 22:07:05,759 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [999] [2023-11-06 22:07:05,891 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/sv-benchmarks/c/product-lines/minepump_spec2_product58.cil.c[19170,19183] [2023-11-06 22:07:05,892 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 22:07:05,921 INFO L206 MainTranslator]: Completed translation [2023-11-06 22:07:05,926 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05 WrapperNode [2023-11-06 22:07:05,927 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-06 22:07:05,928 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-06 22:07:05,930 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-06 22:07:05,930 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-06 22:07:05,940 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:05,970 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:06,006 INFO L138 Inliner]: procedures = 58, calls = 102, calls flagged for inlining = 26, calls inlined = 23, statements flattened = 226 [2023-11-06 22:07:06,006 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-06 22:07:06,007 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-06 22:07:06,007 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-06 22:07:06,008 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-06 22:07:06,020 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:06,020 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:06,023 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:06,023 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:06,030 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:06,036 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:06,039 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:06,041 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:06,044 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-06 22:07:06,046 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-06 22:07:06,060 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-06 22:07:06,060 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-06 22:07:06,061 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (1/1) ... [2023-11-06 22:07:06,070 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 22:07:06,092 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:07:06,124 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-06 22:07:06,141 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-06 22:07:06,174 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-06 22:07:06,175 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-06 22:07:06,175 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-06 22:07:06,175 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-06 22:07:06,176 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-06 22:07:06,176 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-06 22:07:06,176 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-06 22:07:06,176 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2023-11-06 22:07:06,177 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2023-11-06 22:07:06,177 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 22:07:06,177 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 22:07:06,177 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-06 22:07:06,178 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-06 22:07:06,178 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2023-11-06 22:07:06,178 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-06 22:07:06,178 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-06 22:07:06,178 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-06 22:07:06,179 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-06 22:07:06,271 INFO L236 CfgBuilder]: Building ICFG [2023-11-06 22:07:06,274 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-06 22:07:06,685 INFO L277 CfgBuilder]: Performing block encoding [2023-11-06 22:07:06,693 INFO L297 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-06 22:07:06,694 INFO L302 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-06 22:07:06,696 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 10:07:06 BoogieIcfgContainer [2023-11-06 22:07:06,697 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-06 22:07:06,699 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-06 22:07:06,699 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-06 22:07:06,705 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-06 22:07:06,706 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 06.11 10:07:05" (1/3) ... [2023-11-06 22:07:06,706 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7e3afae3 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 10:07:06, skipping insertion in model container [2023-11-06 22:07:06,707 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:07:05" (2/3) ... [2023-11-06 22:07:06,707 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7e3afae3 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 10:07:06, skipping insertion in model container [2023-11-06 22:07:06,707 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 10:07:06" (3/3) ... [2023-11-06 22:07:06,709 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product58.cil.c [2023-11-06 22:07:06,729 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-06 22:07:06,730 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-06 22:07:06,785 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-06 22:07:06,792 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@48bb3dee, mLbeIndependenceSettings=[IndependenceType=SYNTACTIC, AbstractionType=NONE, UseConditional=, UseSemiCommutativity=, Solver=, SolverTimeout=] [2023-11-06 22:07:06,792 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-06 22:07:06,798 INFO L276 IsEmpty]: Start isEmpty. Operand has 94 states, 73 states have (on average 1.3835616438356164) internal successors, (101), 81 states have internal predecessors, (101), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) [2023-11-06 22:07:06,809 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2023-11-06 22:07:06,810 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:06,810 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:06,811 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:06,817 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:06,817 INFO L85 PathProgramCache]: Analyzing trace with hash 1936540556, now seen corresponding path program 1 times [2023-11-06 22:07:06,828 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:06,828 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1552582088] [2023-11-06 22:07:06,829 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:06,829 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:07,014 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:07,097 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-06 22:07:07,100 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:07,107 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:07:07,107 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:07,108 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1552582088] [2023-11-06 22:07:07,109 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1552582088] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:07,109 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:07:07,110 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-06 22:07:07,111 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1951066913] [2023-11-06 22:07:07,112 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:07,119 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-06 22:07:07,120 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:07,166 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-06 22:07:07,167 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 22:07:07,170 INFO L87 Difference]: Start difference. First operand has 94 states, 73 states have (on average 1.3835616438356164) internal successors, (101), 81 states have internal predecessors, (101), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:07:07,257 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:07,258 INFO L93 Difference]: Finished difference Result 179 states and 244 transitions. [2023-11-06 22:07:07,259 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-06 22:07:07,261 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2023-11-06 22:07:07,261 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:07,274 INFO L225 Difference]: With dead ends: 179 [2023-11-06 22:07:07,274 INFO L226 Difference]: Without dead ends: 85 [2023-11-06 22:07:07,280 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 22:07:07,286 INFO L413 NwaCegarLoop]: 119 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 119 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:07,287 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 119 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:07:07,308 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 85 states. [2023-11-06 22:07:07,358 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 85 to 85. [2023-11-06 22:07:07,360 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 85 states, 66 states have (on average 1.3181818181818181) internal successors, (87), 73 states have internal predecessors, (87), 12 states have call successors, (12), 7 states have call predecessors, (12), 6 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2023-11-06 22:07:07,370 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 85 states to 85 states and 110 transitions. [2023-11-06 22:07:07,374 INFO L78 Accepts]: Start accepts. Automaton has 85 states and 110 transitions. Word has length 25 [2023-11-06 22:07:07,375 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:07,375 INFO L495 AbstractCegarLoop]: Abstraction has 85 states and 110 transitions. [2023-11-06 22:07:07,376 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:07:07,377 INFO L276 IsEmpty]: Start isEmpty. Operand 85 states and 110 transitions. [2023-11-06 22:07:07,380 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-11-06 22:07:07,382 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:07,383 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:07,383 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-06 22:07:07,385 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:07,387 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:07,387 INFO L85 PathProgramCache]: Analyzing trace with hash -433728910, now seen corresponding path program 1 times [2023-11-06 22:07:07,387 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:07,387 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1063592395] [2023-11-06 22:07:07,387 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:07,388 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:07,412 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:07,545 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-06 22:07:07,548 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:07,551 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:07:07,552 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:07,552 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1063592395] [2023-11-06 22:07:07,552 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1063592395] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:07,553 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:07:07,553 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-06 22:07:07,553 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [6842553] [2023-11-06 22:07:07,553 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:07,555 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 22:07:07,555 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:07,556 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 22:07:07,556 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:07:07,557 INFO L87 Difference]: Start difference. First operand 85 states and 110 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:07:07,577 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:07,577 INFO L93 Difference]: Finished difference Result 134 states and 174 transitions. [2023-11-06 22:07:07,578 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 22:07:07,578 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2023-11-06 22:07:07,579 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:07,580 INFO L225 Difference]: With dead ends: 134 [2023-11-06 22:07:07,581 INFO L226 Difference]: Without dead ends: 76 [2023-11-06 22:07:07,582 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:07:07,583 INFO L413 NwaCegarLoop]: 97 mSDtfsCounter, 13 mSDsluCounter, 80 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 177 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:07,584 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 177 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:07:07,586 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2023-11-06 22:07:07,596 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 76. [2023-11-06 22:07:07,597 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 60 states have (on average 1.3333333333333333) internal successors, (80), 67 states have internal predecessors, (80), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2023-11-06 22:07:07,598 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 98 transitions. [2023-11-06 22:07:07,599 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 98 transitions. Word has length 26 [2023-11-06 22:07:07,599 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:07,600 INFO L495 AbstractCegarLoop]: Abstraction has 76 states and 98 transitions. [2023-11-06 22:07:07,600 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:07:07,600 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 98 transitions. [2023-11-06 22:07:07,602 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2023-11-06 22:07:07,602 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:07,603 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:07,603 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-06 22:07:07,603 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:07,604 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:07,604 INFO L85 PathProgramCache]: Analyzing trace with hash -960870689, now seen corresponding path program 1 times [2023-11-06 22:07:07,605 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:07,605 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1874780983] [2023-11-06 22:07:07,605 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:07,606 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:07,631 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:07,708 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-06 22:07:07,710 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:07,713 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:07:07,713 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:07,713 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1874780983] [2023-11-06 22:07:07,713 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1874780983] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:07,714 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:07:07,714 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-06 22:07:07,714 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [145759438] [2023-11-06 22:07:07,714 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:07,715 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 22:07:07,715 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:07,716 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 22:07:07,716 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:07:07,716 INFO L87 Difference]: Start difference. First operand 76 states and 98 transitions. Second operand has 3 states, 3 states have (on average 9.333333333333334) internal successors, (28), 3 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:07:07,770 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:07,776 INFO L93 Difference]: Finished difference Result 144 states and 189 transitions. [2023-11-06 22:07:07,777 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 22:07:07,777 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.333333333333334) internal successors, (28), 3 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2023-11-06 22:07:07,779 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:07,785 INFO L225 Difference]: With dead ends: 144 [2023-11-06 22:07:07,787 INFO L226 Difference]: Without dead ends: 76 [2023-11-06 22:07:07,788 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:07:07,793 INFO L413 NwaCegarLoop]: 96 mSDtfsCounter, 92 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 92 SdHoareTripleChecker+Valid, 96 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:07,797 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [92 Valid, 96 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:07:07,799 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2023-11-06 22:07:07,815 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 76. [2023-11-06 22:07:07,816 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 60 states have (on average 1.3166666666666667) internal successors, (79), 67 states have internal predecessors, (79), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2023-11-06 22:07:07,817 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 97 transitions. [2023-11-06 22:07:07,818 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 97 transitions. Word has length 31 [2023-11-06 22:07:07,818 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:07,818 INFO L495 AbstractCegarLoop]: Abstraction has 76 states and 97 transitions. [2023-11-06 22:07:07,819 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.333333333333334) internal successors, (28), 3 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:07:07,821 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 97 transitions. [2023-11-06 22:07:07,823 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2023-11-06 22:07:07,823 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:07,827 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:07,827 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-06 22:07:07,827 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:07,828 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:07,828 INFO L85 PathProgramCache]: Analyzing trace with hash 1051649323, now seen corresponding path program 1 times [2023-11-06 22:07:07,828 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:07,829 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1026475837] [2023-11-06 22:07:07,829 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:07,829 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:07,864 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:07,982 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2023-11-06 22:07:07,984 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:07,989 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:07:07,989 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:07,990 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1026475837] [2023-11-06 22:07:07,990 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1026475837] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:07,991 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:07:07,992 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-06 22:07:07,992 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1094482595] [2023-11-06 22:07:07,992 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:07,993 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 22:07:07,993 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:07,994 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 22:07:07,995 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:07:07,996 INFO L87 Difference]: Start difference. First operand 76 states and 97 transitions. Second operand has 3 states, 3 states have (on average 12.0) internal successors, (36), 3 states have internal predecessors, (36), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:07:08,063 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:08,063 INFO L93 Difference]: Finished difference Result 189 states and 247 transitions. [2023-11-06 22:07:08,064 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 22:07:08,064 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 12.0) internal successors, (36), 3 states have internal predecessors, (36), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2023-11-06 22:07:08,065 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:08,066 INFO L225 Difference]: With dead ends: 189 [2023-11-06 22:07:08,067 INFO L226 Difference]: Without dead ends: 121 [2023-11-06 22:07:08,068 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:07:08,069 INFO L413 NwaCegarLoop]: 108 mSDtfsCounter, 59 mSDsluCounter, 62 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 59 SdHoareTripleChecker+Valid, 170 SdHoareTripleChecker+Invalid, 15 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:08,070 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [59 Valid, 170 Invalid, 15 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:07:08,072 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2023-11-06 22:07:08,094 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 119. [2023-11-06 22:07:08,094 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 119 states, 93 states have (on average 1.3010752688172043) internal successors, (121), 101 states have internal predecessors, (121), 13 states have call successors, (13), 12 states have call predecessors, (13), 12 states have return successors, (17), 13 states have call predecessors, (17), 13 states have call successors, (17) [2023-11-06 22:07:08,096 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 119 states to 119 states and 151 transitions. [2023-11-06 22:07:08,096 INFO L78 Accepts]: Start accepts. Automaton has 119 states and 151 transitions. Word has length 39 [2023-11-06 22:07:08,097 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:08,097 INFO L495 AbstractCegarLoop]: Abstraction has 119 states and 151 transitions. [2023-11-06 22:07:08,097 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 12.0) internal successors, (36), 3 states have internal predecessors, (36), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:07:08,098 INFO L276 IsEmpty]: Start isEmpty. Operand 119 states and 151 transitions. [2023-11-06 22:07:08,099 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2023-11-06 22:07:08,099 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:08,100 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:08,100 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-06 22:07:08,100 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:08,101 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:08,101 INFO L85 PathProgramCache]: Analyzing trace with hash 1776043399, now seen corresponding path program 1 times [2023-11-06 22:07:08,101 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:08,102 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1033176729] [2023-11-06 22:07:08,102 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:08,102 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:08,122 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:08,198 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-06 22:07:08,203 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:08,235 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:07:08,236 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:08,238 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2023-11-06 22:07:08,240 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:08,242 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:07:08,242 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:08,243 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1033176729] [2023-11-06 22:07:08,243 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1033176729] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:08,243 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:07:08,243 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 22:07:08,244 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [981363850] [2023-11-06 22:07:08,244 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:08,244 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:07:08,245 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:08,245 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:07:08,246 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 22:07:08,246 INFO L87 Difference]: Start difference. First operand 119 states and 151 transitions. Second operand has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 22:07:08,449 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:08,450 INFO L93 Difference]: Finished difference Result 273 states and 359 transitions. [2023-11-06 22:07:08,450 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-06 22:07:08,451 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) Word has length 47 [2023-11-06 22:07:08,451 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:08,453 INFO L225 Difference]: With dead ends: 273 [2023-11-06 22:07:08,454 INFO L226 Difference]: Without dead ends: 162 [2023-11-06 22:07:08,455 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2023-11-06 22:07:08,457 INFO L413 NwaCegarLoop]: 87 mSDtfsCounter, 80 mSDsluCounter, 202 mSDsCounter, 0 mSdLazyCounter, 98 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 84 SdHoareTripleChecker+Valid, 289 SdHoareTripleChecker+Invalid, 114 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 98 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:08,457 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [84 Valid, 289 Invalid, 114 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 98 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 22:07:08,459 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 162 states. [2023-11-06 22:07:08,486 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 162 to 145. [2023-11-06 22:07:08,487 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 114 states have (on average 1.2982456140350878) internal successors, (148), 122 states have internal predecessors, (148), 15 states have call successors, (15), 12 states have call predecessors, (15), 15 states have return successors, (22), 16 states have call predecessors, (22), 15 states have call successors, (22) [2023-11-06 22:07:08,489 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 185 transitions. [2023-11-06 22:07:08,489 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 185 transitions. Word has length 47 [2023-11-06 22:07:08,490 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:08,490 INFO L495 AbstractCegarLoop]: Abstraction has 145 states and 185 transitions. [2023-11-06 22:07:08,490 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 22:07:08,490 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 185 transitions. [2023-11-06 22:07:08,492 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2023-11-06 22:07:08,492 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:08,492 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:08,493 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-06 22:07:08,493 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:08,493 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:08,494 INFO L85 PathProgramCache]: Analyzing trace with hash 1353341573, now seen corresponding path program 1 times [2023-11-06 22:07:08,494 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:08,494 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [391643621] [2023-11-06 22:07:08,494 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:08,495 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:08,515 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:08,650 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-06 22:07:08,662 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:08,675 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:07:08,676 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:08,680 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2023-11-06 22:07:08,683 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:08,692 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:07:08,692 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:08,692 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [391643621] [2023-11-06 22:07:08,693 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [391643621] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:08,693 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:07:08,693 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-06 22:07:08,693 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [292806282] [2023-11-06 22:07:08,693 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:08,694 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 22:07:08,695 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:08,696 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 22:07:08,696 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-06 22:07:08,697 INFO L87 Difference]: Start difference. First operand 145 states and 185 transitions. Second operand has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-06 22:07:09,042 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:09,042 INFO L93 Difference]: Finished difference Result 290 states and 371 transitions. [2023-11-06 22:07:09,043 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2023-11-06 22:07:09,044 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 47 [2023-11-06 22:07:09,046 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:09,052 INFO L225 Difference]: With dead ends: 290 [2023-11-06 22:07:09,053 INFO L226 Difference]: Without dead ends: 153 [2023-11-06 22:07:09,055 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2023-11-06 22:07:09,063 INFO L413 NwaCegarLoop]: 94 mSDtfsCounter, 114 mSDsluCounter, 279 mSDsCounter, 0 mSdLazyCounter, 148 mSolverCounterSat, 27 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 118 SdHoareTripleChecker+Valid, 373 SdHoareTripleChecker+Invalid, 175 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 27 IncrementalHoareTripleChecker+Valid, 148 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:09,067 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [118 Valid, 373 Invalid, 175 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [27 Valid, 148 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 22:07:09,069 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 153 states. [2023-11-06 22:07:09,111 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 153 to 143. [2023-11-06 22:07:09,113 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 143 states, 112 states have (on average 1.2678571428571428) internal successors, (142), 120 states have internal predecessors, (142), 15 states have call successors, (15), 12 states have call predecessors, (15), 15 states have return successors, (22), 16 states have call predecessors, (22), 15 states have call successors, (22) [2023-11-06 22:07:09,117 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 143 states to 143 states and 179 transitions. [2023-11-06 22:07:09,118 INFO L78 Accepts]: Start accepts. Automaton has 143 states and 179 transitions. Word has length 47 [2023-11-06 22:07:09,119 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:09,119 INFO L495 AbstractCegarLoop]: Abstraction has 143 states and 179 transitions. [2023-11-06 22:07:09,120 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-06 22:07:09,120 INFO L276 IsEmpty]: Start isEmpty. Operand 143 states and 179 transitions. [2023-11-06 22:07:09,125 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2023-11-06 22:07:09,126 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:09,127 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:09,127 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-06 22:07:09,127 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:09,128 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:09,128 INFO L85 PathProgramCache]: Analyzing trace with hash -1275147008, now seen corresponding path program 1 times [2023-11-06 22:07:09,128 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:09,129 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1737578301] [2023-11-06 22:07:09,129 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:09,129 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:09,162 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:09,292 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-06 22:07:09,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:09,379 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:07:09,381 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:09,383 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2023-11-06 22:07:09,386 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:09,400 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-06 22:07:09,401 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:09,401 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1737578301] [2023-11-06 22:07:09,401 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1737578301] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:09,401 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:07:09,401 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-06 22:07:09,402 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [406264476] [2023-11-06 22:07:09,402 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:09,402 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 22:07:09,402 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:09,403 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 22:07:09,403 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-06 22:07:09,404 INFO L87 Difference]: Start difference. First operand 143 states and 179 transitions. Second operand has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 5 states have internal predecessors, (44), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 22:07:09,600 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:09,600 INFO L93 Difference]: Finished difference Result 288 states and 371 transitions. [2023-11-06 22:07:09,601 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-06 22:07:09,601 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 5 states have internal predecessors, (44), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) Word has length 53 [2023-11-06 22:07:09,601 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:09,603 INFO L225 Difference]: With dead ends: 288 [2023-11-06 22:07:09,603 INFO L226 Difference]: Without dead ends: 153 [2023-11-06 22:07:09,604 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=29, Invalid=61, Unknown=0, NotChecked=0, Total=90 [2023-11-06 22:07:09,605 INFO L413 NwaCegarLoop]: 85 mSDtfsCounter, 65 mSDsluCounter, 281 mSDsCounter, 0 mSdLazyCounter, 123 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 68 SdHoareTripleChecker+Valid, 366 SdHoareTripleChecker+Invalid, 143 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 123 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:09,605 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [68 Valid, 366 Invalid, 143 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 123 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 22:07:09,606 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 153 states. [2023-11-06 22:07:09,624 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 153 to 146. [2023-11-06 22:07:09,625 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 146 states, 115 states have (on average 1.2608695652173914) internal successors, (145), 123 states have internal predecessors, (145), 15 states have call successors, (15), 12 states have call predecessors, (15), 15 states have return successors, (22), 16 states have call predecessors, (22), 15 states have call successors, (22) [2023-11-06 22:07:09,626 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 146 states to 146 states and 182 transitions. [2023-11-06 22:07:09,627 INFO L78 Accepts]: Start accepts. Automaton has 146 states and 182 transitions. Word has length 53 [2023-11-06 22:07:09,627 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:09,627 INFO L495 AbstractCegarLoop]: Abstraction has 146 states and 182 transitions. [2023-11-06 22:07:09,628 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 5 states have internal predecessors, (44), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 22:07:09,628 INFO L276 IsEmpty]: Start isEmpty. Operand 146 states and 182 transitions. [2023-11-06 22:07:09,629 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2023-11-06 22:07:09,629 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:09,629 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:09,630 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-06 22:07:09,630 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:09,630 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:09,630 INFO L85 PathProgramCache]: Analyzing trace with hash 2034284420, now seen corresponding path program 1 times [2023-11-06 22:07:09,631 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:09,631 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1645573239] [2023-11-06 22:07:09,631 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:09,631 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:09,644 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:09,696 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-06 22:07:09,701 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:09,718 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:07:09,719 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:09,722 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2023-11-06 22:07:09,723 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:09,725 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-06 22:07:09,725 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:09,725 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1645573239] [2023-11-06 22:07:09,725 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1645573239] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:09,725 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:07:09,726 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 22:07:09,726 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1064676887] [2023-11-06 22:07:09,726 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:09,727 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:07:09,727 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:09,727 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:07:09,728 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 22:07:09,728 INFO L87 Difference]: Start difference. First operand 146 states and 182 transitions. Second operand has 5 states, 5 states have (on average 8.8) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-06 22:07:09,970 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:09,970 INFO L93 Difference]: Finished difference Result 404 states and 525 transitions. [2023-11-06 22:07:09,971 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-06 22:07:09,971 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.8) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 53 [2023-11-06 22:07:09,971 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:09,974 INFO L225 Difference]: With dead ends: 404 [2023-11-06 22:07:09,974 INFO L226 Difference]: Without dead ends: 266 [2023-11-06 22:07:09,976 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2023-11-06 22:07:09,977 INFO L413 NwaCegarLoop]: 125 mSDtfsCounter, 191 mSDsluCounter, 177 mSDsCounter, 0 mSdLazyCounter, 128 mSolverCounterSat, 55 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 197 SdHoareTripleChecker+Valid, 302 SdHoareTripleChecker+Invalid, 183 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 55 IncrementalHoareTripleChecker+Valid, 128 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:09,977 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [197 Valid, 302 Invalid, 183 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [55 Valid, 128 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 22:07:09,978 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 266 states. [2023-11-06 22:07:10,015 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 266 to 264. [2023-11-06 22:07:10,016 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 264 states, 204 states have (on average 1.2352941176470589) internal successors, (252), 216 states have internal predecessors, (252), 30 states have call successors, (30), 28 states have call predecessors, (30), 29 states have return successors, (49), 30 states have call predecessors, (49), 30 states have call successors, (49) [2023-11-06 22:07:10,019 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 264 states to 264 states and 331 transitions. [2023-11-06 22:07:10,019 INFO L78 Accepts]: Start accepts. Automaton has 264 states and 331 transitions. Word has length 53 [2023-11-06 22:07:10,020 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:10,020 INFO L495 AbstractCegarLoop]: Abstraction has 264 states and 331 transitions. [2023-11-06 22:07:10,020 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.8) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-06 22:07:10,020 INFO L276 IsEmpty]: Start isEmpty. Operand 264 states and 331 transitions. [2023-11-06 22:07:10,022 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 58 [2023-11-06 22:07:10,022 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:10,022 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:10,022 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-06 22:07:10,023 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:10,023 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:10,023 INFO L85 PathProgramCache]: Analyzing trace with hash 1253719722, now seen corresponding path program 1 times [2023-11-06 22:07:10,023 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:10,024 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1609425667] [2023-11-06 22:07:10,024 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:10,024 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:10,039 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:10,087 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 22:07:10,088 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:10,096 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2023-11-06 22:07:10,108 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:10,114 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:07:10,119 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:10,122 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 47 [2023-11-06 22:07:10,123 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:10,127 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-06 22:07:10,128 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:10,128 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1609425667] [2023-11-06 22:07:10,128 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1609425667] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:10,128 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:07:10,129 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 22:07:10,129 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [975211294] [2023-11-06 22:07:10,129 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:10,130 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:07:10,130 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:10,131 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:07:10,131 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 22:07:10,132 INFO L87 Difference]: Start difference. First operand 264 states and 331 transitions. Second operand has 5 states, 5 states have (on average 9.2) internal successors, (46), 3 states have internal predecessors, (46), 2 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-06 22:07:10,560 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:10,560 INFO L93 Difference]: Finished difference Result 549 states and 729 transitions. [2023-11-06 22:07:10,561 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-06 22:07:10,561 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.2) internal successors, (46), 3 states have internal predecessors, (46), 2 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 57 [2023-11-06 22:07:10,562 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:10,566 INFO L225 Difference]: With dead ends: 549 [2023-11-06 22:07:10,567 INFO L226 Difference]: Without dead ends: 547 [2023-11-06 22:07:10,567 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2023-11-06 22:07:10,568 INFO L413 NwaCegarLoop]: 69 mSDtfsCounter, 307 mSDsluCounter, 155 mSDsCounter, 0 mSdLazyCounter, 141 mSolverCounterSat, 95 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 310 SdHoareTripleChecker+Valid, 224 SdHoareTripleChecker+Invalid, 236 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 95 IncrementalHoareTripleChecker+Valid, 141 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:10,569 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [310 Valid, 224 Invalid, 236 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [95 Valid, 141 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-06 22:07:10,570 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 547 states. [2023-11-06 22:07:10,656 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 547 to 490. [2023-11-06 22:07:10,657 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 490 states, 380 states have (on average 1.2421052631578948) internal successors, (472), 405 states have internal predecessors, (472), 57 states have call successors, (57), 43 states have call predecessors, (57), 52 states have return successors, (127), 58 states have call predecessors, (127), 57 states have call successors, (127) [2023-11-06 22:07:10,663 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 490 states to 490 states and 656 transitions. [2023-11-06 22:07:10,663 INFO L78 Accepts]: Start accepts. Automaton has 490 states and 656 transitions. Word has length 57 [2023-11-06 22:07:10,663 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:10,664 INFO L495 AbstractCegarLoop]: Abstraction has 490 states and 656 transitions. [2023-11-06 22:07:10,664 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.2) internal successors, (46), 3 states have internal predecessors, (46), 2 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-06 22:07:10,664 INFO L276 IsEmpty]: Start isEmpty. Operand 490 states and 656 transitions. [2023-11-06 22:07:10,667 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 100 [2023-11-06 22:07:10,667 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:10,668 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:10,668 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-11-06 22:07:10,668 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:10,669 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:10,669 INFO L85 PathProgramCache]: Analyzing trace with hash 214602906, now seen corresponding path program 1 times [2023-11-06 22:07:10,669 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:10,669 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2052271084] [2023-11-06 22:07:10,670 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:10,670 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:10,696 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:10,909 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 22:07:10,910 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:10,926 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-06 22:07:10,935 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:10,983 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 22:07:10,987 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:11,002 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:07:11,004 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:11,007 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2023-11-06 22:07:11,008 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:11,015 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 79 [2023-11-06 22:07:11,017 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:11,020 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:07:11,022 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:11,023 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 89 [2023-11-06 22:07:11,025 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:11,036 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 20 proven. 3 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2023-11-06 22:07:11,037 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:11,038 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2052271084] [2023-11-06 22:07:11,038 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2052271084] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 22:07:11,038 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1076610484] [2023-11-06 22:07:11,039 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:11,039 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:07:11,039 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:07:11,044 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 22:07:11,068 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-06 22:07:11,262 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:11,265 INFO L262 TraceCheckSpWp]: Trace formula consists of 345 conjuncts, 11 conjunts are in the unsatisfiable core [2023-11-06 22:07:11,277 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 22:07:11,440 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 31 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-06 22:07:11,440 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 22:07:11,440 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1076610484] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:11,441 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 22:07:11,441 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [9] total 9 [2023-11-06 22:07:11,441 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [894708229] [2023-11-06 22:07:11,441 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:11,443 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 22:07:11,443 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:11,444 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 22:07:11,444 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=18, Invalid=54, Unknown=0, NotChecked=0, Total=72 [2023-11-06 22:07:11,445 INFO L87 Difference]: Start difference. First operand 490 states and 656 transitions. Second operand has 6 states, 6 states have (on average 13.333333333333334) internal successors, (80), 6 states have internal predecessors, (80), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2023-11-06 22:07:11,705 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:11,706 INFO L93 Difference]: Finished difference Result 1212 states and 1736 transitions. [2023-11-06 22:07:11,708 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-11-06 22:07:11,708 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 13.333333333333334) internal successors, (80), 6 states have internal predecessors, (80), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) Word has length 99 [2023-11-06 22:07:11,709 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:11,716 INFO L225 Difference]: With dead ends: 1212 [2023-11-06 22:07:11,717 INFO L226 Difference]: Without dead ends: 779 [2023-11-06 22:07:11,720 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 126 GetRequests, 114 SyntacticMatches, 2 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=34, Invalid=98, Unknown=0, NotChecked=0, Total=132 [2023-11-06 22:07:11,721 INFO L413 NwaCegarLoop]: 169 mSDtfsCounter, 136 mSDsluCounter, 456 mSDsCounter, 0 mSdLazyCounter, 61 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 136 SdHoareTripleChecker+Valid, 625 SdHoareTripleChecker+Invalid, 76 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 61 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:11,722 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [136 Valid, 625 Invalid, 76 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 61 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 22:07:11,724 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 779 states. [2023-11-06 22:07:11,834 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 779 to 705. [2023-11-06 22:07:11,836 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 705 states, 544 states have (on average 1.244485294117647) internal successors, (677), 579 states have internal predecessors, (677), 84 states have call successors, (84), 63 states have call predecessors, (84), 76 states have return successors, (198), 83 states have call predecessors, (198), 84 states have call successors, (198) [2023-11-06 22:07:11,843 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 705 states to 705 states and 959 transitions. [2023-11-06 22:07:11,843 INFO L78 Accepts]: Start accepts. Automaton has 705 states and 959 transitions. Word has length 99 [2023-11-06 22:07:11,844 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:11,844 INFO L495 AbstractCegarLoop]: Abstraction has 705 states and 959 transitions. [2023-11-06 22:07:11,844 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 13.333333333333334) internal successors, (80), 6 states have internal predecessors, (80), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2023-11-06 22:07:11,844 INFO L276 IsEmpty]: Start isEmpty. Operand 705 states and 959 transitions. [2023-11-06 22:07:11,847 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 100 [2023-11-06 22:07:11,847 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:11,847 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:11,859 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-06 22:07:12,054 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-06 22:07:12,054 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:12,055 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:12,055 INFO L85 PathProgramCache]: Analyzing trace with hash 80589400, now seen corresponding path program 1 times [2023-11-06 22:07:12,057 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:12,057 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [214264608] [2023-11-06 22:07:12,057 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:12,057 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:12,089 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:12,223 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 22:07:12,225 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:12,239 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-06 22:07:12,243 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:12,259 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 22:07:12,262 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:12,270 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:07:12,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:12,274 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2023-11-06 22:07:12,275 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:12,278 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 79 [2023-11-06 22:07:12,279 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:12,281 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:07:12,283 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:12,284 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 89 [2023-11-06 22:07:12,285 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:12,287 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 8 proven. 3 refuted. 0 times theorem prover too weak. 23 trivial. 0 not checked. [2023-11-06 22:07:12,287 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:12,287 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [214264608] [2023-11-06 22:07:12,287 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [214264608] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 22:07:12,288 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1854227106] [2023-11-06 22:07:12,288 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:12,288 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:07:12,288 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:07:12,289 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 22:07:12,324 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-06 22:07:12,432 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:12,434 INFO L262 TraceCheckSpWp]: Trace formula consists of 346 conjuncts, 5 conjunts are in the unsatisfiable core [2023-11-06 22:07:12,442 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 22:07:12,507 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 18 proven. 0 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2023-11-06 22:07:12,508 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 22:07:12,508 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1854227106] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:12,508 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 22:07:12,508 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [9] total 12 [2023-11-06 22:07:12,509 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [588051346] [2023-11-06 22:07:12,509 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:12,509 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:07:12,509 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:12,510 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:07:12,510 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=26, Invalid=106, Unknown=0, NotChecked=0, Total=132 [2023-11-06 22:07:12,511 INFO L87 Difference]: Start difference. First operand 705 states and 959 transitions. Second operand has 5 states, 5 states have (on average 14.2) internal successors, (71), 5 states have internal predecessors, (71), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-06 22:07:12,640 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:12,640 INFO L93 Difference]: Finished difference Result 1008 states and 1353 transitions. [2023-11-06 22:07:12,641 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-06 22:07:12,641 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 14.2) internal successors, (71), 5 states have internal predecessors, (71), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) Word has length 99 [2023-11-06 22:07:12,643 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:12,646 INFO L225 Difference]: With dead ends: 1008 [2023-11-06 22:07:12,646 INFO L226 Difference]: Without dead ends: 360 [2023-11-06 22:07:12,650 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 123 GetRequests, 111 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=38, Invalid=144, Unknown=0, NotChecked=0, Total=182 [2023-11-06 22:07:12,651 INFO L413 NwaCegarLoop]: 98 mSDtfsCounter, 15 mSDsluCounter, 276 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 374 SdHoareTripleChecker+Invalid, 11 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:12,652 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 374 Invalid, 11 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:07:12,653 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 360 states. [2023-11-06 22:07:12,718 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 360 to 345. [2023-11-06 22:07:12,719 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 345 states, 268 states have (on average 1.1977611940298507) internal successors, (321), 285 states have internal predecessors, (321), 39 states have call successors, (39), 31 states have call predecessors, (39), 37 states have return successors, (65), 40 states have call predecessors, (65), 39 states have call successors, (65) [2023-11-06 22:07:12,723 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 345 states to 345 states and 425 transitions. [2023-11-06 22:07:12,724 INFO L78 Accepts]: Start accepts. Automaton has 345 states and 425 transitions. Word has length 99 [2023-11-06 22:07:12,725 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:12,725 INFO L495 AbstractCegarLoop]: Abstraction has 345 states and 425 transitions. [2023-11-06 22:07:12,725 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 14.2) internal successors, (71), 5 states have internal predecessors, (71), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-06 22:07:12,725 INFO L276 IsEmpty]: Start isEmpty. Operand 345 states and 425 transitions. [2023-11-06 22:07:12,728 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 107 [2023-11-06 22:07:12,728 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:07:12,728 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:12,735 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-11-06 22:07:12,935 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2023-11-06 22:07:12,935 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:07:12,936 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:07:12,936 INFO L85 PathProgramCache]: Analyzing trace with hash 1897677379, now seen corresponding path program 1 times [2023-11-06 22:07:12,936 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:07:12,936 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [236092650] [2023-11-06 22:07:12,936 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:12,936 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:07:12,958 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:13,033 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 22:07:13,037 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:13,050 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-06 22:07:13,056 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:13,092 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 22:07:13,095 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:13,107 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:07:13,109 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:13,110 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2023-11-06 22:07:13,112 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:13,114 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 74 [2023-11-06 22:07:13,118 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:13,123 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:07:13,124 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:13,126 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 96 [2023-11-06 22:07:13,127 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:13,129 INFO L134 CoverageAnalysis]: Checked inductivity of 56 backedges. 19 proven. 7 refuted. 0 times theorem prover too weak. 30 trivial. 0 not checked. [2023-11-06 22:07:13,129 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:07:13,129 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [236092650] [2023-11-06 22:07:13,129 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [236092650] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 22:07:13,129 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1086126312] [2023-11-06 22:07:13,130 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:07:13,130 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:07:13,130 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:07:13,131 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 22:07:13,176 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-11-06 22:07:13,299 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:07:13,301 INFO L262 TraceCheckSpWp]: Trace formula consists of 369 conjuncts, 3 conjunts are in the unsatisfiable core [2023-11-06 22:07:13,316 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 22:07:13,339 INFO L134 CoverageAnalysis]: Checked inductivity of 56 backedges. 39 proven. 0 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2023-11-06 22:07:13,340 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 22:07:13,340 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1086126312] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:07:13,340 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 22:07:13,340 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [8] total 8 [2023-11-06 22:07:13,341 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1597335765] [2023-11-06 22:07:13,341 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:07:13,341 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 22:07:13,341 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:07:13,342 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 22:07:13,342 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2023-11-06 22:07:13,343 INFO L87 Difference]: Start difference. First operand 345 states and 425 transitions. Second operand has 3 states, 3 states have (on average 25.666666666666668) internal successors, (77), 3 states have internal predecessors, (77), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-06 22:07:13,411 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:07:13,412 INFO L93 Difference]: Finished difference Result 536 states and 673 transitions. [2023-11-06 22:07:13,412 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 22:07:13,412 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 25.666666666666668) internal successors, (77), 3 states have internal predecessors, (77), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) Word has length 106 [2023-11-06 22:07:13,413 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:07:13,413 INFO L225 Difference]: With dead ends: 536 [2023-11-06 22:07:13,413 INFO L226 Difference]: Without dead ends: 0 [2023-11-06 22:07:13,415 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 128 GetRequests, 122 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2023-11-06 22:07:13,416 INFO L413 NwaCegarLoop]: 126 mSDtfsCounter, 49 mSDsluCounter, 70 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 49 SdHoareTripleChecker+Valid, 196 SdHoareTripleChecker+Invalid, 11 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:07:13,417 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [49 Valid, 196 Invalid, 11 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:07:13,418 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-06 22:07:13,418 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-06 22:07:13,418 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:07:13,418 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-06 22:07:13,419 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 106 [2023-11-06 22:07:13,419 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:07:13,419 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-06 22:07:13,419 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 25.666666666666668) internal successors, (77), 3 states have internal predecessors, (77), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-06 22:07:13,419 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-06 22:07:13,419 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-06 22:07:13,423 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-06 22:07:13,434 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2023-11-06 22:07:13,629 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2023-11-06 22:07:13,631 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-06 22:07:16,521 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 629 635) no Hoare annotation was computed. [2023-11-06 22:07:16,522 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 629 635) the Hoare annotation is: true [2023-11-06 22:07:16,522 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 84 95) the Hoare annotation is: true [2023-11-06 22:07:16,522 INFO L899 garLoopResultBuilder]: For program point L88-1(lines 84 95) no Hoare annotation was computed. [2023-11-06 22:07:16,522 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 84 95) no Hoare annotation was computed. [2023-11-06 22:07:16,522 INFO L902 garLoopResultBuilder]: At program point L929(lines 904 933) the Hoare annotation is: true [2023-11-06 22:07:16,522 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 904 933) no Hoare annotation was computed. [2023-11-06 22:07:16,522 INFO L899 garLoopResultBuilder]: For program point L925(line 925) no Hoare annotation was computed. [2023-11-06 22:07:16,522 INFO L899 garLoopResultBuilder]: For program point L918(lines 918 922) no Hoare annotation was computed. [2023-11-06 22:07:16,523 INFO L902 garLoopResultBuilder]: At program point L918-1(lines 918 922) the Hoare annotation is: true [2023-11-06 22:07:16,523 INFO L899 garLoopResultBuilder]: For program point L915(line 915) no Hoare annotation was computed. [2023-11-06 22:07:16,523 INFO L902 garLoopResultBuilder]: At program point L914-2(lines 914 928) the Hoare annotation is: true [2023-11-06 22:07:16,523 INFO L902 garLoopResultBuilder]: At program point L910(line 910) the Hoare annotation is: true [2023-11-06 22:07:16,523 INFO L899 garLoopResultBuilder]: For program point L910-1(line 910) no Hoare annotation was computed. [2023-11-06 22:07:16,523 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 904 933) the Hoare annotation is: true [2023-11-06 22:07:16,523 INFO L899 garLoopResultBuilder]: For program point L64(lines 64 68) no Hoare annotation was computed. [2023-11-06 22:07:16,523 INFO L899 garLoopResultBuilder]: For program point L609-1(lines 608 627) no Hoare annotation was computed. [2023-11-06 22:07:16,523 INFO L899 garLoopResultBuilder]: For program point L671(lines 671 679) no Hoare annotation was computed. [2023-11-06 22:07:16,524 INFO L895 garLoopResultBuilder]: At program point L64-2(lines 60 71) the Hoare annotation is: (let ((.cse2 (< |old(~waterLevel~0)| 2)) (.cse3 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 (= ~methAndRunningLastTime~0 0) .cse1 .cse2) (or .cse1 .cse2 .cse3 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0))) (or (not .cse3) .cse0 (< |old(~waterLevel~0)| 1) .cse1))) [2023-11-06 22:07:16,524 INFO L899 garLoopResultBuilder]: For program point L667(lines 667 684) no Hoare annotation was computed. [2023-11-06 22:07:16,524 INFO L895 garLoopResultBuilder]: At program point isLowWaterSensorDry_returnLabel#1(lines 151 159) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 ~waterLevel~0))) (or (not .cse1) (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse0))) [2023-11-06 22:07:16,525 INFO L895 garLoopResultBuilder]: At program point L841(line 841) the Hoare annotation is: (let ((.cse6 (= |old(~pumpRunning~0)| 0))) (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (not .cse6)) (.cse3 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (= ~methAndRunningLastTime~0 0)) (.cse4 (not (= 1 ~systemActive~0))) (.cse5 (< |old(~waterLevel~0)| 2))) (and (or .cse0 (and .cse1 .cse2 (= ~waterLevel~0 1)) .cse3 (not (= |old(~waterLevel~0)| 1)) .cse4) (or .cse4 .cse5 .cse6 (and .cse1 (<= 1 ~waterLevel~0))) (or .cse0 .cse3 (and .cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse4 .cse5)))) [2023-11-06 22:07:16,525 INFO L899 garLoopResultBuilder]: For program point L841-1(line 841) no Hoare annotation was computed. [2023-11-06 22:07:16,525 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 605 628) no Hoare annotation was computed. [2023-11-06 22:07:16,525 INFO L895 garLoopResultBuilder]: At program point L677(line 677) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) .cse1) (or (not .cse1) (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse0))) [2023-11-06 22:07:16,525 INFO L899 garLoopResultBuilder]: For program point L847(lines 847 857) no Hoare annotation was computed. [2023-11-06 22:07:16,525 INFO L899 garLoopResultBuilder]: For program point L1004(line 1004) no Hoare annotation was computed. [2023-11-06 22:07:16,526 INFO L899 garLoopResultBuilder]: For program point L843(lines 843 860) no Hoare annotation was computed. [2023-11-06 22:07:16,526 INFO L895 garLoopResultBuilder]: At program point L682(line 682) the Hoare annotation is: (let ((.cse1 (not (= 1 ~systemActive~0))) (.cse0 (= |old(~pumpRunning~0)| 0))) (and (or (not .cse0) (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse1 (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse1 (< |old(~waterLevel~0)| 2) .cse0))) [2023-11-06 22:07:16,526 INFO L895 garLoopResultBuilder]: At program point __automaton_fail_returnLabel#1(lines 1000 1007) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) .cse1) (or (not .cse1) (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse0))) [2023-11-06 22:07:16,526 INFO L895 garLoopResultBuilder]: At program point L843-1(lines 835 863) the Hoare annotation is: (let ((.cse7 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse7)) (.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse6 (= ~pumpRunning~0 0)) (.cse2 (= ~methAndRunningLastTime~0 0)) (.cse4 (not (= 1 ~systemActive~0))) (.cse5 (< |old(~waterLevel~0)| 2))) (and (let ((.cse3 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse0 .cse1 (and .cse2 .cse3) .cse4 .cse5 (and (not .cse6) .cse3))) (or .cse0 (and .cse6 .cse2 (= ~waterLevel~0 1)) .cse1 (not (= |old(~waterLevel~0)| 1)) .cse4) (or (and .cse6 .cse2 (<= 1 ~waterLevel~0)) .cse4 .cse5 .cse7)))) [2023-11-06 22:07:16,543 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 605 628) the Hoare annotation is: (let ((.cse2 (= |old(~pumpRunning~0)| 0)) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse4 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse5 (= ~methAndRunningLastTime~0 0)) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (< |old(~waterLevel~0)| 2))) (and (or .cse0 .cse1 .cse2 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse3)) (or (not .cse2) .cse4 (< |old(~waterLevel~0)| 1) .cse0 (and (= ~pumpRunning~0 0) .cse5 .cse3)) (or .cse4 .cse5 .cse0 .cse1))) [2023-11-06 22:07:16,543 INFO L895 garLoopResultBuilder]: At program point L682-1(lines 663 687) the Hoare annotation is: (let ((.cse6 (= |old(~pumpRunning~0)| 0))) (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (not .cse6)) (.cse3 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (= ~methAndRunningLastTime~0 0)) (.cse4 (not (= 1 ~systemActive~0))) (.cse5 (< |old(~waterLevel~0)| 2))) (and (or .cse0 (and .cse1 .cse2 (= ~waterLevel~0 1)) .cse3 (not (= |old(~waterLevel~0)| 1)) .cse4) (or .cse4 .cse5 .cse6 (and .cse1 (<= 1 ~waterLevel~0))) (or .cse0 .cse3 (and .cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse4 .cse5)))) [2023-11-06 22:07:16,544 INFO L899 garLoopResultBuilder]: For program point L616-1(lines 616 622) no Hoare annotation was computed. [2023-11-06 22:07:16,544 INFO L899 garLoopResultBuilder]: For program point L806(lines 806 810) no Hoare annotation was computed. [2023-11-06 22:07:16,544 INFO L899 garLoopResultBuilder]: For program point L806-2(lines 806 810) no Hoare annotation was computed. [2023-11-06 22:07:16,544 INFO L895 garLoopResultBuilder]: At program point deactivatePump_returnLabel#1(lines 714 721) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (and (<= 1 |timeShift_processEnvironment_~tmp~5#1|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 0) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0)) (< |old(~waterLevel~0)| 2) .cse1) (or (not .cse1) (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse0))) [2023-11-06 22:07:16,545 INFO L895 garLoopResultBuilder]: At program point isLowWaterLevel_returnLabel#1(lines 797 815) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= |timeShift_isLowWaterLevel_~tmp~8#1| 0) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0) (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|))) (or (not .cse1) (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse0))) [2023-11-06 22:07:16,545 INFO L899 garLoopResultBuilder]: For program point L848(lines 848 854) no Hoare annotation was computed. [2023-11-06 22:07:16,545 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 605 628) no Hoare annotation was computed. [2023-11-06 22:07:16,545 INFO L895 garLoopResultBuilder]: At program point isPumpRunning_returnLabel#1(lines 733 741) the Hoare annotation is: (let ((.cse7 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse7)) (.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse3 (= ~methAndRunningLastTime~0 0)) (.cse2 (not (= 1 ~systemActive~0))) (.cse4 (= ~pumpRunning~0 0)) (.cse6 (= |timeShift_isPumpRunning_#res#1| 0))) (and (let ((.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse0 .cse1 (< |old(~waterLevel~0)| 1) .cse2 (and .cse3 (not .cse4) (<= 2 ~waterLevel~0) .cse5) (and .cse4 .cse6 .cse5))) (or .cse0 .cse1 .cse3 (not (= |old(~waterLevel~0)| 1)) .cse2) (or .cse2 (< |old(~waterLevel~0)| 2) (and .cse4 .cse6 (<= 1 ~waterLevel~0)) .cse7)))) [2023-11-06 22:07:16,546 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 1004) no Hoare annotation was computed. [2023-11-06 22:07:16,546 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 96 104) the Hoare annotation is: true [2023-11-06 22:07:16,546 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 96 104) no Hoare annotation was computed. [2023-11-06 22:07:16,546 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 96 104) no Hoare annotation was computed. [2023-11-06 22:07:16,547 INFO L895 garLoopResultBuilder]: At program point startSystem_returnLabel#1(lines 816 823) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (not .cse0) (<= 2 ~waterLevel~0) .cse1 .cse2) (and .cse0 (= ~methAndRunningLastTime~0 0) .cse1 .cse2 (<= 1 ~waterLevel~0)))) [2023-11-06 22:07:16,547 INFO L899 garLoopResultBuilder]: For program point L560(lines 560 566) no Hoare annotation was computed. [2023-11-06 22:07:16,547 INFO L899 garLoopResultBuilder]: For program point L560-1(lines 560 566) no Hoare annotation was computed. [2023-11-06 22:07:16,547 INFO L902 garLoopResultBuilder]: At program point runTest_returnLabel#1(lines 965 975) the Hoare annotation is: true [2023-11-06 22:07:16,547 INFO L895 garLoopResultBuilder]: At program point select_features_returnLabel#1(lines 879 885) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 22:07:16,548 INFO L895 garLoopResultBuilder]: At program point L585(lines 540 587) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (not .cse0) (<= 2 ~waterLevel~0) .cse1 .cse2) (and .cse0 (= ~methAndRunningLastTime~0 0) .cse1 .cse2 (<= 1 ~waterLevel~0)))) [2023-11-06 22:07:16,548 INFO L902 garLoopResultBuilder]: At program point main_returnLabel#1(lines 976 998) the Hoare annotation is: true [2023-11-06 22:07:16,548 INFO L895 garLoopResultBuilder]: At program point L552(line 552) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (not .cse0) (<= 2 ~waterLevel~0) .cse1 .cse2) (and .cse0 (= ~methAndRunningLastTime~0 0) .cse1 .cse2 (<= 1 ~waterLevel~0)))) [2023-11-06 22:07:16,548 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2023-11-06 22:07:16,548 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2023-11-06 22:07:16,549 INFO L899 garLoopResultBuilder]: For program point L986(lines 986 993) no Hoare annotation was computed. [2023-11-06 22:07:16,549 INFO L899 garLoopResultBuilder]: For program point L986-2(lines 986 993) no Hoare annotation was computed. [2023-11-06 22:07:16,549 INFO L895 garLoopResultBuilder]: At program point setup_returnLabel#1(lines 958 964) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 22:07:16,549 INFO L899 garLoopResultBuilder]: For program point L578(lines 578 582) no Hoare annotation was computed. [2023-11-06 22:07:16,549 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-06 22:07:16,549 INFO L895 garLoopResultBuilder]: At program point L578-2(lines 570 583) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (not .cse0) (<= 2 ~waterLevel~0) .cse1 .cse2) (and .cse0 (= ~methAndRunningLastTime~0 0) .cse1 .cse2 (<= 1 ~waterLevel~0)))) [2023-11-06 22:07:16,550 INFO L899 garLoopResultBuilder]: For program point L541(lines 540 587) no Hoare annotation was computed. [2023-11-06 22:07:16,550 INFO L899 garLoopResultBuilder]: For program point L570(lines 570 583) no Hoare annotation was computed. [2023-11-06 22:07:16,550 INFO L895 garLoopResultBuilder]: At program point L562(line 562) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (not .cse0) (<= 2 ~waterLevel~0) .cse1 .cse2) (and .cse0 (= ~methAndRunningLastTime~0 0) .cse1 .cse2 (<= 1 ~waterLevel~0)))) [2023-11-06 22:07:16,550 INFO L902 garLoopResultBuilder]: At program point L591(lines 530 595) the Hoare annotation is: true [2023-11-06 22:07:16,550 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-06 22:07:16,551 INFO L895 garLoopResultBuilder]: At program point select_helpers_returnLabel#1(lines 886 892) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 22:07:16,551 INFO L899 garLoopResultBuilder]: For program point L550(lines 550 556) no Hoare annotation was computed. [2023-11-06 22:07:16,551 INFO L899 garLoopResultBuilder]: For program point L550-1(lines 550 556) no Hoare annotation was computed. [2023-11-06 22:07:16,551 INFO L899 garLoopResultBuilder]: For program point L542(lines 542 546) no Hoare annotation was computed. [2023-11-06 22:07:16,551 INFO L895 garLoopResultBuilder]: At program point __utac_acc__Specification2_spec__1_returnLabel#1(lines 827 834) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 22:07:16,551 INFO L895 garLoopResultBuilder]: At program point L588(lines 539 589) the Hoare annotation is: false [2023-11-06 22:07:16,552 INFO L895 garLoopResultBuilder]: At program point valid_product_returnLabel#1(lines 893 901) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 22:07:16,552 INFO L899 garLoopResultBuilder]: For program point L704(lines 704 710) no Hoare annotation was computed. [2023-11-06 22:07:16,552 INFO L895 garLoopResultBuilder]: At program point L704-2(lines 697 713) the Hoare annotation is: (or (not (= ~waterLevel~0 1)) (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:07:16,552 INFO L895 garLoopResultBuilder]: At program point L727(line 727) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (and (= ~pumpRunning~0 0) (<= 2 ~waterLevel~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:07:16,552 INFO L899 garLoopResultBuilder]: For program point L727-1(line 727) no Hoare annotation was computed. [2023-11-06 22:07:16,553 INFO L899 garLoopResultBuilder]: For program point L787(lines 787 791) no Hoare annotation was computed. [2023-11-06 22:07:16,553 INFO L899 garLoopResultBuilder]: For program point L787-2(lines 787 791) no Hoare annotation was computed. [2023-11-06 22:07:16,553 INFO L899 garLoopResultBuilder]: For program point L141(lines 141 147) no Hoare annotation was computed. [2023-11-06 22:07:16,553 INFO L895 garLoopResultBuilder]: At program point L651(line 651) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~4#1| 0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:07:16,553 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 637 661) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:07:16,554 INFO L899 garLoopResultBuilder]: For program point L645(lines 645 653) no Hoare annotation was computed. [2023-11-06 22:07:16,554 INFO L895 garLoopResultBuilder]: At program point isHighWaterSensorDry_returnLabel#1(lines 137 150) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (and .cse0 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 1)) (and .cse0 (<= 2 ~waterLevel~0)) (not (= ~methAndRunningLastTime~0 0)))) [2023-11-06 22:07:16,554 INFO L899 garLoopResultBuilder]: For program point L641(lines 641 658) no Hoare annotation was computed. [2023-11-06 22:07:16,554 INFO L895 garLoopResultBuilder]: At program point isHighWaterLevel_returnLabel#1(lines 778 796) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (and .cse0 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~1#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0)) (and .cse0 (<= 2 ~waterLevel~0)) (not (= ~methAndRunningLastTime~0 0)))) [2023-11-06 22:07:16,555 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 637 661) no Hoare annotation was computed. [2023-11-06 22:07:16,555 INFO L895 garLoopResultBuilder]: At program point L656(line 656) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:07:16,555 INFO L899 garLoopResultBuilder]: For program point L656-1(lines 637 661) no Hoare annotation was computed. [2023-11-06 22:07:16,555 INFO L895 garLoopResultBuilder]: At program point isMethaneAlarm_returnLabel#1(lines 722 732) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (and (= ~pumpRunning~0 0) (<= 2 ~waterLevel~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:07:16,555 INFO L895 garLoopResultBuilder]: At program point activatePump__wrappee__lowWaterSensor_returnLabel#1(lines 688 695) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (and (not (= ~pumpRunning~0 0)) (<= 2 ~waterLevel~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:07:16,556 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 72 83) no Hoare annotation was computed. [2023-11-06 22:07:16,556 INFO L899 garLoopResultBuilder]: For program point L76-1(lines 72 83) no Hoare annotation was computed. [2023-11-06 22:07:16,556 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 72 83) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or .cse0 .cse1 (< |old(~waterLevel~0)| 2) .cse2) (or (< |old(~waterLevel~0)| 1) (not .cse0) .cse1 .cse2 (not (= ~methAndRunningLastTime~0 0))))) [2023-11-06 22:07:16,559 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:07:16,561 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-06 22:07:16,612 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 06.11 10:07:16 BoogieIcfgContainer [2023-11-06 22:07:16,620 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-06 22:07:16,620 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-06 22:07:16,621 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-06 22:07:16,621 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-06 22:07:16,621 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 10:07:06" (3/4) ... [2023-11-06 22:07:16,623 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-06 22:07:16,628 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-06 22:07:16,628 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-06 22:07:16,629 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-06 22:07:16,629 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-06 22:07:16,629 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2023-11-06 22:07:16,629 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 22:07:16,630 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-06 22:07:16,639 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 17 nodes and edges [2023-11-06 22:07:16,640 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2023-11-06 22:07:16,641 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-06 22:07:16,641 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 22:07:16,642 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 22:07:16,672 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(methAndRunningLastTime) == 0)) || (methAndRunningLastTime == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel)))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) [2023-11-06 22:07:16,672 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1))) || !((\old(methAndRunningLastTime) == 0))) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || ((pumpRunning == 0) && (1 <= waterLevel)))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || ((methAndRunningLastTime == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || (\old(waterLevel) < 2))) [2023-11-06 22:07:16,673 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || ((methAndRunningLastTime == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (!((pumpRunning == 0)) && (\old(waterLevel) == waterLevel))) && ((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1))) || !((\old(methAndRunningLastTime) == 0))) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 <= waterLevel)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0))) [2023-11-06 22:07:16,674 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:07:16,674 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive))) || ((((methAndRunningLastTime == 0) && !((pumpRunning == 0))) && (2 <= waterLevel)) && (\old(waterLevel) == waterLevel))) || (((pumpRunning == 0) && (\result == 0)) && (\old(waterLevel) == waterLevel))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((pumpRunning == 0) && (\result == 0)) && (1 <= waterLevel))) || (\old(pumpRunning) == 0))) [2023-11-06 22:07:16,675 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || (((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= waterLevel))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) [2023-11-06 22:07:16,675 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && (\result == 1))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:07:16,675 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:07:16,676 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || (!((pumpRunning == 0)) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:07:16,676 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || ((((((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (tmp == 0)) && (1 <= \result)) && (1 <= waterLevel)) && (1 <= tmp___0))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) [2023-11-06 22:07:16,676 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) [2023-11-06 22:07:16,676 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || (((pumpRunning == 0) && (tmp___0 == 0)) && (\result == 0))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:07:16,677 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (((((1 <= tmp) && (\result == 0)) && (pumpRunning == 0)) && (1 <= \result)) && (1 <= waterLevel))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) [2023-11-06 22:07:16,717 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(methAndRunningLastTime) == 0)) || (methAndRunningLastTime == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel)))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) [2023-11-06 22:07:16,718 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1))) || !((\old(methAndRunningLastTime) == 0))) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || ((pumpRunning == 0) && (1 <= waterLevel)))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || ((methAndRunningLastTime == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || (\old(waterLevel) < 2))) [2023-11-06 22:07:16,718 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || ((methAndRunningLastTime == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (!((pumpRunning == 0)) && (\old(waterLevel) == waterLevel))) && ((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1))) || !((\old(methAndRunningLastTime) == 0))) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 <= waterLevel)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0))) [2023-11-06 22:07:16,719 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:07:16,719 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive))) || ((((methAndRunningLastTime == 0) && !((pumpRunning == 0))) && (2 <= waterLevel)) && (\old(waterLevel) == waterLevel))) || (((pumpRunning == 0) && (\result == 0)) && (\old(waterLevel) == waterLevel))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((pumpRunning == 0) && (\result == 0)) && (1 <= waterLevel))) || (\old(pumpRunning) == 0))) [2023-11-06 22:07:16,719 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || (((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= waterLevel))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) [2023-11-06 22:07:16,719 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && (\result == 1))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:07:16,720 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:07:16,720 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || (!((pumpRunning == 0)) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:07:16,720 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || ((((((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (tmp == 0)) && (1 <= \result)) && (1 <= waterLevel)) && (1 <= tmp___0))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) [2023-11-06 22:07:16,720 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) [2023-11-06 22:07:16,720 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || (((pumpRunning == 0) && (tmp___0 == 0)) && (\result == 0))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:07:16,721 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (((((1 <= tmp) && (\result == 0)) && (pumpRunning == 0)) && (1 <= \result)) && (1 <= waterLevel))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) [2023-11-06 22:07:16,741 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.graphml [2023-11-06 22:07:16,742 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.yaml [2023-11-06 22:07:16,742 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-06 22:07:16,743 INFO L158 Benchmark]: Toolchain (without parser) took 11472.10ms. Allocated memory was 134.2MB in the beginning and 220.2MB in the end (delta: 86.0MB). Free memory was 88.6MB in the beginning and 176.1MB in the end (delta: -87.5MB). There was no memory consumed. Max. memory is 16.1GB. [2023-11-06 22:07:16,743 INFO L158 Benchmark]: CDTParser took 0.32ms. Allocated memory is still 134.2MB. Free memory is still 104.0MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-06 22:07:16,744 INFO L158 Benchmark]: CACSL2BoogieTranslator took 654.90ms. Allocated memory is still 134.2MB. Free memory was 88.6MB in the beginning and 69.0MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-06 22:07:16,744 INFO L158 Benchmark]: Boogie Procedure Inliner took 77.96ms. Allocated memory is still 134.2MB. Free memory was 69.0MB in the beginning and 66.5MB in the end (delta: 2.5MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2023-11-06 22:07:16,745 INFO L158 Benchmark]: Boogie Preprocessor took 37.75ms. Allocated memory is still 134.2MB. Free memory was 66.5MB in the beginning and 65.1MB in the end (delta: 1.4MB). There was no memory consumed. Max. memory is 16.1GB. [2023-11-06 22:07:16,745 INFO L158 Benchmark]: RCFGBuilder took 650.97ms. Allocated memory was 134.2MB in the beginning and 182.5MB in the end (delta: 48.2MB). Free memory was 65.1MB in the beginning and 147.4MB in the end (delta: -82.3MB). Peak memory consumption was 21.3MB. Max. memory is 16.1GB. [2023-11-06 22:07:16,746 INFO L158 Benchmark]: TraceAbstraction took 9920.54ms. Allocated memory was 182.5MB in the beginning and 220.2MB in the end (delta: 37.7MB). Free memory was 146.5MB in the beginning and 184.5MB in the end (delta: -38.1MB). Peak memory consumption was 124.3MB. Max. memory is 16.1GB. [2023-11-06 22:07:16,746 INFO L158 Benchmark]: Witness Printer took 122.11ms. Allocated memory is still 220.2MB. Free memory was 184.5MB in the beginning and 176.1MB in the end (delta: 8.4MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2023-11-06 22:07:16,748 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.32ms. Allocated memory is still 134.2MB. Free memory is still 104.0MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 654.90ms. Allocated memory is still 134.2MB. Free memory was 88.6MB in the beginning and 69.0MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 77.96ms. Allocated memory is still 134.2MB. Free memory was 69.0MB in the beginning and 66.5MB in the end (delta: 2.5MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Boogie Preprocessor took 37.75ms. Allocated memory is still 134.2MB. Free memory was 66.5MB in the beginning and 65.1MB in the end (delta: 1.4MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 650.97ms. Allocated memory was 134.2MB in the beginning and 182.5MB in the end (delta: 48.2MB). Free memory was 65.1MB in the beginning and 147.4MB in the end (delta: -82.3MB). Peak memory consumption was 21.3MB. Max. memory is 16.1GB. * TraceAbstraction took 9920.54ms. Allocated memory was 182.5MB in the beginning and 220.2MB in the end (delta: 37.7MB). Free memory was 146.5MB in the beginning and 184.5MB in the end (delta: -38.1MB). Peak memory consumption was 124.3MB. Max. memory is 16.1GB. * Witness Printer took 122.11ms. Allocated memory is still 220.2MB. Free memory was 184.5MB in the beginning and 176.1MB in the end (delta: 8.4MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [49] - GenericResultAtLocation [Line: 160]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [160] - GenericResultAtLocation [Line: 526]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [526] - GenericResultAtLocation [Line: 596]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [596] - GenericResultAtLocation [Line: 824]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [824] - GenericResultAtLocation [Line: 864]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [864] - GenericResultAtLocation [Line: 902]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [902] - GenericResultAtLocation [Line: 999]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [999] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 1004]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 94 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 9.8s, OverallIterations: 12, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.3s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.9s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1145 SdHoareTripleChecker+Valid, 1.1s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1121 mSDsluCounter, 3311 SdHoareTripleChecker+Invalid, 0.9s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2038 mSDsCounter, 237 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 730 IncrementalHoareTripleChecker+Invalid, 967 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 237 mSolverCounterUnsat, 1273 mSDtfsCounter, 730 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 479 GetRequests, 411 SyntacticMatches, 2 SemanticMatches, 66 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 50 ImplicationChecksByTransitivity, 0.5s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=705occurred in iteration=10, InterpolantAutomatonStates: 68, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.6s AutomataMinimizationTime, 12 MinimizatonAttempts, 184 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 44 LocationsWithAnnotation, 1137 PreInvPairs, 1234 NumberOfFragments, 1107 HoareAnnotationTreeSize, 1137 FomulaSimplifications, 1000 FormulaSimplificationTreeSizeReduction, 0.3s HoareSimplificationTime, 44 FomulaSimplificationsInter, 4726 FormulaSimplificationTreeSizeReductionInter, 2.6s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 2.1s InterpolantComputationTime, 986 NumberOfCodeBlocks, 986 NumberOfCodeBlocksAsserted, 15 NumberOfCheckSat, 971 ConstructedInterpolants, 0 QuantifiedInterpolants, 1566 SizeOfPredicates, 7 NumberOfNonLiveVariables, 1060 ConjunctsInSsa, 19 ConjunctsInUnsatCore, 15 InterpolantComputations, 12 PerfectInterpolantSequences, 244/257 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 958]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 827]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 688]: Loop Invariant Derived loop invariant: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || (!((pumpRunning == 0)) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) - InvariantResult [Line: 879]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 663]: Loop Invariant Derived loop invariant: ((((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1))) || !((\old(methAndRunningLastTime) == 0))) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || ((pumpRunning == 0) && (1 <= waterLevel)))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || ((methAndRunningLastTime == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || (\old(waterLevel) < 2))) - InvariantResult [Line: 797]: Loop Invariant Derived loop invariant: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || ((((((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (tmp == 0)) && (1 <= \result)) && (1 <= waterLevel)) && (1 <= tmp___0))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) - InvariantResult [Line: 697]: Loop Invariant Derived loop invariant: (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || !((methAndRunningLastTime == 0))) - InvariantResult [Line: 540]: Loop Invariant Derived loop invariant: ((((!((pumpRunning == 0)) && (2 <= waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0)) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (1 <= waterLevel))) - InvariantResult [Line: 835]: Loop Invariant Derived loop invariant: (((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || ((methAndRunningLastTime == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (!((pumpRunning == 0)) && (\old(waterLevel) == waterLevel))) && ((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1))) || !((\old(methAndRunningLastTime) == 0))) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 <= waterLevel)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0))) - InvariantResult [Line: 733]: Loop Invariant Derived loop invariant: (((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive))) || ((((methAndRunningLastTime == 0) && !((pumpRunning == 0))) && (2 <= waterLevel)) && (\old(waterLevel) == waterLevel))) || (((pumpRunning == 0) && (\result == 0)) && (\old(waterLevel) == waterLevel))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((pumpRunning == 0) && (\result == 0)) && (1 <= waterLevel))) || (\old(pumpRunning) == 0))) - InvariantResult [Line: 530]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 137]: Loop Invariant Derived loop invariant: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && (\result == 1))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) - InvariantResult [Line: 151]: Loop Invariant Derived loop invariant: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || (((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= waterLevel))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) - InvariantResult [Line: 778]: Loop Invariant Derived loop invariant: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || (((pumpRunning == 0) && (tmp___0 == 0)) && (\result == 0))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) - InvariantResult [Line: 914]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 965]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 904]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 816]: Loop Invariant Derived loop invariant: ((((!((pumpRunning == 0)) && (2 <= waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0)) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (1 <= waterLevel))) - InvariantResult [Line: 1000]: Loop Invariant Derived loop invariant: (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) - InvariantResult [Line: 539]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 893]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 886]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 60]: Loop Invariant Derived loop invariant: (((((!((\old(methAndRunningLastTime) == 0)) || (methAndRunningLastTime == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel)))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) - InvariantResult [Line: 722]: Loop Invariant Derived loop invariant: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) - InvariantResult [Line: 976]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 714]: Loop Invariant Derived loop invariant: ((((!((1 == systemActive)) || (((((1 <= tmp) && (\result == 0)) && (pumpRunning == 0)) && (1 <= \result)) && (1 <= waterLevel))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) == 0)) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) RESULT: Ultimate proved your program to be correct! [2023-11-06 22:07:16,803 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_256b7a21-7dd1-4d4f-9b50-b480fb248cb9/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE