./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version e7bb482b Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 80b4c453e300455caffbcb636daccd3af095acb6ed433fb3111a61f5db77a0b9 --- Real Ultimate output --- This is Ultimate 0.2.3-dev-e7bb482 [2023-11-06 22:48:12,690 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-06 22:48:12,790 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-06 22:48:12,803 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-06 22:48:12,804 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-06 22:48:12,847 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-06 22:48:12,848 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-06 22:48:12,849 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-06 22:48:12,850 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-06 22:48:12,855 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-06 22:48:12,857 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-06 22:48:12,858 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-06 22:48:12,858 INFO L153 SettingsManager]: * Use SBE=true [2023-11-06 22:48:12,860 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-06 22:48:12,861 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-06 22:48:12,861 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-06 22:48:12,862 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-06 22:48:12,863 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-06 22:48:12,863 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-06 22:48:12,864 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-06 22:48:12,864 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-06 22:48:12,865 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-06 22:48:12,866 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-06 22:48:12,866 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-06 22:48:12,867 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-06 22:48:12,868 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-06 22:48:12,869 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-06 22:48:12,869 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-06 22:48:12,870 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 22:48:12,870 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-06 22:48:12,872 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-06 22:48:12,872 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2023-11-06 22:48:12,873 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-06 22:48:12,873 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-06 22:48:12,873 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-06 22:48:12,874 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-06 22:48:12,874 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-06 22:48:12,874 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-06 22:48:12,875 INFO L153 SettingsManager]: * Independence relation used for large block encoding in concurrent analysis=SYNTACTIC [2023-11-06 22:48:12,875 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 80b4c453e300455caffbcb636daccd3af095acb6ed433fb3111a61f5db77a0b9 [2023-11-06 22:48:13,268 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-06 22:48:13,304 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-06 22:48:13,311 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-06 22:48:13,313 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-06 22:48:13,314 INFO L274 PluginConnector]: CDTParser initialized [2023-11-06 22:48:13,315 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c [2023-11-06 22:48:16,468 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-06 22:48:16,791 INFO L384 CDTParser]: Found 1 translation units. [2023-11-06 22:48:16,792 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c [2023-11-06 22:48:16,809 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/data/c12049e4d/d4a0fdd5d1f7447eb1b14edb4f0d3f2e/FLAG78d93f6ca [2023-11-06 22:48:16,839 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/data/c12049e4d/d4a0fdd5d1f7447eb1b14edb4f0d3f2e [2023-11-06 22:48:16,842 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-06 22:48:16,844 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-06 22:48:16,845 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-06 22:48:16,845 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-06 22:48:16,851 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-06 22:48:16,852 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 10:48:16" (1/1) ... [2023-11-06 22:48:16,853 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@2baa609c and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:16, skipping insertion in model container [2023-11-06 22:48:16,854 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 10:48:16" (1/1) ... [2023-11-06 22:48:16,929 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-06 22:48:17,127 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c[1605,1618] [2023-11-06 22:48:17,285 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 22:48:17,306 INFO L202 MainTranslator]: Completed pre-run [2023-11-06 22:48:17,323 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2023-11-06 22:48:17,324 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] [2023-11-06 22:48:17,325 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [300] [2023-11-06 22:48:17,325 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [370] [2023-11-06 22:48:17,325 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [409] [2023-11-06 22:48:17,326 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [509] [2023-11-06 22:48:17,326 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [544] [2023-11-06 22:48:17,327 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [910] [2023-11-06 22:48:17,338 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c[1605,1618] [2023-11-06 22:48:17,439 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 22:48:17,471 INFO L206 MainTranslator]: Completed translation [2023-11-06 22:48:17,472 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17 WrapperNode [2023-11-06 22:48:17,472 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-06 22:48:17,474 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-06 22:48:17,474 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-06 22:48:17,474 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-06 22:48:17,483 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,501 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,541 INFO L138 Inliner]: procedures = 58, calls = 103, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 226 [2023-11-06 22:48:17,541 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-06 22:48:17,542 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-06 22:48:17,542 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-06 22:48:17,543 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-06 22:48:17,553 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,554 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,557 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,557 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,563 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,569 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,571 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,573 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,576 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-06 22:48:17,577 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-06 22:48:17,578 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-06 22:48:17,578 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-06 22:48:17,579 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (1/1) ... [2023-11-06 22:48:17,586 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 22:48:17,602 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:48:17,619 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-06 22:48:17,644 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-06 22:48:17,680 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-06 22:48:17,680 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-06 22:48:17,681 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-06 22:48:17,681 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-06 22:48:17,681 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-06 22:48:17,681 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2023-11-06 22:48:17,682 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2023-11-06 22:48:17,682 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-06 22:48:17,682 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-06 22:48:17,682 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 22:48:17,683 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 22:48:17,683 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-06 22:48:17,683 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-06 22:48:17,684 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-06 22:48:17,684 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-06 22:48:17,684 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2023-11-06 22:48:17,684 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-06 22:48:17,685 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-06 22:48:17,685 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-06 22:48:17,685 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-06 22:48:17,780 INFO L236 CfgBuilder]: Building ICFG [2023-11-06 22:48:17,782 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-06 22:48:18,165 INFO L277 CfgBuilder]: Performing block encoding [2023-11-06 22:48:18,174 INFO L297 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-06 22:48:18,174 INFO L302 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-06 22:48:18,177 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 10:48:18 BoogieIcfgContainer [2023-11-06 22:48:18,177 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-06 22:48:18,180 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-06 22:48:18,180 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-06 22:48:18,183 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-06 22:48:18,183 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 06.11 10:48:16" (1/3) ... [2023-11-06 22:48:18,184 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@b821b51 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 10:48:18, skipping insertion in model container [2023-11-06 22:48:18,184 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:48:17" (2/3) ... [2023-11-06 22:48:18,185 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@b821b51 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 10:48:18, skipping insertion in model container [2023-11-06 22:48:18,185 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 10:48:18" (3/3) ... [2023-11-06 22:48:18,186 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product59.cil.c [2023-11-06 22:48:18,208 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-06 22:48:18,208 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-06 22:48:18,273 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-06 22:48:18,282 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@5218361a, mLbeIndependenceSettings=[IndependenceType=SYNTACTIC, AbstractionType=NONE, UseConditional=, UseSemiCommutativity=, Solver=, SolverTimeout=] [2023-11-06 22:48:18,283 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-06 22:48:18,288 INFO L276 IsEmpty]: Start isEmpty. Operand has 100 states, 76 states have (on average 1.381578947368421) internal successors, (105), 85 states have internal predecessors, (105), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) [2023-11-06 22:48:18,302 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2023-11-06 22:48:18,302 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:18,303 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:18,304 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:18,312 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:18,312 INFO L85 PathProgramCache]: Analyzing trace with hash -13342285, now seen corresponding path program 1 times [2023-11-06 22:48:18,323 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:18,323 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [924462240] [2023-11-06 22:48:18,324 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:18,324 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:18,501 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:18,601 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-06 22:48:18,604 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:18,610 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:48:18,610 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:18,610 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [924462240] [2023-11-06 22:48:18,611 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [924462240] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:18,611 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:48:18,612 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-06 22:48:18,613 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1950554998] [2023-11-06 22:48:18,614 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:18,618 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-06 22:48:18,618 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:18,661 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-06 22:48:18,662 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 22:48:18,666 INFO L87 Difference]: Start difference. First operand has 100 states, 76 states have (on average 1.381578947368421) internal successors, (105), 85 states have internal predecessors, (105), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:48:18,743 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:18,743 INFO L93 Difference]: Finished difference Result 191 states and 260 transitions. [2023-11-06 22:48:18,744 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-06 22:48:18,746 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2023-11-06 22:48:18,746 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:18,757 INFO L225 Difference]: With dead ends: 191 [2023-11-06 22:48:18,758 INFO L226 Difference]: Without dead ends: 91 [2023-11-06 22:48:18,764 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 22:48:18,769 INFO L413 NwaCegarLoop]: 127 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 127 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:18,770 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 127 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:48:18,789 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 91 states. [2023-11-06 22:48:18,826 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 91 to 91. [2023-11-06 22:48:18,828 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 91 states, 69 states have (on average 1.318840579710145) internal successors, (91), 77 states have internal predecessors, (91), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2023-11-06 22:48:18,830 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 91 states to 91 states and 118 transitions. [2023-11-06 22:48:18,833 INFO L78 Accepts]: Start accepts. Automaton has 91 states and 118 transitions. Word has length 25 [2023-11-06 22:48:18,834 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:18,834 INFO L495 AbstractCegarLoop]: Abstraction has 91 states and 118 transitions. [2023-11-06 22:48:18,835 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:48:18,835 INFO L276 IsEmpty]: Start isEmpty. Operand 91 states and 118 transitions. [2023-11-06 22:48:18,838 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-11-06 22:48:18,838 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:18,839 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:18,839 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-06 22:48:18,840 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:18,841 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:18,841 INFO L85 PathProgramCache]: Analyzing trace with hash -1348159518, now seen corresponding path program 1 times [2023-11-06 22:48:18,841 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:18,841 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [206526584] [2023-11-06 22:48:18,842 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:18,842 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:18,885 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:19,015 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-06 22:48:19,017 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:19,020 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:48:19,021 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:19,021 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [206526584] [2023-11-06 22:48:19,021 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [206526584] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:19,021 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:48:19,022 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-06 22:48:19,022 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [553437572] [2023-11-06 22:48:19,022 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:19,029 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 22:48:19,029 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:19,030 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 22:48:19,030 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:48:19,031 INFO L87 Difference]: Start difference. First operand 91 states and 118 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:48:19,050 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:19,050 INFO L93 Difference]: Finished difference Result 143 states and 185 transitions. [2023-11-06 22:48:19,062 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 22:48:19,063 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2023-11-06 22:48:19,063 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:19,064 INFO L225 Difference]: With dead ends: 143 [2023-11-06 22:48:19,064 INFO L226 Difference]: Without dead ends: 82 [2023-11-06 22:48:19,066 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:48:19,067 INFO L413 NwaCegarLoop]: 105 mSDtfsCounter, 16 mSDsluCounter, 84 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 189 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:19,068 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 189 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:48:19,069 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 82 states. [2023-11-06 22:48:19,081 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 82 to 82. [2023-11-06 22:48:19,083 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 82 states, 63 states have (on average 1.3333333333333333) internal successors, (84), 71 states have internal predecessors, (84), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 8 states have call predecessors, (11), 11 states have call successors, (11) [2023-11-06 22:48:19,084 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 82 states to 82 states and 106 transitions. [2023-11-06 22:48:19,085 INFO L78 Accepts]: Start accepts. Automaton has 82 states and 106 transitions. Word has length 26 [2023-11-06 22:48:19,085 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:19,085 INFO L495 AbstractCegarLoop]: Abstraction has 82 states and 106 transitions. [2023-11-06 22:48:19,085 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:48:19,086 INFO L276 IsEmpty]: Start isEmpty. Operand 82 states and 106 transitions. [2023-11-06 22:48:19,092 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2023-11-06 22:48:19,093 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:19,093 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:19,093 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-06 22:48:19,094 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:19,095 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:19,095 INFO L85 PathProgramCache]: Analyzing trace with hash 1571393351, now seen corresponding path program 1 times [2023-11-06 22:48:19,096 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:19,096 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1630340264] [2023-11-06 22:48:19,097 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:19,097 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:19,136 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:19,289 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 22:48:19,290 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:19,293 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:48:19,293 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:19,293 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1630340264] [2023-11-06 22:48:19,293 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1630340264] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:19,294 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:48:19,294 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-06 22:48:19,294 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [293438918] [2023-11-06 22:48:19,294 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:19,295 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 22:48:19,295 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:19,295 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 22:48:19,296 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:48:19,296 INFO L87 Difference]: Start difference. First operand 82 states and 106 transitions. Second operand has 3 states, 3 states have (on average 9.0) internal successors, (27), 3 states have internal predecessors, (27), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:48:19,345 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:19,345 INFO L93 Difference]: Finished difference Result 229 states and 302 transitions. [2023-11-06 22:48:19,345 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 22:48:19,346 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.0) internal successors, (27), 3 states have internal predecessors, (27), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 30 [2023-11-06 22:48:19,346 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:19,348 INFO L225 Difference]: With dead ends: 229 [2023-11-06 22:48:19,348 INFO L226 Difference]: Without dead ends: 155 [2023-11-06 22:48:19,350 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:48:19,351 INFO L413 NwaCegarLoop]: 123 mSDtfsCounter, 85 mSDsluCounter, 95 mSDsCounter, 0 mSdLazyCounter, 4 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 85 SdHoareTripleChecker+Valid, 218 SdHoareTripleChecker+Invalid, 4 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 4 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:19,352 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [85 Valid, 218 Invalid, 4 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 4 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:48:19,353 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 155 states. [2023-11-06 22:48:19,376 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 155 to 152. [2023-11-06 22:48:19,376 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 152 states, 115 states have (on average 1.3565217391304347) internal successors, (156), 130 states have internal predecessors, (156), 22 states have call successors, (22), 14 states have call predecessors, (22), 14 states have return successors, (22), 15 states have call predecessors, (22), 22 states have call successors, (22) [2023-11-06 22:48:19,379 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 152 states to 152 states and 200 transitions. [2023-11-06 22:48:19,379 INFO L78 Accepts]: Start accepts. Automaton has 152 states and 200 transitions. Word has length 30 [2023-11-06 22:48:19,379 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:19,379 INFO L495 AbstractCegarLoop]: Abstraction has 152 states and 200 transitions. [2023-11-06 22:48:19,380 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.0) internal successors, (27), 3 states have internal predecessors, (27), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:48:19,380 INFO L276 IsEmpty]: Start isEmpty. Operand 152 states and 200 transitions. [2023-11-06 22:48:19,382 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2023-11-06 22:48:19,382 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:19,382 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:19,382 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-06 22:48:19,383 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:19,383 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:19,383 INFO L85 PathProgramCache]: Analyzing trace with hash 1136396561, now seen corresponding path program 1 times [2023-11-06 22:48:19,384 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:19,384 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [201401885] [2023-11-06 22:48:19,384 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:19,384 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:19,404 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:19,545 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2023-11-06 22:48:19,548 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:19,551 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:48:19,552 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:19,552 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [201401885] [2023-11-06 22:48:19,552 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [201401885] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:19,553 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:48:19,553 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 22:48:19,553 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1835447730] [2023-11-06 22:48:19,553 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:19,554 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:48:19,554 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:19,555 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:48:19,555 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 22:48:19,555 INFO L87 Difference]: Start difference. First operand 152 states and 200 transitions. Second operand has 5 states, 5 states have (on average 6.2) internal successors, (31), 5 states have internal predecessors, (31), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:48:19,736 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:19,736 INFO L93 Difference]: Finished difference Result 388 states and 521 transitions. [2023-11-06 22:48:19,737 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-06 22:48:19,737 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 5 states have internal predecessors, (31), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 34 [2023-11-06 22:48:19,737 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:19,746 INFO L225 Difference]: With dead ends: 388 [2023-11-06 22:48:19,746 INFO L226 Difference]: Without dead ends: 244 [2023-11-06 22:48:19,748 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2023-11-06 22:48:19,750 INFO L413 NwaCegarLoop]: 103 mSDtfsCounter, 60 mSDsluCounter, 268 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 60 SdHoareTripleChecker+Valid, 371 SdHoareTripleChecker+Invalid, 39 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:19,751 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [60 Valid, 371 Invalid, 39 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 22:48:19,752 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 244 states. [2023-11-06 22:48:19,788 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 244 to 235. [2023-11-06 22:48:19,789 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 235 states, 178 states have (on average 1.3146067415730338) internal successors, (234), 195 states have internal predecessors, (234), 30 states have call successors, (30), 26 states have call predecessors, (30), 26 states have return successors, (38), 27 states have call predecessors, (38), 30 states have call successors, (38) [2023-11-06 22:48:19,792 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 235 states to 235 states and 302 transitions. [2023-11-06 22:48:19,792 INFO L78 Accepts]: Start accepts. Automaton has 235 states and 302 transitions. Word has length 34 [2023-11-06 22:48:19,792 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:19,793 INFO L495 AbstractCegarLoop]: Abstraction has 235 states and 302 transitions. [2023-11-06 22:48:19,793 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.2) internal successors, (31), 5 states have internal predecessors, (31), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:48:19,793 INFO L276 IsEmpty]: Start isEmpty. Operand 235 states and 302 transitions. [2023-11-06 22:48:19,795 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2023-11-06 22:48:19,795 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:19,795 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:19,796 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-06 22:48:19,796 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:19,796 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:19,797 INFO L85 PathProgramCache]: Analyzing trace with hash 571922311, now seen corresponding path program 1 times [2023-11-06 22:48:19,797 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:19,797 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [938172969] [2023-11-06 22:48:19,797 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:19,798 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:19,816 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:19,879 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 22:48:19,884 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:19,923 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:48:19,924 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:19,926 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2023-11-06 22:48:19,927 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:19,929 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-06 22:48:19,929 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:19,929 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [938172969] [2023-11-06 22:48:19,929 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [938172969] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:19,930 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:48:19,930 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-06 22:48:19,931 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1791816979] [2023-11-06 22:48:19,931 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:19,932 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 22:48:19,932 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:19,933 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 22:48:19,933 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-06 22:48:19,933 INFO L87 Difference]: Start difference. First operand 235 states and 302 transitions. Second operand has 6 states, 6 states have (on average 7.166666666666667) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 22:48:20,126 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:20,127 INFO L93 Difference]: Finished difference Result 526 states and 695 transitions. [2023-11-06 22:48:20,127 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-06 22:48:20,127 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 7.166666666666667) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) Word has length 52 [2023-11-06 22:48:20,128 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:20,131 INFO L225 Difference]: With dead ends: 526 [2023-11-06 22:48:20,131 INFO L226 Difference]: Without dead ends: 299 [2023-11-06 22:48:20,132 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=29, Invalid=61, Unknown=0, NotChecked=0, Total=90 [2023-11-06 22:48:20,134 INFO L413 NwaCegarLoop]: 85 mSDtfsCounter, 67 mSDsluCounter, 285 mSDsCounter, 0 mSdLazyCounter, 123 mSolverCounterSat, 22 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 70 SdHoareTripleChecker+Valid, 370 SdHoareTripleChecker+Invalid, 145 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 22 IncrementalHoareTripleChecker+Valid, 123 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:20,134 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [70 Valid, 370 Invalid, 145 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [22 Valid, 123 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 22:48:20,136 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 299 states. [2023-11-06 22:48:20,192 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 299 to 287. [2023-11-06 22:48:20,198 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 287 states, 220 states have (on average 1.290909090909091) internal successors, (284), 237 states have internal predecessors, (284), 34 states have call successors, (34), 26 states have call predecessors, (34), 32 states have return successors, (48), 35 states have call predecessors, (48), 34 states have call successors, (48) [2023-11-06 22:48:20,200 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 287 states to 287 states and 366 transitions. [2023-11-06 22:48:20,200 INFO L78 Accepts]: Start accepts. Automaton has 287 states and 366 transitions. Word has length 52 [2023-11-06 22:48:20,201 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:20,201 INFO L495 AbstractCegarLoop]: Abstraction has 287 states and 366 transitions. [2023-11-06 22:48:20,201 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 7.166666666666667) internal successors, (43), 5 states have internal predecessors, (43), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 22:48:20,201 INFO L276 IsEmpty]: Start isEmpty. Operand 287 states and 366 transitions. [2023-11-06 22:48:20,203 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2023-11-06 22:48:20,203 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:20,203 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:20,203 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-06 22:48:20,204 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:20,204 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:20,204 INFO L85 PathProgramCache]: Analyzing trace with hash -1799816951, now seen corresponding path program 1 times [2023-11-06 22:48:20,204 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:20,205 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1333876398] [2023-11-06 22:48:20,205 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:20,205 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:20,218 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:20,273 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 22:48:20,277 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:20,310 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:48:20,312 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:20,313 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2023-11-06 22:48:20,314 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:20,316 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-06 22:48:20,316 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:20,317 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1333876398] [2023-11-06 22:48:20,317 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1333876398] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:20,317 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:48:20,317 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-06 22:48:20,317 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [400008675] [2023-11-06 22:48:20,317 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:20,318 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 22:48:20,318 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:20,319 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 22:48:20,319 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-06 22:48:20,319 INFO L87 Difference]: Start difference. First operand 287 states and 366 transitions. Second operand has 6 states, 6 states have (on average 7.166666666666667) internal successors, (43), 5 states have internal predecessors, (43), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 22:48:20,631 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:20,631 INFO L93 Difference]: Finished difference Result 590 states and 767 transitions. [2023-11-06 22:48:20,631 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2023-11-06 22:48:20,632 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 7.166666666666667) internal successors, (43), 5 states have internal predecessors, (43), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) Word has length 52 [2023-11-06 22:48:20,632 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:20,635 INFO L225 Difference]: With dead ends: 590 [2023-11-06 22:48:20,635 INFO L226 Difference]: Without dead ends: 311 [2023-11-06 22:48:20,637 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 17 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=54, Invalid=102, Unknown=0, NotChecked=0, Total=156 [2023-11-06 22:48:20,646 INFO L413 NwaCegarLoop]: 102 mSDtfsCounter, 218 mSDsluCounter, 308 mSDsCounter, 0 mSdLazyCounter, 144 mSolverCounterSat, 53 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 225 SdHoareTripleChecker+Valid, 410 SdHoareTripleChecker+Invalid, 197 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 53 IncrementalHoareTripleChecker+Valid, 144 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:20,649 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [225 Valid, 410 Invalid, 197 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [53 Valid, 144 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 22:48:20,651 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 311 states. [2023-11-06 22:48:20,692 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 311 to 291. [2023-11-06 22:48:20,693 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 291 states, 224 states have (on average 1.2857142857142858) internal successors, (288), 241 states have internal predecessors, (288), 34 states have call successors, (34), 26 states have call predecessors, (34), 32 states have return successors, (48), 35 states have call predecessors, (48), 34 states have call successors, (48) [2023-11-06 22:48:20,695 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 291 states to 291 states and 370 transitions. [2023-11-06 22:48:20,696 INFO L78 Accepts]: Start accepts. Automaton has 291 states and 370 transitions. Word has length 52 [2023-11-06 22:48:20,696 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:20,696 INFO L495 AbstractCegarLoop]: Abstraction has 291 states and 370 transitions. [2023-11-06 22:48:20,696 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 7.166666666666667) internal successors, (43), 5 states have internal predecessors, (43), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 22:48:20,697 INFO L276 IsEmpty]: Start isEmpty. Operand 291 states and 370 transitions. [2023-11-06 22:48:20,698 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2023-11-06 22:48:20,698 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:20,699 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:20,699 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-06 22:48:20,699 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:20,699 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:20,700 INFO L85 PathProgramCache]: Analyzing trace with hash -413613557, now seen corresponding path program 1 times [2023-11-06 22:48:20,700 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:20,700 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1592055029] [2023-11-06 22:48:20,700 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:20,700 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:20,721 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:20,805 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 22:48:20,810 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:20,825 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:48:20,827 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:20,829 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2023-11-06 22:48:20,830 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:20,832 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-06 22:48:20,832 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:20,832 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1592055029] [2023-11-06 22:48:20,832 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1592055029] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:20,832 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:48:20,833 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 22:48:20,833 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [542692831] [2023-11-06 22:48:20,833 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:20,833 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:48:20,834 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:20,834 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:48:20,834 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 22:48:20,835 INFO L87 Difference]: Start difference. First operand 291 states and 370 transitions. Second operand has 5 states, 5 states have (on average 8.6) internal successors, (43), 4 states have internal predecessors, (43), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-06 22:48:21,081 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:21,082 INFO L93 Difference]: Finished difference Result 822 states and 1083 transitions. [2023-11-06 22:48:21,082 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-06 22:48:21,082 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.6) internal successors, (43), 4 states have internal predecessors, (43), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 52 [2023-11-06 22:48:21,083 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:21,087 INFO L225 Difference]: With dead ends: 822 [2023-11-06 22:48:21,087 INFO L226 Difference]: Without dead ends: 539 [2023-11-06 22:48:21,088 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2023-11-06 22:48:21,089 INFO L413 NwaCegarLoop]: 127 mSDtfsCounter, 221 mSDsluCounter, 181 mSDsCounter, 0 mSdLazyCounter, 129 mSolverCounterSat, 61 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 227 SdHoareTripleChecker+Valid, 308 SdHoareTripleChecker+Invalid, 190 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 61 IncrementalHoareTripleChecker+Valid, 129 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:21,090 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [227 Valid, 308 Invalid, 190 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [61 Valid, 129 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 22:48:21,091 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 539 states. [2023-11-06 22:48:21,139 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 539 to 532. [2023-11-06 22:48:21,140 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 532 states, 405 states have (on average 1.254320987654321) internal successors, (508), 431 states have internal predecessors, (508), 65 states have call successors, (65), 59 states have call predecessors, (65), 61 states have return successors, (103), 64 states have call predecessors, (103), 65 states have call successors, (103) [2023-11-06 22:48:21,144 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 532 states to 532 states and 676 transitions. [2023-11-06 22:48:21,145 INFO L78 Accepts]: Start accepts. Automaton has 532 states and 676 transitions. Word has length 52 [2023-11-06 22:48:21,145 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:21,145 INFO L495 AbstractCegarLoop]: Abstraction has 532 states and 676 transitions. [2023-11-06 22:48:21,145 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.6) internal successors, (43), 4 states have internal predecessors, (43), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-06 22:48:21,146 INFO L276 IsEmpty]: Start isEmpty. Operand 532 states and 676 transitions. [2023-11-06 22:48:21,147 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2023-11-06 22:48:21,147 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:21,147 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:21,148 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-06 22:48:21,148 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:21,148 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:21,148 INFO L85 PathProgramCache]: Analyzing trace with hash 1362264357, now seen corresponding path program 1 times [2023-11-06 22:48:21,149 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:21,149 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1114439751] [2023-11-06 22:48:21,149 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:21,149 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:21,163 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:21,205 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 22:48:21,206 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:21,212 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2023-11-06 22:48:21,217 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:21,223 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:48:21,224 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:21,225 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2023-11-06 22:48:21,226 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:21,228 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-06 22:48:21,229 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:21,229 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1114439751] [2023-11-06 22:48:21,229 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1114439751] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:21,229 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:48:21,230 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 22:48:21,230 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1905698482] [2023-11-06 22:48:21,230 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:21,230 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:48:21,231 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:21,231 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:48:21,231 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 22:48:21,232 INFO L87 Difference]: Start difference. First operand 532 states and 676 transitions. Second operand has 5 states, 5 states have (on average 9.0) internal successors, (45), 3 states have internal predecessors, (45), 2 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-06 22:48:21,677 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:21,677 INFO L93 Difference]: Finished difference Result 1113 states and 1508 transitions. [2023-11-06 22:48:21,683 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-06 22:48:21,683 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.0) internal successors, (45), 3 states have internal predecessors, (45), 2 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 56 [2023-11-06 22:48:21,685 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:21,692 INFO L225 Difference]: With dead ends: 1113 [2023-11-06 22:48:21,692 INFO L226 Difference]: Without dead ends: 1111 [2023-11-06 22:48:21,693 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2023-11-06 22:48:21,694 INFO L413 NwaCegarLoop]: 75 mSDtfsCounter, 335 mSDsluCounter, 152 mSDsCounter, 0 mSdLazyCounter, 153 mSolverCounterSat, 114 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 339 SdHoareTripleChecker+Valid, 227 SdHoareTripleChecker+Invalid, 267 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 114 IncrementalHoareTripleChecker+Valid, 153 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:21,695 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [339 Valid, 227 Invalid, 267 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [114 Valid, 153 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-06 22:48:21,696 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1111 states. [2023-11-06 22:48:21,815 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1111 to 1007. [2023-11-06 22:48:21,818 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1007 states, 766 states have (on average 1.2597911227154046) internal successors, (965), 825 states have internal predecessors, (965), 130 states have call successors, (130), 94 states have call predecessors, (130), 110 states have return successors, (275), 122 states have call predecessors, (275), 130 states have call successors, (275) [2023-11-06 22:48:21,826 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1007 states to 1007 states and 1370 transitions. [2023-11-06 22:48:21,827 INFO L78 Accepts]: Start accepts. Automaton has 1007 states and 1370 transitions. Word has length 56 [2023-11-06 22:48:21,827 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:21,827 INFO L495 AbstractCegarLoop]: Abstraction has 1007 states and 1370 transitions. [2023-11-06 22:48:21,827 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.0) internal successors, (45), 3 states have internal predecessors, (45), 2 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-06 22:48:21,827 INFO L276 IsEmpty]: Start isEmpty. Operand 1007 states and 1370 transitions. [2023-11-06 22:48:21,831 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 87 [2023-11-06 22:48:21,831 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:21,831 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:21,832 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-06 22:48:21,832 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:21,832 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:21,832 INFO L85 PathProgramCache]: Analyzing trace with hash -2138265107, now seen corresponding path program 1 times [2023-11-06 22:48:21,832 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:21,833 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [119314459] [2023-11-06 22:48:21,833 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:21,833 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:21,856 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:21,890 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 22:48:21,892 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:21,901 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2023-11-06 22:48:21,907 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:21,971 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 22:48:21,975 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,127 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:48:22,130 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,149 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2023-11-06 22:48:22,150 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,156 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 76 [2023-11-06 22:48:22,157 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,158 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 15 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2023-11-06 22:48:22,158 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:22,159 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [119314459] [2023-11-06 22:48:22,159 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [119314459] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 22:48:22,159 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1937318968] [2023-11-06 22:48:22,159 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:22,159 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:48:22,160 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:48:22,164 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 22:48:22,192 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-06 22:48:22,284 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,287 INFO L262 TraceCheckSpWp]: Trace formula consists of 312 conjuncts, 3 conjunts are in the unsatisfiable core [2023-11-06 22:48:22,296 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 22:48:22,337 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2023-11-06 22:48:22,338 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 22:48:22,339 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1937318968] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:22,339 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 22:48:22,339 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [13] total 13 [2023-11-06 22:48:22,340 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [665612721] [2023-11-06 22:48:22,340 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:22,341 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 22:48:22,342 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:22,343 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 22:48:22,344 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=28, Invalid=128, Unknown=0, NotChecked=0, Total=156 [2023-11-06 22:48:22,345 INFO L87 Difference]: Start difference. First operand 1007 states and 1370 transitions. Second operand has 3 states, 3 states have (on average 21.333333333333332) internal successors, (64), 3 states have internal predecessors, (64), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 3 states have call successors, (5) [2023-11-06 22:48:22,449 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:22,449 INFO L93 Difference]: Finished difference Result 1145 states and 1551 transitions. [2023-11-06 22:48:22,450 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 22:48:22,450 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 21.333333333333332) internal successors, (64), 3 states have internal predecessors, (64), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 3 states have call successors, (5) Word has length 86 [2023-11-06 22:48:22,451 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:22,455 INFO L225 Difference]: With dead ends: 1145 [2023-11-06 22:48:22,455 INFO L226 Difference]: Without dead ends: 491 [2023-11-06 22:48:22,458 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 108 GetRequests, 97 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=28, Invalid=128, Unknown=0, NotChecked=0, Total=156 [2023-11-06 22:48:22,460 INFO L413 NwaCegarLoop]: 131 mSDtfsCounter, 38 mSDsluCounter, 101 mSDsCounter, 0 mSdLazyCounter, 3 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 38 SdHoareTripleChecker+Valid, 232 SdHoareTripleChecker+Invalid, 3 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 3 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:22,460 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [38 Valid, 232 Invalid, 3 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 3 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:48:22,462 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 491 states. [2023-11-06 22:48:22,524 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 491 to 486. [2023-11-06 22:48:22,525 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 486 states, 373 states have (on average 1.227882037533512) internal successors, (458), 398 states have internal predecessors, (458), 59 states have call successors, (59), 44 states have call predecessors, (59), 53 states have return successors, (129), 59 states have call predecessors, (129), 59 states have call successors, (129) [2023-11-06 22:48:22,529 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 486 states to 486 states and 646 transitions. [2023-11-06 22:48:22,530 INFO L78 Accepts]: Start accepts. Automaton has 486 states and 646 transitions. Word has length 86 [2023-11-06 22:48:22,531 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:22,531 INFO L495 AbstractCegarLoop]: Abstraction has 486 states and 646 transitions. [2023-11-06 22:48:22,531 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 21.333333333333332) internal successors, (64), 3 states have internal predecessors, (64), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 3 states have call successors, (5) [2023-11-06 22:48:22,531 INFO L276 IsEmpty]: Start isEmpty. Operand 486 states and 646 transitions. [2023-11-06 22:48:22,535 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 98 [2023-11-06 22:48:22,535 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:22,535 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:22,547 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-06 22:48:22,741 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:48:22,741 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:22,741 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:22,741 INFO L85 PathProgramCache]: Analyzing trace with hash 1849667941, now seen corresponding path program 1 times [2023-11-06 22:48:22,742 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:22,742 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [434093993] [2023-11-06 22:48:22,742 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:22,742 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:22,771 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,922 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 22:48:22,923 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,953 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 22:48:22,956 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,972 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 22:48:22,977 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,981 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:48:22,985 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,986 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2023-11-06 22:48:22,987 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,988 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 77 [2023-11-06 22:48:22,993 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,995 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:48:22,996 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:22,997 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 87 [2023-11-06 22:48:22,999 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,000 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 8 proven. 10 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2023-11-06 22:48:23,001 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:23,001 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [434093993] [2023-11-06 22:48:23,001 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [434093993] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 22:48:23,002 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [652468288] [2023-11-06 22:48:23,002 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:23,003 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:48:23,003 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:48:23,004 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 22:48:23,024 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-06 22:48:23,115 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,117 INFO L262 TraceCheckSpWp]: Trace formula consists of 340 conjuncts, 5 conjunts are in the unsatisfiable core [2023-11-06 22:48:23,121 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 22:48:23,180 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 18 proven. 0 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2023-11-06 22:48:23,180 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 22:48:23,181 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [652468288] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:23,181 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 22:48:23,181 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [9] total 12 [2023-11-06 22:48:23,181 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1781688677] [2023-11-06 22:48:23,181 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:23,182 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:48:23,182 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:23,183 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:48:23,183 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=26, Invalid=106, Unknown=0, NotChecked=0, Total=132 [2023-11-06 22:48:23,183 INFO L87 Difference]: Start difference. First operand 486 states and 646 transitions. Second operand has 5 states, 5 states have (on average 14.0) internal successors, (70), 5 states have internal predecessors, (70), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-06 22:48:23,262 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:23,262 INFO L93 Difference]: Finished difference Result 950 states and 1315 transitions. [2023-11-06 22:48:23,262 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-06 22:48:23,263 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 14.0) internal successors, (70), 5 states have internal predecessors, (70), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) Word has length 97 [2023-11-06 22:48:23,263 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:23,267 INFO L225 Difference]: With dead ends: 950 [2023-11-06 22:48:23,267 INFO L226 Difference]: Without dead ends: 520 [2023-11-06 22:48:23,270 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 108 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=38, Invalid=144, Unknown=0, NotChecked=0, Total=182 [2023-11-06 22:48:23,270 INFO L413 NwaCegarLoop]: 107 mSDtfsCounter, 13 mSDsluCounter, 304 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 411 SdHoareTripleChecker+Invalid, 20 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:23,271 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 411 Invalid, 20 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:48:23,272 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 520 states. [2023-11-06 22:48:23,317 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 520 to 492. [2023-11-06 22:48:23,318 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 492 states, 379 states have (on average 1.2242744063324538) internal successors, (464), 404 states have internal predecessors, (464), 59 states have call successors, (59), 44 states have call predecessors, (59), 53 states have return successors, (129), 59 states have call predecessors, (129), 59 states have call successors, (129) [2023-11-06 22:48:23,322 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 492 states to 492 states and 652 transitions. [2023-11-06 22:48:23,322 INFO L78 Accepts]: Start accepts. Automaton has 492 states and 652 transitions. Word has length 97 [2023-11-06 22:48:23,322 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:23,323 INFO L495 AbstractCegarLoop]: Abstraction has 492 states and 652 transitions. [2023-11-06 22:48:23,323 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 14.0) internal successors, (70), 5 states have internal predecessors, (70), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-06 22:48:23,323 INFO L276 IsEmpty]: Start isEmpty. Operand 492 states and 652 transitions. [2023-11-06 22:48:23,325 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 98 [2023-11-06 22:48:23,325 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:23,325 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:23,336 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-11-06 22:48:23,531 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-06 22:48:23,531 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:23,532 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:23,532 INFO L85 PathProgramCache]: Analyzing trace with hash 1983681447, now seen corresponding path program 1 times [2023-11-06 22:48:23,532 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:23,532 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1519667904] [2023-11-06 22:48:23,532 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:23,533 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:23,567 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,678 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 22:48:23,679 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,689 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 22:48:23,696 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,760 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 22:48:23,767 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,903 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:48:23,905 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,931 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2023-11-06 22:48:23,932 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,937 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 77 [2023-11-06 22:48:23,938 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,939 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:48:23,941 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,941 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 87 [2023-11-06 22:48:23,944 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:23,945 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 17 proven. 6 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2023-11-06 22:48:23,945 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:23,945 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1519667904] [2023-11-06 22:48:23,946 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1519667904] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 22:48:23,946 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1004097343] [2023-11-06 22:48:23,946 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:23,946 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:48:23,946 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:48:23,947 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 22:48:23,976 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-11-06 22:48:24,066 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,068 INFO L262 TraceCheckSpWp]: Trace formula consists of 339 conjuncts, 11 conjunts are in the unsatisfiable core [2023-11-06 22:48:24,079 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 22:48:24,215 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 30 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-06 22:48:24,215 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 22:48:24,216 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1004097343] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:24,216 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 22:48:24,216 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [12] total 16 [2023-11-06 22:48:24,216 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1178056766] [2023-11-06 22:48:24,216 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:24,217 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 22:48:24,217 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:24,218 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 22:48:24,218 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=35, Invalid=205, Unknown=0, NotChecked=0, Total=240 [2023-11-06 22:48:24,218 INFO L87 Difference]: Start difference. First operand 492 states and 652 transitions. Second operand has 6 states, 6 states have (on average 13.0) internal successors, (78), 6 states have internal predecessors, (78), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2023-11-06 22:48:24,361 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:24,361 INFO L93 Difference]: Finished difference Result 808 states and 1066 transitions. [2023-11-06 22:48:24,361 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-06 22:48:24,361 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 13.0) internal successors, (78), 6 states have internal predecessors, (78), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) Word has length 97 [2023-11-06 22:48:24,362 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:24,364 INFO L225 Difference]: With dead ends: 808 [2023-11-06 22:48:24,365 INFO L226 Difference]: Without dead ends: 372 [2023-11-06 22:48:24,368 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 124 GetRequests, 108 SyntacticMatches, 0 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 38 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=45, Invalid=261, Unknown=0, NotChecked=0, Total=306 [2023-11-06 22:48:24,369 INFO L413 NwaCegarLoop]: 140 mSDtfsCounter, 116 mSDsluCounter, 326 mSDsCounter, 0 mSdLazyCounter, 46 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 116 SdHoareTripleChecker+Valid, 466 SdHoareTripleChecker+Invalid, 55 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 46 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:24,369 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [116 Valid, 466 Invalid, 55 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 46 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:48:24,370 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 372 states. [2023-11-06 22:48:24,412 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 372 to 343. [2023-11-06 22:48:24,413 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 343 states, 264 states have (on average 1.1818181818181819) internal successors, (312), 281 states have internal predecessors, (312), 40 states have call successors, (40), 32 states have call predecessors, (40), 38 states have return successors, (66), 40 states have call predecessors, (66), 40 states have call successors, (66) [2023-11-06 22:48:24,416 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 343 states to 343 states and 418 transitions. [2023-11-06 22:48:24,416 INFO L78 Accepts]: Start accepts. Automaton has 343 states and 418 transitions. Word has length 97 [2023-11-06 22:48:24,416 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:24,416 INFO L495 AbstractCegarLoop]: Abstraction has 343 states and 418 transitions. [2023-11-06 22:48:24,417 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 13.0) internal successors, (78), 6 states have internal predecessors, (78), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2023-11-06 22:48:24,417 INFO L276 IsEmpty]: Start isEmpty. Operand 343 states and 418 transitions. [2023-11-06 22:48:24,418 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 103 [2023-11-06 22:48:24,418 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:48:24,419 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:24,427 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2023-11-06 22:48:24,624 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:48:24,624 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:48:24,624 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:48:24,625 INFO L85 PathProgramCache]: Analyzing trace with hash -650136244, now seen corresponding path program 1 times [2023-11-06 22:48:24,625 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:48:24,625 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [857816872] [2023-11-06 22:48:24,625 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:24,625 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:48:24,642 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,726 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 22:48:24,727 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,739 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 22:48:24,743 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,769 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 22:48:24,773 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,781 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:48:24,782 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,783 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2023-11-06 22:48:24,784 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,786 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 70 [2023-11-06 22:48:24,789 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,792 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:48:24,793 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,794 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 92 [2023-11-06 22:48:24,795 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,796 INFO L134 CoverageAnalysis]: Checked inductivity of 55 backedges. 11 proven. 14 refuted. 0 times theorem prover too weak. 30 trivial. 0 not checked. [2023-11-06 22:48:24,796 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:48:24,797 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [857816872] [2023-11-06 22:48:24,797 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [857816872] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 22:48:24,797 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [760441802] [2023-11-06 22:48:24,797 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:48:24,797 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:48:24,798 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:48:24,799 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 22:48:24,816 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2023-11-06 22:48:24,913 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:48:24,915 INFO L262 TraceCheckSpWp]: Trace formula consists of 360 conjuncts, 4 conjunts are in the unsatisfiable core [2023-11-06 22:48:24,918 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 22:48:24,966 INFO L134 CoverageAnalysis]: Checked inductivity of 55 backedges. 52 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-06 22:48:24,966 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 22:48:24,966 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [760441802] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:48:24,967 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 22:48:24,967 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [8] total 8 [2023-11-06 22:48:24,969 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [126472597] [2023-11-06 22:48:24,969 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:48:24,970 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 22:48:24,970 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:48:24,970 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 22:48:24,970 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2023-11-06 22:48:24,971 INFO L87 Difference]: Start difference. First operand 343 states and 418 transitions. Second operand has 3 states, 3 states have (on average 27.666666666666668) internal successors, (83), 3 states have internal predecessors, (83), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2023-11-06 22:48:25,013 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:48:25,014 INFO L93 Difference]: Finished difference Result 533 states and 661 transitions. [2023-11-06 22:48:25,014 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 22:48:25,014 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 27.666666666666668) internal successors, (83), 3 states have internal predecessors, (83), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) Word has length 102 [2023-11-06 22:48:25,015 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:48:25,015 INFO L225 Difference]: With dead ends: 533 [2023-11-06 22:48:25,015 INFO L226 Difference]: Without dead ends: 0 [2023-11-06 22:48:25,017 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 123 GetRequests, 117 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2023-11-06 22:48:25,018 INFO L413 NwaCegarLoop]: 125 mSDtfsCounter, 26 mSDsluCounter, 69 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 26 SdHoareTripleChecker+Valid, 194 SdHoareTripleChecker+Invalid, 10 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:48:25,018 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [26 Valid, 194 Invalid, 10 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:48:25,020 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-06 22:48:25,020 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-06 22:48:25,020 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:48:25,020 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-06 22:48:25,021 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 102 [2023-11-06 22:48:25,021 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:48:25,021 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-06 22:48:25,021 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 27.666666666666668) internal successors, (83), 3 states have internal predecessors, (83), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2023-11-06 22:48:25,021 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-06 22:48:25,022 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-06 22:48:25,024 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-06 22:48:25,036 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2023-11-06 22:48:25,231 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:48:25,233 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-06 22:48:28,929 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 183 190) no Hoare annotation was computed. [2023-11-06 22:48:28,929 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 183 190) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (and (or .cse0 (not (= 1 ~systemActive~0))) (or .cse0 (< ~waterLevel~0 2)))) [2023-11-06 22:48:28,930 INFO L899 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 183 190) no Hoare annotation was computed. [2023-11-06 22:48:28,930 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 98 104) no Hoare annotation was computed. [2023-11-06 22:48:28,930 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 98 104) the Hoare annotation is: true [2023-11-06 22:48:28,930 INFO L899 garLoopResultBuilder]: For program point L942-1(lines 938 949) no Hoare annotation was computed. [2023-11-06 22:48:28,930 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 938 949) the Hoare annotation is: true [2023-11-06 22:48:28,930 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 938 949) no Hoare annotation was computed. [2023-11-06 22:48:28,931 INFO L902 garLoopResultBuilder]: At program point L417(line 417) the Hoare annotation is: true [2023-11-06 22:48:28,931 INFO L899 garLoopResultBuilder]: For program point L417-1(line 417) no Hoare annotation was computed. [2023-11-06 22:48:28,931 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 411 440) no Hoare annotation was computed. [2023-11-06 22:48:28,931 INFO L902 garLoopResultBuilder]: At program point L436(lines 411 440) the Hoare annotation is: true [2023-11-06 22:48:28,931 INFO L899 garLoopResultBuilder]: For program point L432(line 432) no Hoare annotation was computed. [2023-11-06 22:48:28,931 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 411 440) the Hoare annotation is: true [2023-11-06 22:48:28,932 INFO L899 garLoopResultBuilder]: For program point L425(lines 425 429) no Hoare annotation was computed. [2023-11-06 22:48:28,932 INFO L902 garLoopResultBuilder]: At program point L425-1(lines 425 429) the Hoare annotation is: true [2023-11-06 22:48:28,932 INFO L899 garLoopResultBuilder]: For program point L422(line 422) no Hoare annotation was computed. [2023-11-06 22:48:28,932 INFO L902 garLoopResultBuilder]: At program point L421-2(lines 421 435) the Hoare annotation is: true [2023-11-06 22:48:28,932 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 950 958) the Hoare annotation is: true [2023-11-06 22:48:28,932 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 950 958) no Hoare annotation was computed. [2023-11-06 22:48:28,933 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 950 958) no Hoare annotation was computed. [2023-11-06 22:48:28,933 INFO L899 garLoopResultBuilder]: For program point L386-1(line 386) no Hoare annotation was computed. [2023-11-06 22:48:28,933 INFO L895 garLoopResultBuilder]: At program point L151(line 151) the Hoare annotation is: (let ((.cse1 (not (= 1 ~systemActive~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse1 (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse1 (< |old(~waterLevel~0)| 2) (< |old(~pumpRunning~0)| 1)) (or .cse0 (not (= 0 ~systemActive~0))))) [2023-11-06 22:48:28,934 INFO L895 garLoopResultBuilder]: At program point L151-1(lines 132 156) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse1 (< |old(~waterLevel~0)| 2)) (.cse4 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse6 (= ~methAndRunningLastTime~0 0)) (.cse0 (not (= 1 ~systemActive~0))) (.cse3 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 .cse1 (< |old(~pumpRunning~0)| 1) (and .cse2 (<= 1 ~waterLevel~0))) (let ((.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse3 .cse4 (< |old(~waterLevel~0)| 1) (and .cse2 .cse5) .cse0 (and (<= 1 ~pumpRunning~0) (<= 2 ~waterLevel~0) .cse5))) (or .cse3 .cse4 .cse6 .cse0 .cse1) (or .cse3 .cse4 .cse6 (not (= |old(~waterLevel~0)| 1)) .cse0) (or .cse3 (not (= 0 ~systemActive~0))))) [2023-11-06 22:48:28,934 INFO L899 garLoopResultBuilder]: For program point L85-1(lines 85 91) no Hoare annotation was computed. [2023-11-06 22:48:28,934 INFO L899 garLoopResultBuilder]: For program point L275(lines 275 279) no Hoare annotation was computed. [2023-11-06 22:48:28,934 INFO L899 garLoopResultBuilder]: For program point L275-2(lines 275 279) no Hoare annotation was computed. [2023-11-06 22:48:28,934 INFO L895 garLoopResultBuilder]: At program point isLowWaterSensorDry_returnLabel#1(lines 1005 1013) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (< |old(~pumpRunning~0)| 1) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 ~waterLevel~0))) (or .cse1 (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse0) (or .cse1 (not (= 0 ~systemActive~0))))) [2023-11-06 22:48:28,935 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 74 97) no Hoare annotation was computed. [2023-11-06 22:48:28,935 INFO L899 garLoopResultBuilder]: For program point L78-1(lines 77 96) no Hoare annotation was computed. [2023-11-06 22:48:28,935 INFO L899 garLoopResultBuilder]: For program point L140(lines 140 148) no Hoare annotation was computed. [2023-11-06 22:48:28,935 INFO L899 garLoopResultBuilder]: For program point L136(lines 136 153) no Hoare annotation was computed. [2023-11-06 22:48:28,935 INFO L899 garLoopResultBuilder]: For program point L392(lines 392 402) no Hoare annotation was computed. [2023-11-06 22:48:28,935 INFO L899 garLoopResultBuilder]: For program point L388(lines 388 405) no Hoare annotation was computed. [2023-11-06 22:48:28,936 INFO L895 garLoopResultBuilder]: At program point L388-1(lines 380 408) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse3 (= ~methAndRunningLastTime~0 0)) (.cse7 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse5 (not (= 1 ~systemActive~0))) (.cse1 (and .cse2 .cse3 .cse7)) (.cse6 (< |old(~waterLevel~0)| 2))) (and (or .cse0 .cse1 (not (= 0 ~systemActive~0))) (or .cse0 (and .cse2 .cse3 (= ~waterLevel~0 1)) .cse4 (not (= |old(~waterLevel~0)| 1)) .cse5) (or (and .cse2 .cse3 (<= 1 ~waterLevel~0)) .cse5 .cse6 (< |old(~pumpRunning~0)| 1)) (or .cse0 .cse4 .cse5 .cse1 .cse6 (and (<= 1 ~pumpRunning~0) .cse7))))) [2023-11-06 22:48:28,936 INFO L899 garLoopResultBuilder]: For program point L54(line 54) no Hoare annotation was computed. [2023-11-06 22:48:28,936 INFO L895 garLoopResultBuilder]: At program point __automaton_fail_returnLabel#1(lines 50 57) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (< |old(~pumpRunning~0)| 1)) (or .cse1 (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse0) (or .cse1 (not (= 0 ~systemActive~0))))) [2023-11-06 22:48:28,937 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 74 97) the Hoare annotation is: (let ((.cse3 (not (= 0 ~systemActive~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (= ~pumpRunning~0 0)) (.cse5 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (= ~methAndRunningLastTime~0 0)) (.cse6 (not (= 1 ~systemActive~0))) (.cse7 (< |old(~waterLevel~0)| 2)) (.cse8 (< |old(~pumpRunning~0)| 1))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse0 (and .cse4 .cse5) .cse3) (or .cse0 .cse1 (< |old(~waterLevel~0)| 1) .cse6 (and .cse4 .cse2 .cse5)) (or .cse6 .cse7 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse5) .cse8) (or .cse1 .cse2 .cse6 .cse7 .cse8))) [2023-11-06 22:48:28,937 INFO L899 garLoopResultBuilder]: For program point L393(lines 393 399) no Hoare annotation was computed. [2023-11-06 22:48:28,937 INFO L895 garLoopResultBuilder]: At program point isLowWaterLevel_returnLabel#1(lines 266 284) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (< |old(~pumpRunning~0)| 1) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (= |timeShift_isLowWaterLevel_~tmp~4#1| 0) (<= 1 ~waterLevel~0))) (or .cse1 (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse0) (or .cse1 (not (= 0 ~systemActive~0))))) [2023-11-06 22:48:28,937 INFO L899 garLoopResultBuilder]: For program point L918(lines 918 922) no Hoare annotation was computed. [2023-11-06 22:48:28,938 INFO L895 garLoopResultBuilder]: At program point L918-2(lines 914 925) the Hoare annotation is: (let ((.cse1 (< |old(~waterLevel~0)| 2)) (.cse2 (< |old(~pumpRunning~0)| 1)) (.cse3 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse4 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) .cse2) (or .cse3 (= ~methAndRunningLastTime~0 0) .cse0 .cse1 .cse2) (or .cse4 .cse3 (< |old(~waterLevel~0)| 1) .cse0) (or .cse4 (not (= 0 ~systemActive~0))))) [2023-11-06 22:48:28,938 INFO L895 garLoopResultBuilder]: At program point L146(line 146) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (< |old(~pumpRunning~0)| 1)) (or .cse1 (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse0) (or .cse1 (not (= 0 ~systemActive~0))))) [2023-11-06 22:48:28,938 INFO L895 garLoopResultBuilder]: At program point L142(line 142) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (< |old(~pumpRunning~0)| 1) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 ~waterLevel~0))) (or .cse1 (not (= |old(~methAndRunningLastTime~0)| 0)) (< |old(~waterLevel~0)| 1) .cse0) (or .cse1 (not (= 0 ~systemActive~0))))) [2023-11-06 22:48:28,938 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 74 97) no Hoare annotation was computed. [2023-11-06 22:48:28,939 INFO L895 garLoopResultBuilder]: At program point isPumpRunning_returnLabel#1(lines 202 210) the Hoare annotation is: (let ((.cse8 (= ~pumpRunning~0 0)) (.cse9 (= |timeShift_isPumpRunning_#res#1| 0)) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse7 (and .cse8 .cse9 .cse6)) (.cse4 (not (= 0 ~systemActive~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (= ~methAndRunningLastTime~0 0)) (.cse3 (not (= |old(~waterLevel~0)| 1))) (.cse5 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse1 (< |old(~waterLevel~0)| 1) .cse5 (and (<= 1 ~pumpRunning~0) .cse2 (<= 2 ~waterLevel~0) .cse6) .cse7) (or .cse0 .cse7 .cse4) (or .cse0 .cse1 .cse2 .cse3 .cse5) (or .cse5 (< |old(~waterLevel~0)| 2) (and .cse8 .cse9 (<= 1 ~waterLevel~0)) (< |old(~pumpRunning~0)| 1))))) [2023-11-06 22:48:28,939 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 54) no Hoare annotation was computed. [2023-11-06 22:48:28,939 INFO L895 garLoopResultBuilder]: At program point L386(line 386) the Hoare annotation is: (let ((.cse7 (= ~pumpRunning~0 0)) (.cse9 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse4 (not (= 0 ~systemActive~0))) (.cse8 (and .cse7 .cse9)) (.cse6 (< |old(~waterLevel~0)| 2)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (= ~methAndRunningLastTime~0 0)) (.cse3 (not (= |old(~waterLevel~0)| 1))) (.cse5 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 (< |old(~pumpRunning~0)| 1) (and .cse7 (<= 1 ~waterLevel~0))) (or .cse0 .cse1 .cse2 .cse6 .cse4) (or .cse0 .cse8 .cse4) (or .cse0 .cse1 (< |old(~waterLevel~0)| 1) .cse8 .cse5 (and (<= 1 ~pumpRunning~0) (<= 2 ~waterLevel~0) .cse9)) (or .cse0 .cse1 .cse2 .cse5 .cse6) (or .cse0 .cse1 .cse2 .cse3 .cse5)))) [2023-11-06 22:48:28,940 INFO L899 garLoopResultBuilder]: For program point L316(lines 316 320) no Hoare annotation was computed. [2023-11-06 22:48:28,940 INFO L902 garLoopResultBuilder]: At program point runTest_returnLabel#1(lines 472 482) the Hoare annotation is: true [2023-11-06 22:48:28,940 INFO L895 garLoopResultBuilder]: At program point L362(lines 313 363) the Hoare annotation is: false [2023-11-06 22:48:28,940 INFO L895 garLoopResultBuilder]: At program point select_features_returnLabel#1(lines 521 527) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 22:48:28,940 INFO L902 garLoopResultBuilder]: At program point main_returnLabel#1(lines 486 508) the Hoare annotation is: true [2023-11-06 22:48:28,940 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2023-11-06 22:48:28,941 INFO L899 garLoopResultBuilder]: For program point L350(lines 350 356) no Hoare annotation was computed. [2023-11-06 22:48:28,941 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2023-11-06 22:48:28,941 INFO L895 garLoopResultBuilder]: At program point L350-2(lines 344 357) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse2 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (<= 1 ~pumpRunning~0) (<= 2 ~waterLevel~0) .cse0 .cse1) (and .cse2 (= ~methAndRunningLastTime~0 0) .cse0 .cse1 (<= 1 ~waterLevel~0)) (and .cse2 .cse1 (= 0 ~systemActive~0)))) [2023-11-06 22:48:28,941 INFO L899 garLoopResultBuilder]: For program point L334(lines 334 340) no Hoare annotation was computed. [2023-11-06 22:48:28,941 INFO L899 garLoopResultBuilder]: For program point L334-1(lines 334 340) no Hoare annotation was computed. [2023-11-06 22:48:28,942 INFO L895 garLoopResultBuilder]: At program point setup_returnLabel#1(lines 465 471) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 22:48:28,942 INFO L895 garLoopResultBuilder]: At program point L359(lines 314 361) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= ~methAndRunningLastTime~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (<= 1 ~pumpRunning~0) (<= 2 ~waterLevel~0) .cse0 .cse1) (and .cse2 .cse3 .cse0 .cse1 (<= 1 ~waterLevel~0)) (and .cse2 .cse3 .cse1 (= 0 ~systemActive~0)))) [2023-11-06 22:48:28,942 INFO L895 garLoopResultBuilder]: At program point L326(line 326) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= ~methAndRunningLastTime~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (<= 1 ~pumpRunning~0) (<= 2 ~waterLevel~0) .cse0 .cse1) (and .cse2 .cse3 .cse0 .cse1 (<= 1 ~waterLevel~0)) (and .cse2 .cse3 .cse1 (= 0 ~systemActive~0)))) [2023-11-06 22:48:28,942 INFO L899 garLoopResultBuilder]: For program point L289(lines 289 295) no Hoare annotation was computed. [2023-11-06 22:48:28,942 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-06 22:48:28,943 INFO L899 garLoopResultBuilder]: For program point L289-1(lines 289 295) no Hoare annotation was computed. [2023-11-06 22:48:28,943 INFO L899 garLoopResultBuilder]: For program point L496(lines 496 503) no Hoare annotation was computed. [2023-11-06 22:48:28,943 INFO L899 garLoopResultBuilder]: For program point L496-2(lines 496 503) no Hoare annotation was computed. [2023-11-06 22:48:28,943 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-06 22:48:28,943 INFO L895 garLoopResultBuilder]: At program point select_helpers_returnLabel#1(lines 528 534) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 22:48:28,943 INFO L895 garLoopResultBuilder]: At program point __utac_acc__Specification2_spec__1_returnLabel#1(lines 372 379) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 22:48:28,944 INFO L899 garLoopResultBuilder]: For program point L315(lines 314 361) no Hoare annotation was computed. [2023-11-06 22:48:28,944 INFO L899 garLoopResultBuilder]: For program point L344(lines 344 357) no Hoare annotation was computed. [2023-11-06 22:48:28,944 INFO L895 garLoopResultBuilder]: At program point stopSystem_returnLabel#1(lines 285 299) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (= 0 ~systemActive~0)) [2023-11-06 22:48:28,944 INFO L895 garLoopResultBuilder]: At program point L336(line 336) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= ~methAndRunningLastTime~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (<= 1 ~pumpRunning~0) (<= 2 ~waterLevel~0) .cse0 .cse1) (and .cse2 .cse3 .cse0 .cse1 (<= 1 ~waterLevel~0)) (and .cse2 .cse3 .cse1 (= 0 ~systemActive~0)))) [2023-11-06 22:48:28,944 INFO L902 garLoopResultBuilder]: At program point L365(lines 304 369) the Hoare annotation is: true [2023-11-06 22:48:28,945 INFO L895 garLoopResultBuilder]: At program point valid_product_returnLabel#1(lines 535 543) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 22:48:28,945 INFO L899 garLoopResultBuilder]: For program point L324(lines 324 330) no Hoare annotation was computed. [2023-11-06 22:48:28,945 INFO L899 garLoopResultBuilder]: For program point L324-1(lines 324 330) no Hoare annotation was computed. [2023-11-06 22:48:28,945 INFO L895 garLoopResultBuilder]: At program point L291(line 291) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= 1 ~systemActive~0) .cse0) (and (<= 2 ~waterLevel~0) .cse0))) [2023-11-06 22:48:28,945 INFO L899 garLoopResultBuilder]: For program point L256(lines 256 260) no Hoare annotation was computed. [2023-11-06 22:48:28,945 INFO L899 garLoopResultBuilder]: For program point L256-2(lines 256 260) no Hoare annotation was computed. [2023-11-06 22:48:28,946 INFO L895 garLoopResultBuilder]: At program point L120(line 120) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~0#1| 0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:48:28,946 INFO L899 garLoopResultBuilder]: For program point L114(lines 114 122) no Hoare annotation was computed. [2023-11-06 22:48:28,946 INFO L899 garLoopResultBuilder]: For program point L110(lines 110 127) no Hoare annotation was computed. [2023-11-06 22:48:28,946 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 106 130) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:48:28,946 INFO L895 garLoopResultBuilder]: At program point isHighWaterSensorDry_returnLabel#1(lines 991 1004) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (and .cse0 (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0))) (and .cse0 (<= 2 ~waterLevel~0)) (not (= ~methAndRunningLastTime~0 0)))) [2023-11-06 22:48:28,947 INFO L895 garLoopResultBuilder]: At program point isHighWaterLevel_returnLabel#1(lines 247 265) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (and .cse0 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~0#1| 0) (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~3#1| 0))) (not (= 1 ~systemActive~0)) (and .cse0 (<= 2 ~waterLevel~0)) (not (= ~methAndRunningLastTime~0 0)))) [2023-11-06 22:48:28,947 INFO L895 garLoopResultBuilder]: At program point L125(line 125) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:48:28,947 INFO L899 garLoopResultBuilder]: For program point L125-1(lines 106 130) no Hoare annotation was computed. [2023-11-06 22:48:28,947 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 106 130) no Hoare annotation was computed. [2023-11-06 22:48:28,947 INFO L899 garLoopResultBuilder]: For program point L173(lines 173 179) no Hoare annotation was computed. [2023-11-06 22:48:28,948 INFO L895 garLoopResultBuilder]: At program point L173-2(lines 166 182) the Hoare annotation is: (let ((.cse0 (<= 2 ~waterLevel~0))) (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (and (<= 1 ~pumpRunning~0) .cse0) (not (= 1 ~systemActive~0)) (and (= ~pumpRunning~0 0) .cse0) (not (= ~methAndRunningLastTime~0 0)))) [2023-11-06 22:48:28,948 INFO L895 garLoopResultBuilder]: At program point isMethaneAlarm_returnLabel#1(lines 191 201) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (and (= ~pumpRunning~0 0) (<= 2 ~waterLevel~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:48:28,948 INFO L895 garLoopResultBuilder]: At program point activatePump__wrappee__lowWaterSensor_returnLabel#1(lines 157 164) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methAndRunningLastTime~0 0)))) (and (or (<= 1 ~pumpRunning~0) .cse0 .cse1 (< ~waterLevel~0 2) .cse2) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2))) [2023-11-06 22:48:28,948 INFO L895 garLoopResultBuilder]: At program point L196(line 196) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0)) (and (= ~pumpRunning~0 0) (<= 2 ~waterLevel~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-06 22:48:28,948 INFO L899 garLoopResultBuilder]: For program point L995(lines 995 1001) no Hoare annotation was computed. [2023-11-06 22:48:28,949 INFO L899 garLoopResultBuilder]: For program point L196-1(line 196) no Hoare annotation was computed. [2023-11-06 22:48:28,949 INFO L899 garLoopResultBuilder]: For program point L930-1(lines 926 937) no Hoare annotation was computed. [2023-11-06 22:48:28,949 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 926 937) no Hoare annotation was computed. [2023-11-06 22:48:28,949 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 926 937) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse2 (not (= ~methAndRunningLastTime~0 0))) (.cse3 (not (= 1 ~systemActive~0))) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or .cse0 .cse1 .cse2 (not (= 0 ~systemActive~0))) (or (< |old(~waterLevel~0)| 1) .cse0 .cse3 .cse1 .cse2) (or (< ~pumpRunning~0 1) .cse3 (< |old(~waterLevel~0)| 2) .cse1))) [2023-11-06 22:48:28,952 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:48:28,954 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-06 22:48:28,985 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 06.11 10:48:28 BoogieIcfgContainer [2023-11-06 22:48:28,985 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-06 22:48:28,986 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-06 22:48:28,986 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-06 22:48:28,986 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-06 22:48:28,987 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 10:48:18" (3/4) ... [2023-11-06 22:48:28,989 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-06 22:48:28,992 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-06 22:48:28,993 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-06 22:48:28,993 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-06 22:48:28,993 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-06 22:48:28,993 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2023-11-06 22:48:28,993 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-06 22:48:28,994 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 22:48:28,994 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-06 22:48:29,002 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 17 nodes and edges [2023-11-06 22:48:29,002 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2023-11-06 22:48:29,003 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-06 22:48:29,004 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 22:48:29,004 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 22:48:29,038 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (\old(pumpRunning) < 1)) && ((((!((\old(methAndRunningLastTime) == 0)) || (methAndRunningLastTime == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) [2023-11-06 22:48:29,039 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) || ((pumpRunning == 0) && (1 <= waterLevel))) && (((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || (((1 <= pumpRunning) && (2 <= waterLevel)) && (\old(waterLevel) == waterLevel)))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) [2023-11-06 22:48:29,041 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel))) || !((0 == systemActive))) && ((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1))) || !((\old(methAndRunningLastTime) == 0))) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 <= waterLevel)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1))) && (((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || !((1 == systemActive))) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel))) || (\old(waterLevel) < 2)) || ((1 <= pumpRunning) && (\old(waterLevel) == waterLevel)))) [2023-11-06 22:48:29,042 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:48:29,042 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((0 == systemActive))) && (((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive))) || ((((1 <= pumpRunning) && (methAndRunningLastTime == 0)) && (2 <= waterLevel)) && (\old(waterLevel) == waterLevel))) || (((pumpRunning == 0) && (\result == 0)) && (\old(waterLevel) == waterLevel)))) && ((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (\result == 0)) && (\old(waterLevel) == waterLevel))) || !((0 == systemActive)))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((pumpRunning == 0) && (\result == 0)) && (1 <= waterLevel))) || (\old(pumpRunning) < 1))) [2023-11-06 22:48:29,042 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) || (((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= waterLevel))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) [2023-11-06 22:48:29,043 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && !((\result == 0)))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:48:29,043 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((1 <= pumpRunning) && (2 <= waterLevel))) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:48:29,044 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((1 <= pumpRunning) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || (waterLevel < 2)) || !((methAndRunningLastTime == 0))) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || !((methAndRunningLastTime == 0)))) [2023-11-06 22:48:29,044 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) || ((((((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= tmp___0)) && (1 <= \result)) && (tmp == 0)) && (1 <= waterLevel))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) [2023-11-06 22:48:29,044 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) [2023-11-06 22:48:29,047 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((((pumpRunning == 0) && (\result == 0)) && (tmp___0 == 0)) && !((tmp == 0)))) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:48:29,095 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (\old(pumpRunning) < 1)) && ((((!((\old(methAndRunningLastTime) == 0)) || (methAndRunningLastTime == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) [2023-11-06 22:48:29,095 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) || ((pumpRunning == 0) && (1 <= waterLevel))) && (((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || (((1 <= pumpRunning) && (2 <= waterLevel)) && (\old(waterLevel) == waterLevel)))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) [2023-11-06 22:48:29,096 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel))) || !((0 == systemActive))) && ((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1))) || !((\old(methAndRunningLastTime) == 0))) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 <= waterLevel)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1))) && (((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || !((1 == systemActive))) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel))) || (\old(waterLevel) < 2)) || ((1 <= pumpRunning) && (\old(waterLevel) == waterLevel)))) [2023-11-06 22:48:29,096 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:48:29,096 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((0 == systemActive))) && (((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive))) || ((((1 <= pumpRunning) && (methAndRunningLastTime == 0)) && (2 <= waterLevel)) && (\old(waterLevel) == waterLevel))) || (((pumpRunning == 0) && (\result == 0)) && (\old(waterLevel) == waterLevel)))) && ((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (\result == 0)) && (\old(waterLevel) == waterLevel))) || !((0 == systemActive)))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((pumpRunning == 0) && (\result == 0)) && (1 <= waterLevel))) || (\old(pumpRunning) < 1))) [2023-11-06 22:48:29,097 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) || (((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= waterLevel))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) [2023-11-06 22:48:29,097 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && !((\result == 0)))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:48:29,097 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((1 <= pumpRunning) && (2 <= waterLevel))) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:48:29,097 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((1 <= pumpRunning) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || (waterLevel < 2)) || !((methAndRunningLastTime == 0))) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || !((methAndRunningLastTime == 0)))) [2023-11-06 22:48:29,098 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) || ((((((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= tmp___0)) && (1 <= \result)) && (tmp == 0)) && (1 <= waterLevel))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) [2023-11-06 22:48:29,098 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) [2023-11-06 22:48:29,098 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((((pumpRunning == 0) && (\result == 0)) && (tmp___0 == 0)) && !((tmp == 0)))) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) [2023-11-06 22:48:29,118 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.graphml [2023-11-06 22:48:29,119 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.yaml [2023-11-06 22:48:29,119 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-06 22:48:29,120 INFO L158 Benchmark]: Toolchain (without parser) took 12276.25ms. Allocated memory was 130.0MB in the beginning and 188.7MB in the end (delta: 58.7MB). Free memory was 97.9MB in the beginning and 117.5MB in the end (delta: -19.6MB). Peak memory consumption was 40.9MB. Max. memory is 16.1GB. [2023-11-06 22:48:29,120 INFO L158 Benchmark]: CDTParser took 0.34ms. Allocated memory is still 107.0MB. Free memory is still 63.6MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-06 22:48:29,121 INFO L158 Benchmark]: CACSL2BoogieTranslator took 627.33ms. Allocated memory is still 130.0MB. Free memory was 97.6MB in the beginning and 77.9MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-06 22:48:29,121 INFO L158 Benchmark]: Boogie Procedure Inliner took 67.69ms. Allocated memory is still 130.0MB. Free memory was 77.9MB in the beginning and 75.8MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-06 22:48:29,121 INFO L158 Benchmark]: Boogie Preprocessor took 34.51ms. Allocated memory is still 130.0MB. Free memory was 75.6MB in the beginning and 74.1MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-06 22:48:29,122 INFO L158 Benchmark]: RCFGBuilder took 599.71ms. Allocated memory is still 130.0MB. Free memory was 74.1MB in the beginning and 97.2MB in the end (delta: -23.1MB). Peak memory consumption was 21.7MB. Max. memory is 16.1GB. [2023-11-06 22:48:29,122 INFO L158 Benchmark]: TraceAbstraction took 10805.76ms. Allocated memory was 130.0MB in the beginning and 188.7MB in the end (delta: 58.7MB). Free memory was 96.5MB in the beginning and 125.9MB in the end (delta: -29.4MB). Peak memory consumption was 110.8MB. Max. memory is 16.1GB. [2023-11-06 22:48:29,122 INFO L158 Benchmark]: Witness Printer took 133.45ms. Allocated memory is still 188.7MB. Free memory was 125.9MB in the beginning and 117.5MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-06 22:48:29,124 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.34ms. Allocated memory is still 107.0MB. Free memory is still 63.6MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 627.33ms. Allocated memory is still 130.0MB. Free memory was 97.6MB in the beginning and 77.9MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 67.69ms. Allocated memory is still 130.0MB. Free memory was 77.9MB in the beginning and 75.8MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 34.51ms. Allocated memory is still 130.0MB. Free memory was 75.6MB in the beginning and 74.1MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 599.71ms. Allocated memory is still 130.0MB. Free memory was 74.1MB in the beginning and 97.2MB in the end (delta: -23.1MB). Peak memory consumption was 21.7MB. Max. memory is 16.1GB. * TraceAbstraction took 10805.76ms. Allocated memory was 130.0MB in the beginning and 188.7MB in the end (delta: 58.7MB). Free memory was 96.5MB in the beginning and 125.9MB in the end (delta: -29.4MB). Peak memory consumption was 110.8MB. Max. memory is 16.1GB. * Witness Printer took 133.45ms. Allocated memory is still 188.7MB. Free memory was 125.9MB in the beginning and 117.5MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] - GenericResultAtLocation [Line: 300]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [300] - GenericResultAtLocation [Line: 370]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [370] - GenericResultAtLocation [Line: 409]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [409] - GenericResultAtLocation [Line: 509]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [509] - GenericResultAtLocation [Line: 544]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [544] - GenericResultAtLocation [Line: 910]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [910] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 100 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 10.7s, OverallIterations: 12, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.1s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 3.7s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1220 SdHoareTripleChecker+Valid, 0.9s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1195 mSDsluCounter, 3523 SdHoareTripleChecker+Invalid, 0.7s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2173 mSDsCounter, 272 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 659 IncrementalHoareTripleChecker+Invalid, 931 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 272 mSolverCounterUnsat, 1350 mSDtfsCounter, 659 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 567 GetRequests, 484 SyntacticMatches, 0 SemanticMatches, 83 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 100 ImplicationChecksByTransitivity, 0.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1007occurred in iteration=8, InterpolantAutomatonStates: 66, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.6s AutomataMinimizationTime, 12 MinimizatonAttempts, 217 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 46 LocationsWithAnnotation, 1525 PreInvPairs, 1655 NumberOfFragments, 1471 HoareAnnotationTreeSize, 1525 FomulaSimplifications, 642 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 46 FomulaSimplificationsInter, 6099 FormulaSimplificationTreeSizeReductionInter, 3.4s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 2.3s InterpolantComputationTime, 1091 NumberOfCodeBlocks, 1091 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 1075 ConstructedInterpolants, 0 QuantifiedInterpolants, 1908 SizeOfPredicates, 8 NumberOfNonLiveVariables, 1351 ConjunctsInSsa, 23 ConjunctsInUnsatCore, 16 InterpolantComputations, 12 PerfectInterpolantSequences, 274/308 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 132]: Loop Invariant Derived loop invariant: (((((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) || ((pumpRunning == 0) && (1 <= waterLevel))) && (((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || (((1 <= pumpRunning) && (2 <= waterLevel)) && (\old(waterLevel) == waterLevel)))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) - InvariantResult [Line: 465]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 372]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: (((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel))) || !((0 == systemActive))) && ((((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel == 1))) || !((\old(methAndRunningLastTime) == 0))) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 <= waterLevel)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1))) && (((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || !((1 == systemActive))) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel))) || (\old(waterLevel) < 2)) || ((1 <= pumpRunning) && (\old(waterLevel) == waterLevel)))) - InvariantResult [Line: 157]: Loop Invariant Derived loop invariant: ((((((1 <= pumpRunning) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || (waterLevel < 2)) || !((methAndRunningLastTime == 0))) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || !((methAndRunningLastTime == 0)))) - InvariantResult [Line: 521]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 266]: Loop Invariant Derived loop invariant: (((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) || ((((((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= tmp___0)) && (1 <= \result)) && (tmp == 0)) && (1 <= waterLevel))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) - InvariantResult [Line: 914]: Loop Invariant Derived loop invariant: ((((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (\old(pumpRunning) < 1)) && ((((!((\old(methAndRunningLastTime) == 0)) || (methAndRunningLastTime == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) - InvariantResult [Line: 202]: Loop Invariant Derived loop invariant: ((((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((0 == systemActive))) && (((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive))) || ((((1 <= pumpRunning) && (methAndRunningLastTime == 0)) && (2 <= waterLevel)) && (\old(waterLevel) == waterLevel))) || (((pumpRunning == 0) && (\result == 0)) && (\old(waterLevel) == waterLevel)))) && ((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (\result == 0)) && (\old(waterLevel) == waterLevel))) || !((0 == systemActive)))) && ((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (methAndRunningLastTime == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && (((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((pumpRunning == 0) && (\result == 0)) && (1 <= waterLevel))) || (\old(pumpRunning) < 1))) - InvariantResult [Line: 411]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 991]: Loop Invariant Derived loop invariant: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && !((\result == 0)))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) - InvariantResult [Line: 1005]: Loop Invariant Derived loop invariant: (((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) || (((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= waterLevel))) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) - InvariantResult [Line: 247]: Loop Invariant Derived loop invariant: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((((pumpRunning == 0) && (\result == 0)) && (tmp___0 == 0)) && !((tmp == 0)))) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) - InvariantResult [Line: 472]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 285]: Loop Invariant Derived loop invariant: (((pumpRunning == 0) && (splverifierCounter == 0)) && (0 == systemActive)) - InvariantResult [Line: 304]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 50]: Loop Invariant Derived loop invariant: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (\old(pumpRunning) < 1)) && (((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || !((1 == systemActive)))) && (!((\old(pumpRunning) == 0)) || !((0 == systemActive)))) - InvariantResult [Line: 535]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 528]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 313]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 314]: Loop Invariant Derived loop invariant: ((((((1 <= pumpRunning) && (2 <= waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0)) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (1 <= waterLevel))) || ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (splverifierCounter == 0)) && (0 == systemActive))) - InvariantResult [Line: 191]: Loop Invariant Derived loop invariant: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) - InvariantResult [Line: 486]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 166]: Loop Invariant Derived loop invariant: (((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((1 <= pumpRunning) && (2 <= waterLevel))) || !((1 == systemActive))) || ((pumpRunning == 0) && (2 <= waterLevel))) || !((methAndRunningLastTime == 0))) RESULT: Ultimate proved your program to be correct! [2023-11-06 22:48:29,164 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e75624f7-903f-4ab5-ab0c-ba5690d52c90/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE