./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec4_product56.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version e7bb482b Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec4_product56.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 03daf3415808298ae6016bdc33e04662b3dd63f1cba0029f4033bbf040a042d2 --- Real Ultimate output --- This is Ultimate 0.2.3-dev-e7bb482 [2023-11-06 22:06:35,975 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-06 22:06:36,086 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-06 22:06:36,098 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-06 22:06:36,104 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-06 22:06:36,132 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-06 22:06:36,132 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-06 22:06:36,133 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-06 22:06:36,134 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-06 22:06:36,134 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-06 22:06:36,135 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-06 22:06:36,136 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-06 22:06:36,136 INFO L153 SettingsManager]: * Use SBE=true [2023-11-06 22:06:36,137 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-06 22:06:36,138 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-06 22:06:36,138 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-06 22:06:36,139 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-06 22:06:36,143 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-06 22:06:36,144 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-06 22:06:36,144 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-06 22:06:36,153 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-06 22:06:36,153 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-06 22:06:36,154 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-06 22:06:36,154 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-06 22:06:36,155 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-06 22:06:36,155 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-06 22:06:36,156 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-06 22:06:36,157 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-06 22:06:36,157 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 22:06:36,157 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-06 22:06:36,158 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-06 22:06:36,159 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2023-11-06 22:06:36,159 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-06 22:06:36,160 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-06 22:06:36,160 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-06 22:06:36,160 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-06 22:06:36,160 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-06 22:06:36,161 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-06 22:06:36,161 INFO L153 SettingsManager]: * Independence relation used for large block encoding in concurrent analysis=SYNTACTIC [2023-11-06 22:06:36,161 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 03daf3415808298ae6016bdc33e04662b3dd63f1cba0029f4033bbf040a042d2 [2023-11-06 22:06:36,443 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-06 22:06:36,465 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-06 22:06:36,468 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-06 22:06:36,469 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-06 22:06:36,470 INFO L274 PluginConnector]: CDTParser initialized [2023-11-06 22:06:36,471 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/../../sv-benchmarks/c/product-lines/minepump_spec4_product56.cil.c [2023-11-06 22:06:39,600 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-06 22:06:39,859 INFO L384 CDTParser]: Found 1 translation units. [2023-11-06 22:06:39,870 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/sv-benchmarks/c/product-lines/minepump_spec4_product56.cil.c [2023-11-06 22:06:39,888 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/data/b9bbc1574/334a79284fe544469616d2a07bd61e4a/FLAG8838d0b85 [2023-11-06 22:06:39,910 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/data/b9bbc1574/334a79284fe544469616d2a07bd61e4a [2023-11-06 22:06:39,913 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-06 22:06:39,915 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-06 22:06:39,916 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-06 22:06:39,916 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-06 22:06:39,927 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-06 22:06:39,930 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 10:06:39" (1/1) ... [2023-11-06 22:06:39,932 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@63f89a15 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:39, skipping insertion in model container [2023-11-06 22:06:39,932 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 10:06:39" (1/1) ... [2023-11-06 22:06:40,017 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-06 22:06:40,328 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/sv-benchmarks/c/product-lines/minepump_spec4_product56.cil.c[17338,17351] [2023-11-06 22:06:40,360 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 22:06:40,375 INFO L202 MainTranslator]: Completed pre-run [2023-11-06 22:06:40,387 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [49] [2023-11-06 22:06:40,389 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [308] [2023-11-06 22:06:40,389 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [674] [2023-11-06 22:06:40,390 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [746] [2023-11-06 22:06:40,390 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [774] [2023-11-06 22:06:40,390 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [873] [2023-11-06 22:06:40,391 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [882] [2023-11-06 22:06:40,391 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [985] [2023-11-06 22:06:40,475 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/sv-benchmarks/c/product-lines/minepump_spec4_product56.cil.c[17338,17351] [2023-11-06 22:06:40,481 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 22:06:40,502 INFO L206 MainTranslator]: Completed translation [2023-11-06 22:06:40,503 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40 WrapperNode [2023-11-06 22:06:40,503 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-06 22:06:40,504 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-06 22:06:40,505 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-06 22:06:40,505 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-06 22:06:40,513 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,528 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,560 INFO L138 Inliner]: procedures = 58, calls = 105, calls flagged for inlining = 26, calls inlined = 23, statements flattened = 236 [2023-11-06 22:06:40,560 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-06 22:06:40,561 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-06 22:06:40,561 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-06 22:06:40,561 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-06 22:06:40,571 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,572 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,575 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,575 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,584 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,590 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,592 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,594 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,597 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-06 22:06:40,598 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-06 22:06:40,598 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-06 22:06:40,599 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-06 22:06:40,600 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (1/1) ... [2023-11-06 22:06:40,606 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 22:06:40,634 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:06:40,657 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-06 22:06:40,688 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-06 22:06:40,706 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-06 22:06:40,707 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-06 22:06:40,707 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-06 22:06:40,707 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-06 22:06:40,707 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-06 22:06:40,707 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-06 22:06:40,708 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-06 22:06:40,708 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 22:06:40,708 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 22:06:40,708 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-06 22:06:40,708 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-06 22:06:40,709 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__lowWaterSensor [2023-11-06 22:06:40,709 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__lowWaterSensor [2023-11-06 22:06:40,709 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-06 22:06:40,709 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-06 22:06:40,710 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2023-11-06 22:06:40,710 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-06 22:06:40,710 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-06 22:06:40,710 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-06 22:06:40,710 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-06 22:06:40,790 INFO L236 CfgBuilder]: Building ICFG [2023-11-06 22:06:40,792 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-06 22:06:41,144 INFO L277 CfgBuilder]: Performing block encoding [2023-11-06 22:06:41,153 INFO L297 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-06 22:06:41,153 INFO L302 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-06 22:06:41,156 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 10:06:41 BoogieIcfgContainer [2023-11-06 22:06:41,156 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-06 22:06:41,159 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-06 22:06:41,159 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-06 22:06:41,163 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-06 22:06:41,163 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 06.11 10:06:39" (1/3) ... [2023-11-06 22:06:41,164 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@79471ce5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 10:06:41, skipping insertion in model container [2023-11-06 22:06:41,164 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 10:06:40" (2/3) ... [2023-11-06 22:06:41,165 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@79471ce5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 10:06:41, skipping insertion in model container [2023-11-06 22:06:41,165 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 10:06:41" (3/3) ... [2023-11-06 22:06:41,166 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product56.cil.c [2023-11-06 22:06:41,193 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-06 22:06:41,193 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-06 22:06:41,276 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-06 22:06:41,282 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@43a4140f, mLbeIndependenceSettings=[IndependenceType=SYNTACTIC, AbstractionType=NONE, UseConditional=, UseSemiCommutativity=, Solver=, SolverTimeout=] [2023-11-06 22:06:41,282 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-06 22:06:41,303 INFO L276 IsEmpty]: Start isEmpty. Operand has 100 states, 75 states have (on average 1.3866666666666667) internal successors, (104), 86 states have internal predecessors, (104), 15 states have call successors, (15), 8 states have call predecessors, (15), 8 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2023-11-06 22:06:41,311 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2023-11-06 22:06:41,311 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:41,312 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:41,312 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:41,317 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:41,317 INFO L85 PathProgramCache]: Analyzing trace with hash 975776348, now seen corresponding path program 1 times [2023-11-06 22:06:41,326 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:41,327 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1763378349] [2023-11-06 22:06:41,327 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:41,328 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:41,439 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:41,506 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:41,507 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:41,507 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1763378349] [2023-11-06 22:06:41,508 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1763378349] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:41,508 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:06:41,509 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-06 22:06:41,510 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1881162178] [2023-11-06 22:06:41,515 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:41,518 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-06 22:06:41,519 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:41,544 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-06 22:06:41,545 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 22:06:41,548 INFO L87 Difference]: Start difference. First operand has 100 states, 75 states have (on average 1.3866666666666667) internal successors, (104), 86 states have internal predecessors, (104), 15 states have call successors, (15), 8 states have call predecessors, (15), 8 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:41,595 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:41,595 INFO L93 Difference]: Finished difference Result 192 states and 263 transitions. [2023-11-06 22:06:41,600 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-06 22:06:41,601 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2023-11-06 22:06:41,602 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:41,612 INFO L225 Difference]: With dead ends: 192 [2023-11-06 22:06:41,612 INFO L226 Difference]: Without dead ends: 91 [2023-11-06 22:06:41,617 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 22:06:41,621 INFO L413 NwaCegarLoop]: 128 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 128 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:41,622 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 128 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:06:41,642 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 91 states. [2023-11-06 22:06:41,671 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 91 to 91. [2023-11-06 22:06:41,673 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 91 states, 68 states have (on average 1.3235294117647058) internal successors, (90), 78 states have internal predecessors, (90), 15 states have call successors, (15), 8 states have call predecessors, (15), 7 states have return successors, (14), 9 states have call predecessors, (14), 14 states have call successors, (14) [2023-11-06 22:06:41,677 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 91 states to 91 states and 119 transitions. [2023-11-06 22:06:41,678 INFO L78 Accepts]: Start accepts. Automaton has 91 states and 119 transitions. Word has length 19 [2023-11-06 22:06:41,679 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:41,679 INFO L495 AbstractCegarLoop]: Abstraction has 91 states and 119 transitions. [2023-11-06 22:06:41,680 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:41,680 INFO L276 IsEmpty]: Start isEmpty. Operand 91 states and 119 transitions. [2023-11-06 22:06:41,682 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2023-11-06 22:06:41,683 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:41,683 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:41,683 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-06 22:06:41,684 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:41,684 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:41,685 INFO L85 PathProgramCache]: Analyzing trace with hash -1543378342, now seen corresponding path program 1 times [2023-11-06 22:06:41,685 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:41,685 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [990266574] [2023-11-06 22:06:41,685 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:41,686 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:41,733 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:41,894 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:41,895 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:41,895 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [990266574] [2023-11-06 22:06:41,896 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [990266574] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:41,896 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:06:41,896 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-06 22:06:41,896 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1219921694] [2023-11-06 22:06:41,897 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:41,898 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 22:06:41,898 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:41,899 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 22:06:41,899 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:06:41,900 INFO L87 Difference]: Start difference. First operand 91 states and 119 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:41,922 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:41,922 INFO L93 Difference]: Finished difference Result 143 states and 187 transitions. [2023-11-06 22:06:41,923 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 22:06:41,923 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2023-11-06 22:06:41,924 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:41,925 INFO L225 Difference]: With dead ends: 143 [2023-11-06 22:06:41,926 INFO L226 Difference]: Without dead ends: 82 [2023-11-06 22:06:41,927 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:06:41,929 INFO L413 NwaCegarLoop]: 106 mSDtfsCounter, 17 mSDsluCounter, 84 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 21 SdHoareTripleChecker+Valid, 190 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:41,929 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [21 Valid, 190 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:06:41,931 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 82 states. [2023-11-06 22:06:41,942 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 82 to 82. [2023-11-06 22:06:41,942 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 82 states, 62 states have (on average 1.3387096774193548) internal successors, (83), 72 states have internal predecessors, (83), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 7 states have call predecessors, (12), 12 states have call successors, (12) [2023-11-06 22:06:41,945 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 82 states to 82 states and 107 transitions. [2023-11-06 22:06:41,945 INFO L78 Accepts]: Start accepts. Automaton has 82 states and 107 transitions. Word has length 20 [2023-11-06 22:06:41,945 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:41,945 INFO L495 AbstractCegarLoop]: Abstraction has 82 states and 107 transitions. [2023-11-06 22:06:41,946 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:41,946 INFO L276 IsEmpty]: Start isEmpty. Operand 82 states and 107 transitions. [2023-11-06 22:06:41,947 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2023-11-06 22:06:41,948 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:41,948 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:41,948 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-06 22:06:41,949 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:41,949 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:41,949 INFO L85 PathProgramCache]: Analyzing trace with hash 1300509367, now seen corresponding path program 1 times [2023-11-06 22:06:41,950 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:41,950 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1497184800] [2023-11-06 22:06:41,950 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:41,950 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:41,974 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:42,087 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:42,087 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:42,088 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1497184800] [2023-11-06 22:06:42,088 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1497184800] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:42,088 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:06:42,089 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 22:06:42,089 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [893415479] [2023-11-06 22:06:42,089 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:42,090 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:06:42,090 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:42,091 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:06:42,091 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 22:06:42,092 INFO L87 Difference]: Start difference. First operand 82 states and 107 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:42,221 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:42,221 INFO L93 Difference]: Finished difference Result 195 states and 258 transitions. [2023-11-06 22:06:42,222 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-06 22:06:42,222 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2023-11-06 22:06:42,223 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:42,225 INFO L225 Difference]: With dead ends: 195 [2023-11-06 22:06:42,225 INFO L226 Difference]: Without dead ends: 120 [2023-11-06 22:06:42,226 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-11-06 22:06:42,228 INFO L413 NwaCegarLoop]: 111 mSDtfsCounter, 170 mSDsluCounter, 226 mSDsCounter, 0 mSdLazyCounter, 12 mSolverCounterSat, 19 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 170 SdHoareTripleChecker+Valid, 337 SdHoareTripleChecker+Invalid, 31 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 19 IncrementalHoareTripleChecker+Valid, 12 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:42,229 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [170 Valid, 337 Invalid, 31 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [19 Valid, 12 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:06:42,230 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 120 states. [2023-11-06 22:06:42,253 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 120 to 117. [2023-11-06 22:06:42,254 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 117 states, 89 states have (on average 1.3595505617977528) internal successors, (121), 102 states have internal predecessors, (121), 16 states have call successors, (16), 11 states have call predecessors, (16), 11 states have return successors, (17), 10 states have call predecessors, (17), 16 states have call successors, (17) [2023-11-06 22:06:42,257 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 117 states to 117 states and 154 transitions. [2023-11-06 22:06:42,257 INFO L78 Accepts]: Start accepts. Automaton has 117 states and 154 transitions. Word has length 25 [2023-11-06 22:06:42,257 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:42,257 INFO L495 AbstractCegarLoop]: Abstraction has 117 states and 154 transitions. [2023-11-06 22:06:42,258 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:42,258 INFO L276 IsEmpty]: Start isEmpty. Operand 117 states and 154 transitions. [2023-11-06 22:06:42,260 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2023-11-06 22:06:42,260 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:42,260 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:42,260 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-06 22:06:42,261 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:42,261 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:42,261 INFO L85 PathProgramCache]: Analyzing trace with hash 1710585576, now seen corresponding path program 1 times [2023-11-06 22:06:42,262 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:42,262 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1395502705] [2023-11-06 22:06:42,262 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:42,262 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:42,285 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:42,528 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:42,529 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:42,529 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1395502705] [2023-11-06 22:06:42,529 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1395502705] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:42,529 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:06:42,529 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-11-06 22:06:42,530 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1887575577] [2023-11-06 22:06:42,530 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:42,530 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:06:42,530 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:42,531 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:06:42,531 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 22:06:42,531 INFO L87 Difference]: Start difference. First operand 117 states and 154 transitions. Second operand has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:42,653 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:42,654 INFO L93 Difference]: Finished difference Result 325 states and 449 transitions. [2023-11-06 22:06:42,654 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-06 22:06:42,654 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 28 [2023-11-06 22:06:42,655 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:42,666 INFO L225 Difference]: With dead ends: 325 [2023-11-06 22:06:42,666 INFO L226 Difference]: Without dead ends: 215 [2023-11-06 22:06:42,669 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2023-11-06 22:06:42,673 INFO L413 NwaCegarLoop]: 100 mSDtfsCounter, 76 mSDsluCounter, 291 mSDsCounter, 0 mSdLazyCounter, 30 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 76 SdHoareTripleChecker+Valid, 391 SdHoareTripleChecker+Invalid, 34 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 30 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:42,676 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [76 Valid, 391 Invalid, 34 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 30 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 22:06:42,679 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 215 states. [2023-11-06 22:06:42,727 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 215 to 215. [2023-11-06 22:06:42,729 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 215 states, 162 states have (on average 1.3395061728395061) internal successors, (217), 185 states have internal predecessors, (217), 32 states have call successors, (32), 22 states have call predecessors, (32), 20 states have return successors, (37), 18 states have call predecessors, (37), 32 states have call successors, (37) [2023-11-06 22:06:42,732 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 215 states to 215 states and 286 transitions. [2023-11-06 22:06:42,733 INFO L78 Accepts]: Start accepts. Automaton has 215 states and 286 transitions. Word has length 28 [2023-11-06 22:06:42,733 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:42,733 INFO L495 AbstractCegarLoop]: Abstraction has 215 states and 286 transitions. [2023-11-06 22:06:42,733 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:42,734 INFO L276 IsEmpty]: Start isEmpty. Operand 215 states and 286 transitions. [2023-11-06 22:06:42,751 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2023-11-06 22:06:42,751 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:42,751 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:42,751 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-06 22:06:42,751 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:42,752 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:42,752 INFO L85 PathProgramCache]: Analyzing trace with hash 298834221, now seen corresponding path program 1 times [2023-11-06 22:06:42,752 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:42,753 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [721450446] [2023-11-06 22:06:42,753 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:42,756 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:42,783 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:42,865 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:42,865 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:42,865 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [721450446] [2023-11-06 22:06:42,865 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [721450446] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:42,866 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:06:42,866 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-06 22:06:42,867 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [955180281] [2023-11-06 22:06:42,867 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:42,868 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 22:06:42,868 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:42,869 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 22:06:42,869 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:06:42,870 INFO L87 Difference]: Start difference. First operand 215 states and 286 transitions. Second operand has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:42,946 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:42,946 INFO L93 Difference]: Finished difference Result 473 states and 648 transitions. [2023-11-06 22:06:42,947 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 22:06:42,947 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 30 [2023-11-06 22:06:42,948 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:42,950 INFO L225 Difference]: With dead ends: 473 [2023-11-06 22:06:42,950 INFO L226 Difference]: Without dead ends: 265 [2023-11-06 22:06:42,952 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 22:06:42,957 INFO L413 NwaCegarLoop]: 108 mSDtfsCounter, 59 mSDsluCounter, 68 mSDsCounter, 0 mSdLazyCounter, 13 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 59 SdHoareTripleChecker+Valid, 176 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 13 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:42,957 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [59 Valid, 176 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 13 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:06:42,960 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 265 states. [2023-11-06 22:06:43,014 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 265 to 261. [2023-11-06 22:06:43,015 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 261 states, 201 states have (on average 1.2835820895522387) internal successors, (258), 216 states have internal predecessors, (258), 31 states have call successors, (31), 29 states have call predecessors, (31), 28 states have return successors, (47), 28 states have call predecessors, (47), 31 states have call successors, (47) [2023-11-06 22:06:43,017 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 261 states to 261 states and 336 transitions. [2023-11-06 22:06:43,017 INFO L78 Accepts]: Start accepts. Automaton has 261 states and 336 transitions. Word has length 30 [2023-11-06 22:06:43,018 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:43,018 INFO L495 AbstractCegarLoop]: Abstraction has 261 states and 336 transitions. [2023-11-06 22:06:43,018 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:43,018 INFO L276 IsEmpty]: Start isEmpty. Operand 261 states and 336 transitions. [2023-11-06 22:06:43,030 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2023-11-06 22:06:43,030 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:43,030 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:43,031 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-06 22:06:43,031 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:43,032 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:43,032 INFO L85 PathProgramCache]: Analyzing trace with hash -1545723250, now seen corresponding path program 1 times [2023-11-06 22:06:43,032 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:43,033 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1706292710] [2023-11-06 22:06:43,033 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:43,034 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:43,056 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:43,166 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 22:06:43,168 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:43,171 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:43,171 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:43,172 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1706292710] [2023-11-06 22:06:43,172 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1706292710] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:43,173 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:06:43,173 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-06 22:06:43,173 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1574544521] [2023-11-06 22:06:43,180 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:43,181 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 22:06:43,181 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:43,182 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 22:06:43,182 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-06 22:06:43,182 INFO L87 Difference]: Start difference. First operand 261 states and 336 transitions. Second operand has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:06:43,547 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:43,547 INFO L93 Difference]: Finished difference Result 309 states and 396 transitions. [2023-11-06 22:06:43,548 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2023-11-06 22:06:43,548 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 32 [2023-11-06 22:06:43,548 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:43,551 INFO L225 Difference]: With dead ends: 309 [2023-11-06 22:06:43,551 INFO L226 Difference]: Without dead ends: 307 [2023-11-06 22:06:43,553 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2023-11-06 22:06:43,556 INFO L413 NwaCegarLoop]: 69 mSDtfsCounter, 137 mSDsluCounter, 216 mSDsCounter, 0 mSdLazyCounter, 247 mSolverCounterSat, 36 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 144 SdHoareTripleChecker+Valid, 285 SdHoareTripleChecker+Invalid, 283 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 36 IncrementalHoareTripleChecker+Valid, 247 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:43,559 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [144 Valid, 285 Invalid, 283 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [36 Valid, 247 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 22:06:43,561 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 307 states. [2023-11-06 22:06:43,607 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 307 to 294. [2023-11-06 22:06:43,608 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 294 states, 226 states have (on average 1.2654867256637168) internal successors, (286), 247 states have internal predecessors, (286), 34 states have call successors, (34), 29 states have call predecessors, (34), 33 states have return successors, (57), 30 states have call predecessors, (57), 34 states have call successors, (57) [2023-11-06 22:06:43,612 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 294 states to 294 states and 377 transitions. [2023-11-06 22:06:43,612 INFO L78 Accepts]: Start accepts. Automaton has 294 states and 377 transitions. Word has length 32 [2023-11-06 22:06:43,614 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:43,614 INFO L495 AbstractCegarLoop]: Abstraction has 294 states and 377 transitions. [2023-11-06 22:06:43,615 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-06 22:06:43,615 INFO L276 IsEmpty]: Start isEmpty. Operand 294 states and 377 transitions. [2023-11-06 22:06:43,618 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2023-11-06 22:06:43,618 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:43,618 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:43,618 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-06 22:06:43,619 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:43,619 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:43,619 INFO L85 PathProgramCache]: Analyzing trace with hash -766960693, now seen corresponding path program 1 times [2023-11-06 22:06:43,619 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:43,620 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1300058572] [2023-11-06 22:06:43,620 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:43,620 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:43,643 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:43,694 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 22:06:43,698 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:43,705 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2023-11-06 22:06:43,709 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:43,718 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:43,722 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:43,756 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:43,756 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:43,757 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1300058572] [2023-11-06 22:06:43,757 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1300058572] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:43,757 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:06:43,757 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-06 22:06:43,757 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1700046527] [2023-11-06 22:06:43,758 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:43,758 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-06 22:06:43,758 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:43,759 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-06 22:06:43,759 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2023-11-06 22:06:43,759 INFO L87 Difference]: Start difference. First operand 294 states and 377 transitions. Second operand has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-06 22:06:44,155 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:44,155 INFO L93 Difference]: Finished difference Result 641 states and 835 transitions. [2023-11-06 22:06:44,156 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-06 22:06:44,156 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) Word has length 48 [2023-11-06 22:06:44,157 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:44,159 INFO L225 Difference]: With dead ends: 641 [2023-11-06 22:06:44,159 INFO L226 Difference]: Without dead ends: 354 [2023-11-06 22:06:44,161 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=43, Invalid=89, Unknown=0, NotChecked=0, Total=132 [2023-11-06 22:06:44,161 INFO L413 NwaCegarLoop]: 66 mSDtfsCounter, 142 mSDsluCounter, 253 mSDsCounter, 0 mSdLazyCounter, 312 mSolverCounterSat, 44 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 142 SdHoareTripleChecker+Valid, 319 SdHoareTripleChecker+Invalid, 356 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 44 IncrementalHoareTripleChecker+Valid, 312 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:44,162 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [142 Valid, 319 Invalid, 356 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [44 Valid, 312 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-06 22:06:44,163 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 354 states. [2023-11-06 22:06:44,199 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 354 to 324. [2023-11-06 22:06:44,200 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 324 states, 251 states have (on average 1.250996015936255) internal successors, (314), 272 states have internal predecessors, (314), 34 states have call successors, (34), 29 states have call predecessors, (34), 38 states have return successors, (64), 34 states have call predecessors, (64), 34 states have call successors, (64) [2023-11-06 22:06:44,203 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 324 states to 324 states and 412 transitions. [2023-11-06 22:06:44,203 INFO L78 Accepts]: Start accepts. Automaton has 324 states and 412 transitions. Word has length 48 [2023-11-06 22:06:44,204 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:44,204 INFO L495 AbstractCegarLoop]: Abstraction has 324 states and 412 transitions. [2023-11-06 22:06:44,204 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-06 22:06:44,204 INFO L276 IsEmpty]: Start isEmpty. Operand 324 states and 412 transitions. [2023-11-06 22:06:44,205 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2023-11-06 22:06:44,205 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:44,206 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:44,206 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-06 22:06:44,206 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:44,206 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:44,207 INFO L85 PathProgramCache]: Analyzing trace with hash 1932063404, now seen corresponding path program 1 times [2023-11-06 22:06:44,207 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:44,207 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1100013851] [2023-11-06 22:06:44,207 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:44,207 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:44,219 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:44,244 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 22:06:44,245 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:44,252 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2023-11-06 22:06:44,254 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:44,257 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:44,259 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:44,262 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:44,263 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:44,263 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1100013851] [2023-11-06 22:06:44,263 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1100013851] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:44,263 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:06:44,263 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 22:06:44,263 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [53310959] [2023-11-06 22:06:44,264 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:44,264 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:06:44,264 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:44,265 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:06:44,265 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 22:06:44,265 INFO L87 Difference]: Start difference. First operand 324 states and 412 transitions. Second operand has 5 states, 5 states have (on average 8.8) internal successors, (44), 3 states have internal predecessors, (44), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 22:06:44,577 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:44,577 INFO L93 Difference]: Finished difference Result 669 states and 847 transitions. [2023-11-06 22:06:44,577 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-11-06 22:06:44,578 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.8) internal successors, (44), 3 states have internal predecessors, (44), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 51 [2023-11-06 22:06:44,578 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:44,580 INFO L225 Difference]: With dead ends: 669 [2023-11-06 22:06:44,581 INFO L226 Difference]: Without dead ends: 352 [2023-11-06 22:06:44,582 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-11-06 22:06:44,583 INFO L413 NwaCegarLoop]: 84 mSDtfsCounter, 170 mSDsluCounter, 162 mSDsCounter, 0 mSdLazyCounter, 189 mSolverCounterSat, 40 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 173 SdHoareTripleChecker+Valid, 246 SdHoareTripleChecker+Invalid, 229 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 40 IncrementalHoareTripleChecker+Valid, 189 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:44,583 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [173 Valid, 246 Invalid, 229 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [40 Valid, 189 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 22:06:44,584 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 352 states. [2023-11-06 22:06:44,618 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 352 to 324. [2023-11-06 22:06:44,619 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 324 states, 251 states have (on average 1.2430278884462151) internal successors, (312), 272 states have internal predecessors, (312), 34 states have call successors, (34), 29 states have call predecessors, (34), 38 states have return successors, (60), 34 states have call predecessors, (60), 34 states have call successors, (60) [2023-11-06 22:06:44,622 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 324 states to 324 states and 406 transitions. [2023-11-06 22:06:44,622 INFO L78 Accepts]: Start accepts. Automaton has 324 states and 406 transitions. Word has length 51 [2023-11-06 22:06:44,622 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:44,622 INFO L495 AbstractCegarLoop]: Abstraction has 324 states and 406 transitions. [2023-11-06 22:06:44,623 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.8) internal successors, (44), 3 states have internal predecessors, (44), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 22:06:44,623 INFO L276 IsEmpty]: Start isEmpty. Operand 324 states and 406 transitions. [2023-11-06 22:06:44,624 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2023-11-06 22:06:44,624 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:44,624 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:44,624 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-06 22:06:44,624 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:44,625 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:44,625 INFO L85 PathProgramCache]: Analyzing trace with hash -1788029047, now seen corresponding path program 1 times [2023-11-06 22:06:44,625 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:44,625 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [540214538] [2023-11-06 22:06:44,625 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:44,626 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:44,637 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:44,714 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 22:06:44,715 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:44,722 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2023-11-06 22:06:44,725 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:44,762 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:44,765 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:44,807 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:44,807 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:44,807 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [540214538] [2023-11-06 22:06:44,808 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [540214538] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:44,808 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:06:44,808 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2023-11-06 22:06:44,808 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1365714569] [2023-11-06 22:06:44,808 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:44,810 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-06 22:06:44,810 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:44,810 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-06 22:06:44,811 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2023-11-06 22:06:44,811 INFO L87 Difference]: Start difference. First operand 324 states and 406 transitions. Second operand has 8 states, 8 states have (on average 5.125) internal successors, (41), 6 states have internal predecessors, (41), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-06 22:06:45,186 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:45,187 INFO L93 Difference]: Finished difference Result 634 states and 812 transitions. [2023-11-06 22:06:45,187 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2023-11-06 22:06:45,187 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 5.125) internal successors, (41), 6 states have internal predecessors, (41), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) Word has length 48 [2023-11-06 22:06:45,189 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:45,191 INFO L225 Difference]: With dead ends: 634 [2023-11-06 22:06:45,191 INFO L226 Difference]: Without dead ends: 317 [2023-11-06 22:06:45,193 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=42, Invalid=114, Unknown=0, NotChecked=0, Total=156 [2023-11-06 22:06:45,195 INFO L413 NwaCegarLoop]: 60 mSDtfsCounter, 199 mSDsluCounter, 248 mSDsCounter, 0 mSdLazyCounter, 346 mSolverCounterSat, 63 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 199 SdHoareTripleChecker+Valid, 308 SdHoareTripleChecker+Invalid, 409 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 63 IncrementalHoareTripleChecker+Valid, 346 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:45,196 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [199 Valid, 308 Invalid, 409 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [63 Valid, 346 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-06 22:06:45,196 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 317 states. [2023-11-06 22:06:45,231 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 317 to 266. [2023-11-06 22:06:45,232 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 266 states, 206 states have (on average 1.2378640776699028) internal successors, (255), 223 states have internal predecessors, (255), 29 states have call successors, (29), 25 states have call predecessors, (29), 30 states have return successors, (46), 27 states have call predecessors, (46), 29 states have call successors, (46) [2023-11-06 22:06:45,235 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 266 states to 266 states and 330 transitions. [2023-11-06 22:06:45,236 INFO L78 Accepts]: Start accepts. Automaton has 266 states and 330 transitions. Word has length 48 [2023-11-06 22:06:45,236 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:45,236 INFO L495 AbstractCegarLoop]: Abstraction has 266 states and 330 transitions. [2023-11-06 22:06:45,236 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 5.125) internal successors, (41), 6 states have internal predecessors, (41), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-06 22:06:45,236 INFO L276 IsEmpty]: Start isEmpty. Operand 266 states and 330 transitions. [2023-11-06 22:06:45,238 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2023-11-06 22:06:45,238 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:45,238 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:45,238 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-11-06 22:06:45,238 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:45,239 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:45,239 INFO L85 PathProgramCache]: Analyzing trace with hash 512793543, now seen corresponding path program 1 times [2023-11-06 22:06:45,239 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:45,239 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [319745561] [2023-11-06 22:06:45,239 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:45,239 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:45,258 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:45,393 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 22:06:45,394 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:45,401 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2023-11-06 22:06:45,404 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:45,412 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:45,415 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:45,435 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:45,435 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:45,436 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [319745561] [2023-11-06 22:06:45,436 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [319745561] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:45,436 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 22:06:45,436 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-06 22:06:45,436 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [317913379] [2023-11-06 22:06:45,436 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:45,437 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-06 22:06:45,437 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:45,438 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-06 22:06:45,438 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2023-11-06 22:06:45,438 INFO L87 Difference]: Start difference. First operand 266 states and 330 transitions. Second operand has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-06 22:06:46,004 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:46,005 INFO L93 Difference]: Finished difference Result 591 states and 775 transitions. [2023-11-06 22:06:46,005 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2023-11-06 22:06:46,006 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) Word has length 48 [2023-11-06 22:06:46,007 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:46,010 INFO L225 Difference]: With dead ends: 591 [2023-11-06 22:06:46,010 INFO L226 Difference]: Without dead ends: 405 [2023-11-06 22:06:46,011 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 27 GetRequests, 8 SyntacticMatches, 2 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 58 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=106, Invalid=236, Unknown=0, NotChecked=0, Total=342 [2023-11-06 22:06:46,012 INFO L413 NwaCegarLoop]: 93 mSDtfsCounter, 214 mSDsluCounter, 336 mSDsCounter, 0 mSdLazyCounter, 433 mSolverCounterSat, 61 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 216 SdHoareTripleChecker+Valid, 429 SdHoareTripleChecker+Invalid, 494 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 61 IncrementalHoareTripleChecker+Valid, 433 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:46,013 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [216 Valid, 429 Invalid, 494 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [61 Valid, 433 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-06 22:06:46,014 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 405 states. [2023-11-06 22:06:46,077 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 405 to 394. [2023-11-06 22:06:46,078 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 394 states, 306 states have (on average 1.2189542483660132) internal successors, (373), 328 states have internal predecessors, (373), 43 states have call successors, (43), 38 states have call predecessors, (43), 44 states have return successors, (81), 44 states have call predecessors, (81), 43 states have call successors, (81) [2023-11-06 22:06:46,081 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 394 states to 394 states and 497 transitions. [2023-11-06 22:06:46,081 INFO L78 Accepts]: Start accepts. Automaton has 394 states and 497 transitions. Word has length 48 [2023-11-06 22:06:46,082 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:46,082 INFO L495 AbstractCegarLoop]: Abstraction has 394 states and 497 transitions. [2023-11-06 22:06:46,082 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-06 22:06:46,082 INFO L276 IsEmpty]: Start isEmpty. Operand 394 states and 497 transitions. [2023-11-06 22:06:46,084 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 92 [2023-11-06 22:06:46,085 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:46,085 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:46,085 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2023-11-06 22:06:46,086 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:46,086 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:46,086 INFO L85 PathProgramCache]: Analyzing trace with hash -1953453445, now seen corresponding path program 1 times [2023-11-06 22:06:46,086 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:46,087 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [119593310] [2023-11-06 22:06:46,087 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:46,087 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:46,106 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:46,229 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 22:06:46,231 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:46,241 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 22:06:46,245 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:46,264 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 22:06:46,267 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:46,275 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:46,278 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:46,287 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2023-11-06 22:06:46,290 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:46,295 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 22:06:46,296 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:46,297 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:46,298 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:46,300 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 12 proven. 9 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-11-06 22:06:46,300 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:46,300 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [119593310] [2023-11-06 22:06:46,300 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [119593310] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 22:06:46,301 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1465667171] [2023-11-06 22:06:46,301 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:46,301 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:06:46,301 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:06:46,307 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 22:06:46,331 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-06 22:06:46,428 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:46,444 INFO L262 TraceCheckSpWp]: Trace formula consists of 318 conjuncts, 8 conjunts are in the unsatisfiable core [2023-11-06 22:06:46,452 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 22:06:46,607 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 17 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 22:06:46,608 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-06 22:06:46,777 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 13 proven. 8 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-11-06 22:06:46,777 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1465667171] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-06 22:06:46,777 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-06 22:06:46,777 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 9 [2023-11-06 22:06:46,778 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [240656412] [2023-11-06 22:06:46,778 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-06 22:06:46,778 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2023-11-06 22:06:46,779 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:46,779 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2023-11-06 22:06:46,779 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=18, Invalid=54, Unknown=0, NotChecked=0, Total=72 [2023-11-06 22:06:46,780 INFO L87 Difference]: Start difference. First operand 394 states and 497 transitions. Second operand has 9 states, 9 states have (on average 10.0) internal successors, (90), 6 states have internal predecessors, (90), 3 states have call successors, (17), 6 states have call predecessors, (17), 3 states have return successors, (10), 3 states have call predecessors, (10), 2 states have call successors, (10) [2023-11-06 22:06:47,626 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:47,626 INFO L93 Difference]: Finished difference Result 938 states and 1245 transitions. [2023-11-06 22:06:47,627 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2023-11-06 22:06:47,628 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 10.0) internal successors, (90), 6 states have internal predecessors, (90), 3 states have call successors, (17), 6 states have call predecessors, (17), 3 states have return successors, (10), 3 states have call predecessors, (10), 2 states have call successors, (10) Word has length 91 [2023-11-06 22:06:47,628 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:47,632 INFO L225 Difference]: With dead ends: 938 [2023-11-06 22:06:47,632 INFO L226 Difference]: Without dead ends: 624 [2023-11-06 22:06:47,634 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 230 GetRequests, 195 SyntacticMatches, 8 SemanticMatches, 27 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 203 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=227, Invalid=585, Unknown=0, NotChecked=0, Total=812 [2023-11-06 22:06:47,635 INFO L413 NwaCegarLoop]: 88 mSDtfsCounter, 429 mSDsluCounter, 401 mSDsCounter, 0 mSdLazyCounter, 507 mSolverCounterSat, 142 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 435 SdHoareTripleChecker+Valid, 489 SdHoareTripleChecker+Invalid, 649 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 142 IncrementalHoareTripleChecker+Valid, 507 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:47,635 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [435 Valid, 489 Invalid, 649 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [142 Valid, 507 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2023-11-06 22:06:47,637 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 624 states. [2023-11-06 22:06:47,695 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 624 to 540. [2023-11-06 22:06:47,697 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 540 states, 415 states have (on average 1.2265060240963856) internal successors, (509), 447 states have internal predecessors, (509), 62 states have call successors, (62), 54 states have call predecessors, (62), 62 states have return successors, (124), 59 states have call predecessors, (124), 62 states have call successors, (124) [2023-11-06 22:06:47,701 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 540 states to 540 states and 695 transitions. [2023-11-06 22:06:47,701 INFO L78 Accepts]: Start accepts. Automaton has 540 states and 695 transitions. Word has length 91 [2023-11-06 22:06:47,701 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:47,702 INFO L495 AbstractCegarLoop]: Abstraction has 540 states and 695 transitions. [2023-11-06 22:06:47,702 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 10.0) internal successors, (90), 6 states have internal predecessors, (90), 3 states have call successors, (17), 6 states have call predecessors, (17), 3 states have return successors, (10), 3 states have call predecessors, (10), 2 states have call successors, (10) [2023-11-06 22:06:47,702 INFO L276 IsEmpty]: Start isEmpty. Operand 540 states and 695 transitions. [2023-11-06 22:06:47,705 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 135 [2023-11-06 22:06:47,705 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:47,705 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:47,724 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-06 22:06:47,924 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2023-11-06 22:06:47,925 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:47,925 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:47,925 INFO L85 PathProgramCache]: Analyzing trace with hash -91360441, now seen corresponding path program 2 times [2023-11-06 22:06:47,925 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:47,926 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1545711131] [2023-11-06 22:06:47,926 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:47,926 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:47,961 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,108 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 22:06:48,109 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,122 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 22:06:48,126 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,144 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 22:06:48,149 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,170 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:48,172 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,182 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 57 [2023-11-06 22:06:48,188 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,262 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:06:48,266 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,336 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 22:06:48,338 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,342 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:48,343 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,344 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 109 [2023-11-06 22:06:48,346 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,352 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 22:06:48,355 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,358 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:48,358 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:48,364 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 52 proven. 23 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2023-11-06 22:06:48,365 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:48,365 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1545711131] [2023-11-06 22:06:48,365 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1545711131] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 22:06:48,365 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2012863657] [2023-11-06 22:06:48,366 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2023-11-06 22:06:48,366 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:06:48,366 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:06:48,367 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 22:06:48,387 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-06 22:06:48,502 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2023-11-06 22:06:48,503 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2023-11-06 22:06:48,505 INFO L262 TraceCheckSpWp]: Trace formula consists of 429 conjuncts, 10 conjunts are in the unsatisfiable core [2023-11-06 22:06:48,511 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 22:06:48,648 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 78 proven. 0 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2023-11-06 22:06:48,648 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 22:06:48,648 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2012863657] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:48,648 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 22:06:48,648 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [11] total 14 [2023-11-06 22:06:48,649 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [124503494] [2023-11-06 22:06:48,649 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:48,649 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 22:06:48,649 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:48,650 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 22:06:48,651 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=34, Invalid=148, Unknown=0, NotChecked=0, Total=182 [2023-11-06 22:06:48,651 INFO L87 Difference]: Start difference. First operand 540 states and 695 transitions. Second operand has 6 states, 6 states have (on average 16.833333333333332) internal successors, (101), 6 states have internal predecessors, (101), 3 states have call successors, (11), 4 states have call predecessors, (11), 3 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2023-11-06 22:06:49,046 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:49,046 INFO L93 Difference]: Finished difference Result 1431 states and 1922 transitions. [2023-11-06 22:06:49,047 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2023-11-06 22:06:49,047 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 16.833333333333332) internal successors, (101), 6 states have internal predecessors, (101), 3 states have call successors, (11), 4 states have call predecessors, (11), 3 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) Word has length 134 [2023-11-06 22:06:49,047 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:49,054 INFO L225 Difference]: With dead ends: 1431 [2023-11-06 22:06:49,054 INFO L226 Difference]: Without dead ends: 970 [2023-11-06 22:06:49,057 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 173 GetRequests, 153 SyntacticMatches, 3 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 44 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=74, Invalid=268, Unknown=0, NotChecked=0, Total=342 [2023-11-06 22:06:49,057 INFO L413 NwaCegarLoop]: 180 mSDtfsCounter, 204 mSDsluCounter, 436 mSDsCounter, 0 mSdLazyCounter, 146 mSolverCounterSat, 24 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 206 SdHoareTripleChecker+Valid, 616 SdHoareTripleChecker+Invalid, 170 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 24 IncrementalHoareTripleChecker+Valid, 146 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:49,058 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [206 Valid, 616 Invalid, 170 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [24 Valid, 146 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 22:06:49,060 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 970 states. [2023-11-06 22:06:49,167 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 970 to 947. [2023-11-06 22:06:49,169 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 947 states, 729 states have (on average 1.2263374485596708) internal successors, (894), 776 states have internal predecessors, (894), 106 states have call successors, (106), 95 states have call predecessors, (106), 111 states have return successors, (202), 108 states have call predecessors, (202), 106 states have call successors, (202) [2023-11-06 22:06:49,176 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 947 states to 947 states and 1202 transitions. [2023-11-06 22:06:49,177 INFO L78 Accepts]: Start accepts. Automaton has 947 states and 1202 transitions. Word has length 134 [2023-11-06 22:06:49,177 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:49,177 INFO L495 AbstractCegarLoop]: Abstraction has 947 states and 1202 transitions. [2023-11-06 22:06:49,177 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 16.833333333333332) internal successors, (101), 6 states have internal predecessors, (101), 3 states have call successors, (11), 4 states have call predecessors, (11), 3 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2023-11-06 22:06:49,178 INFO L276 IsEmpty]: Start isEmpty. Operand 947 states and 1202 transitions. [2023-11-06 22:06:49,181 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 135 [2023-11-06 22:06:49,182 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 22:06:49,183 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:49,194 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-11-06 22:06:49,389 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2023-11-06 22:06:49,389 INFO L420 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 22:06:49,389 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 22:06:49,389 INFO L85 PathProgramCache]: Analyzing trace with hash -145753339, now seen corresponding path program 1 times [2023-11-06 22:06:49,390 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 22:06:49,390 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [684058696] [2023-11-06 22:06:49,390 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:49,390 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 22:06:49,414 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,496 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 22:06:49,498 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,505 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 22:06:49,508 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,516 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 22:06:49,518 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,521 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:49,523 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,527 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 57 [2023-11-06 22:06:49,535 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,558 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 22:06:49,560 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,594 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 22:06:49,595 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,597 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:49,597 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,599 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 109 [2023-11-06 22:06:49,602 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,606 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 22:06:49,607 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,608 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 22:06:49,609 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,612 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 45 proven. 6 refuted. 0 times theorem prover too weak. 42 trivial. 0 not checked. [2023-11-06 22:06:49,612 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 22:06:49,612 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [684058696] [2023-11-06 22:06:49,612 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [684058696] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 22:06:49,613 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [220665732] [2023-11-06 22:06:49,613 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 22:06:49,613 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 22:06:49,613 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 22:06:49,614 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 22:06:49,639 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-11-06 22:06:49,754 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 22:06:49,757 INFO L262 TraceCheckSpWp]: Trace formula consists of 430 conjuncts, 5 conjunts are in the unsatisfiable core [2023-11-06 22:06:49,769 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 22:06:49,819 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 64 proven. 0 refuted. 0 times theorem prover too weak. 29 trivial. 0 not checked. [2023-11-06 22:06:49,819 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 22:06:49,819 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [220665732] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 22:06:49,819 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 22:06:49,819 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [8] total 8 [2023-11-06 22:06:49,820 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1825287178] [2023-11-06 22:06:49,820 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 22:06:49,820 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 22:06:49,820 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 22:06:49,821 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 22:06:49,821 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2023-11-06 22:06:49,821 INFO L87 Difference]: Start difference. First operand 947 states and 1202 transitions. Second operand has 5 states, 5 states have (on average 18.6) internal successors, (93), 5 states have internal predecessors, (93), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) [2023-11-06 22:06:49,903 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 22:06:49,904 INFO L93 Difference]: Finished difference Result 1310 states and 1649 transitions. [2023-11-06 22:06:49,904 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-06 22:06:49,904 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 18.6) internal successors, (93), 5 states have internal predecessors, (93), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) Word has length 134 [2023-11-06 22:06:49,905 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 22:06:49,905 INFO L225 Difference]: With dead ends: 1310 [2023-11-06 22:06:49,905 INFO L226 Difference]: Without dead ends: 0 [2023-11-06 22:06:49,909 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 165 GetRequests, 157 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=23, Invalid=67, Unknown=0, NotChecked=0, Total=90 [2023-11-06 22:06:49,909 INFO L413 NwaCegarLoop]: 105 mSDtfsCounter, 6 mSDsluCounter, 299 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 6 SdHoareTripleChecker+Valid, 404 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 22:06:49,910 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [6 Valid, 404 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 22:06:49,910 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-06 22:06:49,910 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-06 22:06:49,911 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 22:06:49,911 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-06 22:06:49,911 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 134 [2023-11-06 22:06:49,911 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 22:06:49,911 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-06 22:06:49,912 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 18.6) internal successors, (93), 5 states have internal predecessors, (93), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) [2023-11-06 22:06:49,912 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-06 22:06:49,912 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-06 22:06:49,914 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-06 22:06:49,926 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2023-11-06 22:06:50,122 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2023-11-06 22:06:50,124 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-06 22:06:53,051 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 183 190) no Hoare annotation was computed. [2023-11-06 22:06:53,052 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 183 190) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (< ~waterLevel~0 1) (= 0 ~systemActive~0)) [2023-11-06 22:06:53,052 INFO L899 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 183 190) no Hoare annotation was computed. [2023-11-06 22:06:53,052 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 90 96) no Hoare annotation was computed. [2023-11-06 22:06:53,053 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 90 96) the Hoare annotation is: true [2023-11-06 22:06:53,053 INFO L899 garLoopResultBuilder]: For program point L913-1(lines 909 920) no Hoare annotation was computed. [2023-11-06 22:06:53,053 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 909 920) the Hoare annotation is: true [2023-11-06 22:06:53,053 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 909 920) no Hoare annotation was computed. [2023-11-06 22:06:53,053 INFO L902 garLoopResultBuilder]: At program point L801(lines 776 805) the Hoare annotation is: true [2023-11-06 22:06:53,053 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 776 805) no Hoare annotation was computed. [2023-11-06 22:06:53,054 INFO L899 garLoopResultBuilder]: For program point L797(line 797) no Hoare annotation was computed. [2023-11-06 22:06:53,054 INFO L899 garLoopResultBuilder]: For program point L790(lines 790 794) no Hoare annotation was computed. [2023-11-06 22:06:53,054 INFO L902 garLoopResultBuilder]: At program point L790-1(lines 790 794) the Hoare annotation is: true [2023-11-06 22:06:53,054 INFO L899 garLoopResultBuilder]: For program point L787(line 787) no Hoare annotation was computed. [2023-11-06 22:06:53,054 INFO L902 garLoopResultBuilder]: At program point L786-2(lines 786 800) the Hoare annotation is: true [2023-11-06 22:06:53,054 INFO L902 garLoopResultBuilder]: At program point L782(line 782) the Hoare annotation is: true [2023-11-06 22:06:53,055 INFO L899 garLoopResultBuilder]: For program point L782-1(line 782) no Hoare annotation was computed. [2023-11-06 22:06:53,055 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 776 805) the Hoare annotation is: true [2023-11-06 22:06:53,055 INFO L899 garLoopResultBuilder]: For program point L878(line 878) no Hoare annotation was computed. [2023-11-06 22:06:53,055 INFO L899 garLoopResultBuilder]: For program point L77-1(lines 77 83) no Hoare annotation was computed. [2023-11-06 22:06:53,055 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 66 89) no Hoare annotation was computed. [2023-11-06 22:06:53,055 INFO L895 garLoopResultBuilder]: At program point L164(line 164) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 22:06:53,056 INFO L895 garLoopResultBuilder]: At program point L160(line 160) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 22:06:53,056 INFO L895 garLoopResultBuilder]: At program point getWaterLevel_returnLabel#1(lines 953 961) the Hoare annotation is: (let ((.cse4 (<= 2 ~waterLevel~0)) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse5 (<= 2 |timeShift_getWaterLevel_#res#1|))) (let ((.cse1 (= ~pumpRunning~0 0)) (.cse7 (<= 1 |timeShift_getWaterLevel_#res#1|)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (< |old(~waterLevel~0)| 2)) (.cse3 (and .cse4 .cse2 .cse5)) (.cse8 (= 0 ~systemActive~0))) (and (or .cse0 (< |old(~waterLevel~0)| 1) (and .cse1 .cse2) .cse3) (or (and .cse4 .cse5) .cse6 (and .cse1 (<= 1 ~waterLevel~0) .cse7) .cse8) (or .cse0 .cse6 (and .cse1 .cse7) (not .cse8)) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (= |timeShift_getWaterLevel_#res#1| 1)) (or .cse0 .cse6 .cse3 .cse8)))) [2023-11-06 22:06:53,057 INFO L895 garLoopResultBuilder]: At program point L169(line 169) the Hoare annotation is: (let ((.cse2 (= |old(~pumpRunning~0)| 0))) (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (not .cse2)) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 (= ~waterLevel~0 1))) (or (< |old(~waterLevel~0)| 2) (and .cse1 .cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse3) (or .cse0 (< |old(~waterLevel~0)| 1) (not .cse3))))) [2023-11-06 22:06:53,057 INFO L895 garLoopResultBuilder]: At program point L169-1(lines 150 174) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (< |old(~waterLevel~0)| 1)) (.cse5 (<= 2 ~waterLevel~0)) (.cse2 (= 0 ~systemActive~0)) (.cse3 (= ~pumpRunning~0 0))) (and (or .cse0 .cse1 (not .cse2)) (let ((.cse4 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse0 .cse1 (and .cse3 .cse4) (and .cse5 .cse4))) (or .cse5 (< |old(~waterLevel~0)| 2) .cse2 (and .cse3 (<= 1 ~waterLevel~0))))) [2023-11-06 22:06:53,057 INFO L899 garLoopResultBuilder]: For program point L70-1(lines 69 88) no Hoare annotation was computed. [2023-11-06 22:06:53,057 INFO L895 garLoopResultBuilder]: At program point __automaton_fail_returnLabel#1(lines 874 881) the Hoare annotation is: (and (or (< |old(~waterLevel~0)| 2) (= 0 ~systemActive~0)) (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1))) [2023-11-06 22:06:53,058 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 66 89) the Hoare annotation is: (let ((.cse0 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1) (and (= ~pumpRunning~0 0) .cse0)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0) (= 0 ~systemActive~0)))) [2023-11-06 22:06:53,058 INFO L899 garLoopResultBuilder]: For program point L158(lines 158 166) no Hoare annotation was computed. [2023-11-06 22:06:53,058 INFO L899 garLoopResultBuilder]: For program point L154(lines 154 171) no Hoare annotation was computed. [2023-11-06 22:06:53,058 INFO L899 garLoopResultBuilder]: For program point L889(lines 889 893) no Hoare annotation was computed. [2023-11-06 22:06:53,058 INFO L899 garLoopResultBuilder]: For program point L761(lines 761 767) no Hoare annotation was computed. [2023-11-06 22:06:53,059 INFO L895 garLoopResultBuilder]: At program point L889-2(lines 885 896) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 22:06:53,059 INFO L899 garLoopResultBuilder]: For program point L757(lines 757 770) no Hoare annotation was computed. [2023-11-06 22:06:53,059 INFO L895 garLoopResultBuilder]: At program point L757-1(lines 749 773) the Hoare annotation is: (let ((.cse1 (not (= |old(~waterLevel~0)| 1))) (.cse4 (<= 2 |timeShift_getWaterLevel_#res#1|)) (.cse5 (<= 2 |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1|)) (.cse6 (< |old(~waterLevel~0)| 2)) (.cse2 (= ~pumpRunning~0 0)) (.cse8 (<= 1 |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1|)) (.cse9 (<= 1 |timeShift_getWaterLevel_#res#1|)) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (and (= |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1| 1) (= |timeShift_getWaterLevel_#res#1| 1))) (or .cse0 .cse1 (and .cse2 (= ~waterLevel~0 1))) (or .cse0 (and .cse3 .cse4 .cse5) .cse6 .cse7) (or (and .cse2 .cse8 (<= 1 ~waterLevel~0) .cse9) (and (<= 2 ~waterLevel~0) .cse4 .cse5) .cse6 .cse7) (or (and .cse2 .cse8 .cse9 .cse3) .cse0 (< |old(~waterLevel~0)| 1) (not .cse7)))) [2023-11-06 22:06:53,060 INFO L895 garLoopResultBuilder]: At program point isMethaneLevelCritical_returnLabel#1(lines 921 929) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 22:06:53,060 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 66 89) no Hoare annotation was computed. [2023-11-06 22:06:53,060 INFO L895 garLoopResultBuilder]: At program point isMethaneAlarm_returnLabel#1(lines 191 201) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 22:06:53,060 INFO L895 garLoopResultBuilder]: At program point isPumpRunning_returnLabel#1(lines 202 210) the Hoare annotation is: (and (or (< |old(~waterLevel~0)| 2) (= 0 ~systemActive~0)) (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1))) [2023-11-06 22:06:53,060 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 878) no Hoare annotation was computed. [2023-11-06 22:06:53,061 INFO L895 garLoopResultBuilder]: At program point L700(line 700) the Hoare annotation is: (let ((.cse2 (<= 2 ~waterLevel~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (= |ULTIMATE.start_main_~tmp~10#1| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 .cse2 .cse3 .cse4 (not (= 0 ~systemActive~0))) (and .cse0 .cse1 .cse3 (= ~waterLevel~0 1) .cse4))) [2023-11-06 22:06:53,061 INFO L895 garLoopResultBuilder]: At program point startSystem_returnLabel#1(lines 300 307) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~10#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and (= ~pumpRunning~0 0) .cse0 .cse1 (<= 1 ~waterLevel~0) .cse2 .cse3))) [2023-11-06 22:06:53,061 INFO L902 garLoopResultBuilder]: At program point runTest_returnLabel#1(lines 837 846) the Hoare annotation is: true [2023-11-06 22:06:53,061 INFO L895 garLoopResultBuilder]: At program point select_features_returnLabel#1(lines 997 1003) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 22:06:53,061 INFO L902 garLoopResultBuilder]: At program point main_returnLabel#1(lines 850 872) the Hoare annotation is: true [2023-11-06 22:06:53,062 INFO L895 garLoopResultBuilder]: At program point L738(lines 687 739) the Hoare annotation is: false [2023-11-06 22:06:53,062 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2023-11-06 22:06:53,062 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2023-11-06 22:06:53,062 INFO L899 garLoopResultBuilder]: For program point L726(lines 726 732) no Hoare annotation was computed. [2023-11-06 22:06:53,062 INFO L895 garLoopResultBuilder]: At program point L726-2(lines 718 733) the Hoare annotation is: (let ((.cse2 (<= 2 ~waterLevel~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (= |ULTIMATE.start_main_~tmp~10#1| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 .cse2 .cse3 .cse4 (not (= 0 ~systemActive~0))) (and .cse0 .cse1 .cse3 (= ~waterLevel~0 1) .cse4))) [2023-11-06 22:06:53,063 INFO L899 garLoopResultBuilder]: For program point L689(lines 688 737) no Hoare annotation was computed. [2023-11-06 22:06:53,063 INFO L899 garLoopResultBuilder]: For program point L718(lines 718 733) no Hoare annotation was computed. [2023-11-06 22:06:53,063 INFO L895 garLoopResultBuilder]: At program point setup_returnLabel#1(lines 830 836) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (= |ULTIMATE.start_main_~tmp~10#1| 1) (not (= 0 ~systemActive~0))) [2023-11-06 22:06:53,063 INFO L895 garLoopResultBuilder]: At program point L710(line 710) the Hoare annotation is: (let ((.cse2 (<= 2 ~waterLevel~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (= |ULTIMATE.start_main_~tmp~10#1| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 .cse2 .cse3 .cse4 (not (= 0 ~systemActive~0))) (and .cse0 .cse1 .cse3 (= ~waterLevel~0 1) .cse4))) [2023-11-06 22:06:53,063 INFO L899 garLoopResultBuilder]: For program point L289(lines 289 295) no Hoare annotation was computed. [2023-11-06 22:06:53,063 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-06 22:06:53,064 INFO L899 garLoopResultBuilder]: For program point L289-1(lines 289 295) no Hoare annotation was computed. [2023-11-06 22:06:53,064 INFO L895 garLoopResultBuilder]: At program point L735(lines 688 737) the Hoare annotation is: (let ((.cse2 (<= 2 ~waterLevel~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (= |ULTIMATE.start_main_~tmp~10#1| 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse1 .cse2 .cse3 .cse4 (not (= 0 ~systemActive~0))) (and .cse0 .cse1 .cse3 (= ~waterLevel~0 1) .cse4))) [2023-11-06 22:06:53,064 INFO L899 garLoopResultBuilder]: For program point L698(lines 698 704) no Hoare annotation was computed. [2023-11-06 22:06:53,064 INFO L899 garLoopResultBuilder]: For program point L698-1(lines 698 704) no Hoare annotation was computed. [2023-11-06 22:06:53,064 INFO L899 garLoopResultBuilder]: For program point L690(lines 690 694) no Hoare annotation was computed. [2023-11-06 22:06:53,064 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-06 22:06:53,065 INFO L895 garLoopResultBuilder]: At program point select_helpers_returnLabel#1(lines 1004 1010) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 22:06:53,065 INFO L899 garLoopResultBuilder]: For program point L860(lines 860 867) no Hoare annotation was computed. [2023-11-06 22:06:53,065 INFO L899 garLoopResultBuilder]: For program point L860-2(lines 860 867) no Hoare annotation was computed. [2023-11-06 22:06:53,065 INFO L895 garLoopResultBuilder]: At program point stopSystem_returnLabel#1(lines 285 299) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= 0 ~systemActive~0)) (.cse4 (= |ULTIMATE.start_main_~tmp~10#1| 1))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~waterLevel~0 1) .cse4) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3 .cse4))) [2023-11-06 22:06:53,066 INFO L895 garLoopResultBuilder]: At program point valid_product_returnLabel#1(lines 1011 1019) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 22:06:53,066 INFO L902 garLoopResultBuilder]: At program point L741(lines 678 745) the Hoare annotation is: true [2023-11-06 22:06:53,066 INFO L899 garLoopResultBuilder]: For program point L708(lines 708 714) no Hoare annotation was computed. [2023-11-06 22:06:53,066 INFO L899 garLoopResultBuilder]: For program point L708-1(lines 708 714) no Hoare annotation was computed. [2023-11-06 22:06:53,066 INFO L895 garLoopResultBuilder]: At program point L291(line 291) the Hoare annotation is: (and (= |ULTIMATE.start_valid_product_#res#1| 1) (<= 2 ~waterLevel~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (= |ULTIMATE.start_main_~tmp~10#1| 1) (not (= 0 ~systemActive~0))) [2023-11-06 22:06:53,066 INFO L899 garLoopResultBuilder]: For program point L256(lines 256 260) no Hoare annotation was computed. [2023-11-06 22:06:53,067 INFO L899 garLoopResultBuilder]: For program point L256-2(lines 256 260) no Hoare annotation was computed. [2023-11-06 22:06:53,067 INFO L895 garLoopResultBuilder]: At program point activatePump_returnLabel#1(lines 175 182) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (<= 2 ~waterLevel~0) (= 0 ~systemActive~0)) [2023-11-06 22:06:53,067 INFO L895 garLoopResultBuilder]: At program point L112(line 112) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (< ~waterLevel~0 1) (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~0#1| 0)) .cse1) (or (not (= ~waterLevel~0 1)) .cse0 (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0)) .cse1))) [2023-11-06 22:06:53,067 INFO L899 garLoopResultBuilder]: For program point L106(lines 106 114) no Hoare annotation was computed. [2023-11-06 22:06:53,067 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 98 122) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (< ~waterLevel~0 1) (= 0 ~systemActive~0)) [2023-11-06 22:06:53,068 INFO L899 garLoopResultBuilder]: For program point L102(lines 102 119) no Hoare annotation was computed. [2023-11-06 22:06:53,068 INFO L895 garLoopResultBuilder]: At program point isHighWaterSensorDry_returnLabel#1(lines 962 975) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (and .cse0 (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0))) (and .cse0 (<= 2 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 22:06:53,068 INFO L895 garLoopResultBuilder]: At program point isHighWaterLevel_returnLabel#1(lines 247 265) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (< ~waterLevel~0 2) .cse2) (or (not (= ~waterLevel~0 1)) .cse0 (and .cse1 (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0)) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~0#1| 0) (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~3#1| 0))) .cse2))) [2023-11-06 22:06:53,068 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 98 122) no Hoare annotation was computed. [2023-11-06 22:06:53,069 INFO L895 garLoopResultBuilder]: At program point L117(line 117) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (= 0 ~systemActive~0)) [2023-11-06 22:06:53,069 INFO L899 garLoopResultBuilder]: For program point L117-1(lines 98 122) no Hoare annotation was computed. [2023-11-06 22:06:53,069 INFO L899 garLoopResultBuilder]: For program point L966(lines 966 972) no Hoare annotation was computed. [2023-11-06 22:06:53,069 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 897 908) no Hoare annotation was computed. [2023-11-06 22:06:53,069 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 897 908) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (< |old(~waterLevel~0)| 2)) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or .cse0 .cse1 .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (= ~waterLevel~0 1)) (or .cse1 .cse2 (= 0 ~systemActive~0)))) [2023-11-06 22:06:53,069 INFO L899 garLoopResultBuilder]: For program point L901-1(lines 897 908) no Hoare annotation was computed. [2023-11-06 22:06:53,070 INFO L899 garLoopResultBuilder]: For program point L128(lines 128 145) no Hoare annotation was computed. [2023-11-06 22:06:53,070 INFO L899 garLoopResultBuilder]: For program point L275(lines 275 279) no Hoare annotation was computed. [2023-11-06 22:06:53,070 INFO L899 garLoopResultBuilder]: For program point L275-2(lines 275 279) no Hoare annotation was computed. [2023-11-06 22:06:53,070 INFO L895 garLoopResultBuilder]: At program point L143(line 143) the Hoare annotation is: (or (< ~waterLevel~0 1) (= 0 ~systemActive~0) (and (= ~pumpRunning~0 0) (= |old(~pumpRunning~0)| 0))) [2023-11-06 22:06:53,070 INFO L899 garLoopResultBuilder]: For program point L143-1(lines 124 148) no Hoare annotation was computed. [2023-11-06 22:06:53,070 INFO L895 garLoopResultBuilder]: At program point isLowWaterSensorDry_returnLabel#1(lines 976 984) the Hoare annotation is: (let ((.cse0 (< ~waterLevel~0 1)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterSensorDry_#res#1| 0)) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2023-11-06 22:06:53,071 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 124 148) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (< ~waterLevel~0 1) (= 0 ~systemActive~0)) [2023-11-06 22:06:53,071 INFO L895 garLoopResultBuilder]: At program point isLowWaterLevel_returnLabel#1(lines 266 284) the Hoare annotation is: (let ((.cse0 (< ~waterLevel~0 1)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_#res#1|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_~tmp___0~1#1|) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_~tmp~4#1| 0) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterSensorDry_#res#1| 0)) .cse1))) [2023-11-06 22:06:53,071 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__lowWaterSensorEXIT(lines 124 148) no Hoare annotation was computed. [2023-11-06 22:06:53,071 INFO L895 garLoopResultBuilder]: At program point L138(line 138) the Hoare annotation is: (or (< ~waterLevel~0 1) (= 0 ~systemActive~0)) [2023-11-06 22:06:53,071 INFO L895 garLoopResultBuilder]: At program point L134(line 134) the Hoare annotation is: (let ((.cse0 (< ~waterLevel~0 1)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_#res#1|) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterSensorDry_#res#1| 0) (<= 1 |processEnvironment__wrappee__lowWaterSensor_~tmp~1#1|)) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2023-11-06 22:06:53,072 INFO L899 garLoopResultBuilder]: For program point L132(lines 132 140) no Hoare annotation was computed. [2023-11-06 22:06:53,074 INFO L445 BasicCegarLoop]: Path program histogram: [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 22:06:53,077 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-06 22:06:53,109 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 06.11 10:06:53 BoogieIcfgContainer [2023-11-06 22:06:53,109 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-06 22:06:53,110 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-06 22:06:53,110 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-06 22:06:53,110 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-06 22:06:53,111 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 10:06:41" (3/4) ... [2023-11-06 22:06:53,113 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-06 22:06:53,117 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-06 22:06:53,117 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-06 22:06:53,118 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-06 22:06:53,118 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-06 22:06:53,118 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-06 22:06:53,118 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 22:06:53,118 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-06 22:06:53,119 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__lowWaterSensor [2023-11-06 22:06:53,128 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 18 nodes and edges [2023-11-06 22:06:53,129 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2023-11-06 22:06:53,130 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-06 22:06:53,131 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 22:06:53,131 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 22:06:53,161 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && !((0 == systemActive))) [2023-11-06 22:06:53,162 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && (tmp == 1)) && !((0 == systemActive))) [2023-11-06 22:06:53,162 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) || (((((\result == 1) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive)))) || (((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (waterLevel == 1)) && (tmp == 1))) [2023-11-06 22:06:53,163 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) [2023-11-06 22:06:53,164 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || !((0 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || ((2 <= waterLevel) && (\old(waterLevel) == waterLevel)))) && ((((2 <= waterLevel) || (\old(waterLevel) < 2)) || (0 == systemActive)) || ((pumpRunning == 0) && (1 <= waterLevel)))) [2023-11-06 22:06:53,165 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || (((2 <= waterLevel) && (\old(waterLevel) == waterLevel)) && (2 <= \result))) && (((((2 <= waterLevel) && (2 <= \result)) || (\old(waterLevel) < 2)) || (((pumpRunning == 0) && (1 <= waterLevel)) && (1 <= \result))) || (0 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 2)) || ((pumpRunning == 0) && (1 <= \result))) || !((0 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (\result == 1))) && (((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 2)) || (((2 <= waterLevel) && (\old(waterLevel) == waterLevel)) && (2 <= \result))) || (0 == systemActive))) [2023-11-06 22:06:53,165 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((\result == 1) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive))) || ((((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) && (tmp == 1)) && !((0 == systemActive)))) [2023-11-06 22:06:53,165 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) [2023-11-06 22:06:53,166 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((tmp == 1) && (\result == 1))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((pumpRunning == 0) && (waterLevel == 1)))) && (((!((\old(pumpRunning) == 0)) || (((\old(waterLevel) == waterLevel) && (2 <= \result)) && (2 <= tmp))) || (\old(waterLevel) < 2)) || (0 == systemActive))) && (((((((pumpRunning == 0) && (1 <= tmp)) && (1 <= waterLevel)) && (1 <= \result)) || (((2 <= waterLevel) && (2 <= \result)) && (2 <= tmp))) || (\old(waterLevel) < 2)) || (0 == systemActive))) && (((((((pumpRunning == 0) && (1 <= tmp)) && (1 <= \result)) && (\old(waterLevel) == waterLevel)) || !((\old(pumpRunning) == 0))) || (\old(waterLevel) < 1)) || !((0 == systemActive)))) [2023-11-06 22:06:53,166 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (0 == systemActive)) && (waterLevel == 1)) && (tmp == 1)) || ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (0 == systemActive)) && (tmp == 1))) [2023-11-06 22:06:53,166 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((waterLevel < 1) || ((pumpRunning == \old(pumpRunning)) && (\result == 0))) || (0 == systemActive)) && ((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive))) [2023-11-06 22:06:53,167 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) [2023-11-06 22:06:53,167 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((pumpRunning == 0) && !((\result == 0)))) || ((pumpRunning == 0) && (2 <= waterLevel))) || (0 == systemActive)) [2023-11-06 22:06:53,167 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) [2023-11-06 22:06:53,168 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive)) && (((waterLevel < 1) || (((((pumpRunning == \old(pumpRunning)) && (1 <= \result)) && (1 <= tmp___0)) && (tmp == 0)) && (\result == 0))) || (0 == systemActive))) [2023-11-06 22:06:53,168 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || (waterLevel < 2)) || (0 == systemActive)) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || (((((pumpRunning == 0) && !((\result == 0))) && (\result == 0)) && (tmp___0 == 0)) && !((tmp == 0)))) || (0 == systemActive))) [2023-11-06 22:06:53,168 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) [2023-11-06 22:06:53,169 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (2 <= waterLevel)) || (0 == systemActive)) [2023-11-06 22:06:53,205 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && !((0 == systemActive))) [2023-11-06 22:06:53,205 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && (tmp == 1)) && !((0 == systemActive))) [2023-11-06 22:06:53,206 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) || (((((\result == 1) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive)))) || (((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (waterLevel == 1)) && (tmp == 1))) [2023-11-06 22:06:53,206 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) [2023-11-06 22:06:53,206 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || !((0 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || ((2 <= waterLevel) && (\old(waterLevel) == waterLevel)))) && ((((2 <= waterLevel) || (\old(waterLevel) < 2)) || (0 == systemActive)) || ((pumpRunning == 0) && (1 <= waterLevel)))) [2023-11-06 22:06:53,207 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || (((2 <= waterLevel) && (\old(waterLevel) == waterLevel)) && (2 <= \result))) && (((((2 <= waterLevel) && (2 <= \result)) || (\old(waterLevel) < 2)) || (((pumpRunning == 0) && (1 <= waterLevel)) && (1 <= \result))) || (0 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 2)) || ((pumpRunning == 0) && (1 <= \result))) || !((0 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (\result == 1))) && (((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 2)) || (((2 <= waterLevel) && (\old(waterLevel) == waterLevel)) && (2 <= \result))) || (0 == systemActive))) [2023-11-06 22:06:53,207 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((\result == 1) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive))) || ((((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) && (tmp == 1)) && !((0 == systemActive)))) [2023-11-06 22:06:53,207 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) [2023-11-06 22:06:53,208 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((tmp == 1) && (\result == 1))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((pumpRunning == 0) && (waterLevel == 1)))) && (((!((\old(pumpRunning) == 0)) || (((\old(waterLevel) == waterLevel) && (2 <= \result)) && (2 <= tmp))) || (\old(waterLevel) < 2)) || (0 == systemActive))) && (((((((pumpRunning == 0) && (1 <= tmp)) && (1 <= waterLevel)) && (1 <= \result)) || (((2 <= waterLevel) && (2 <= \result)) && (2 <= tmp))) || (\old(waterLevel) < 2)) || (0 == systemActive))) && (((((((pumpRunning == 0) && (1 <= tmp)) && (1 <= \result)) && (\old(waterLevel) == waterLevel)) || !((\old(pumpRunning) == 0))) || (\old(waterLevel) < 1)) || !((0 == systemActive)))) [2023-11-06 22:06:53,208 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (0 == systemActive)) && (waterLevel == 1)) && (tmp == 1)) || ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (0 == systemActive)) && (tmp == 1))) [2023-11-06 22:06:53,208 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((waterLevel < 1) || ((pumpRunning == \old(pumpRunning)) && (\result == 0))) || (0 == systemActive)) && ((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive))) [2023-11-06 22:06:53,208 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) [2023-11-06 22:06:53,209 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((pumpRunning == 0) && !((\result == 0)))) || ((pumpRunning == 0) && (2 <= waterLevel))) || (0 == systemActive)) [2023-11-06 22:06:53,209 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) [2023-11-06 22:06:53,209 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive)) && (((waterLevel < 1) || (((((pumpRunning == \old(pumpRunning)) && (1 <= \result)) && (1 <= tmp___0)) && (tmp == 0)) && (\result == 0))) || (0 == systemActive))) [2023-11-06 22:06:53,209 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || (waterLevel < 2)) || (0 == systemActive)) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || (((((pumpRunning == 0) && !((\result == 0))) && (\result == 0)) && (tmp___0 == 0)) && !((tmp == 0)))) || (0 == systemActive))) [2023-11-06 22:06:53,210 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) [2023-11-06 22:06:53,210 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (2 <= waterLevel)) || (0 == systemActive)) [2023-11-06 22:06:53,225 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.graphml [2023-11-06 22:06:53,226 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.yaml [2023-11-06 22:06:53,226 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-06 22:06:53,227 INFO L158 Benchmark]: Toolchain (without parser) took 13312.19ms. Allocated memory was 144.7MB in the beginning and 234.9MB in the end (delta: 90.2MB). Free memory was 98.6MB in the beginning and 106.5MB in the end (delta: -7.9MB). Peak memory consumption was 82.8MB. Max. memory is 16.1GB. [2023-11-06 22:06:53,227 INFO L158 Benchmark]: CDTParser took 0.30ms. Allocated memory is still 144.7MB. Free memory is still 114.7MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-06 22:06:53,228 INFO L158 Benchmark]: CACSL2BoogieTranslator took 587.33ms. Allocated memory is still 144.7MB. Free memory was 98.1MB in the beginning and 78.7MB in the end (delta: 19.4MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-06 22:06:53,228 INFO L158 Benchmark]: Boogie Procedure Inliner took 56.05ms. Allocated memory is still 144.7MB. Free memory was 78.7MB in the beginning and 76.1MB in the end (delta: 2.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-06 22:06:53,228 INFO L158 Benchmark]: Boogie Preprocessor took 36.40ms. Allocated memory is still 144.7MB. Free memory was 76.1MB in the beginning and 74.4MB in the end (delta: 1.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-06 22:06:53,229 INFO L158 Benchmark]: RCFGBuilder took 558.30ms. Allocated memory is still 144.7MB. Free memory was 74.4MB in the beginning and 56.6MB in the end (delta: 17.8MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-06 22:06:53,229 INFO L158 Benchmark]: TraceAbstraction took 11950.37ms. Allocated memory was 144.7MB in the beginning and 234.9MB in the end (delta: 90.2MB). Free memory was 55.6MB in the beginning and 114.9MB in the end (delta: -59.3MB). Peak memory consumption was 83.6MB. Max. memory is 16.1GB. [2023-11-06 22:06:53,230 INFO L158 Benchmark]: Witness Printer took 116.23ms. Allocated memory is still 234.9MB. Free memory was 114.9MB in the beginning and 106.5MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-06 22:06:53,232 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.30ms. Allocated memory is still 144.7MB. Free memory is still 114.7MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 587.33ms. Allocated memory is still 144.7MB. Free memory was 98.1MB in the beginning and 78.7MB in the end (delta: 19.4MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 56.05ms. Allocated memory is still 144.7MB. Free memory was 78.7MB in the beginning and 76.1MB in the end (delta: 2.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 36.40ms. Allocated memory is still 144.7MB. Free memory was 76.1MB in the beginning and 74.4MB in the end (delta: 1.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 558.30ms. Allocated memory is still 144.7MB. Free memory was 74.4MB in the beginning and 56.6MB in the end (delta: 17.8MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * TraceAbstraction took 11950.37ms. Allocated memory was 144.7MB in the beginning and 234.9MB in the end (delta: 90.2MB). Free memory was 55.6MB in the beginning and 114.9MB in the end (delta: -59.3MB). Peak memory consumption was 83.6MB. Max. memory is 16.1GB. * Witness Printer took 116.23ms. Allocated memory is still 234.9MB. Free memory was 114.9MB in the beginning and 106.5MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [49] - GenericResultAtLocation [Line: 308]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [308] - GenericResultAtLocation [Line: 674]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [674] - GenericResultAtLocation [Line: 746]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [746] - GenericResultAtLocation [Line: 774]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [774] - GenericResultAtLocation [Line: 873]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [873] - GenericResultAtLocation [Line: 882]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [882] - GenericResultAtLocation [Line: 985]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [985] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 878]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 100 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 11.8s, OverallIterations: 13, TraceHistogramMax: 3, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.1s, AutomataDifference: 3.9s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.9s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1847 SdHoareTripleChecker+Valid, 2.2s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1823 mSDsluCounter, 4318 SdHoareTripleChecker+Invalid, 1.8s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 3020 mSDsCounter, 445 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 2253 IncrementalHoareTripleChecker+Invalid, 2698 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 445 mSolverCounterUnsat, 1298 mSDtfsCounter, 2253 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 690 GetRequests, 558 SyntacticMatches, 13 SemanticMatches, 119 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 342 ImplicationChecksByTransitivity, 1.0s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=947occurred in iteration=12, InterpolantAutomatonStates: 116, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.6s AutomataMinimizationTime, 13 MinimizatonAttempts, 247 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 48 LocationsWithAnnotation, 1824 PreInvPairs, 1961 NumberOfFragments, 1157 HoareAnnotationTreeSize, 1824 FomulaSimplifications, 6059 FormulaSimplificationTreeSizeReduction, 0.4s HoareSimplificationTime, 48 FomulaSimplificationsInter, 4768 FormulaSimplificationTreeSizeReductionInter, 2.5s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 2.6s InterpolantComputationTime, 1067 NumberOfCodeBlocks, 1067 NumberOfCodeBlocksAsserted, 17 NumberOfCheckSat, 1141 ConstructedInterpolants, 0 QuantifiedInterpolants, 1951 SizeOfPredicates, 11 NumberOfNonLiveVariables, 1177 ConjunctsInSsa, 23 ConjunctsInUnsatCore, 17 InterpolantComputations, 12 PerfectInterpolantSequences, 393/447 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 830]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && (tmp == 1)) && !((0 == systemActive))) - InvariantResult [Line: 976]: Loop Invariant Derived loop invariant: ((((waterLevel < 1) || ((pumpRunning == \old(pumpRunning)) && (\result == 0))) || (0 == systemActive)) && ((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive))) - InvariantResult [Line: 997]: Loop Invariant Derived loop invariant: (((pumpRunning == 0) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 175]: Loop Invariant Derived loop invariant: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (2 <= waterLevel)) || (0 == systemActive)) - InvariantResult [Line: 921]: Loop Invariant Derived loop invariant: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) - InvariantResult [Line: 191]: Loop Invariant Derived loop invariant: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) - InvariantResult [Line: 202]: Loop Invariant Derived loop invariant: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) - InvariantResult [Line: 962]: Loop Invariant Derived loop invariant: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((pumpRunning == 0) && !((\result == 0)))) || ((pumpRunning == 0) && (2 <= waterLevel))) || (0 == systemActive)) - InvariantResult [Line: 247]: Loop Invariant Derived loop invariant: ((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || (waterLevel < 2)) || (0 == systemActive)) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || (((((pumpRunning == 0) && !((\result == 0))) && (\result == 0)) && (tmp___0 == 0)) && !((tmp == 0)))) || (0 == systemActive))) - InvariantResult [Line: 837]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 285]: Loop Invariant Derived loop invariant: (((((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (0 == systemActive)) && (waterLevel == 1)) && (tmp == 1)) || ((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (0 == systemActive)) && (tmp == 1))) - InvariantResult [Line: 749]: Loop Invariant Derived loop invariant: ((((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((tmp == 1) && (\result == 1))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((pumpRunning == 0) && (waterLevel == 1)))) && (((!((\old(pumpRunning) == 0)) || (((\old(waterLevel) == waterLevel) && (2 <= \result)) && (2 <= tmp))) || (\old(waterLevel) < 2)) || (0 == systemActive))) && (((((((pumpRunning == 0) && (1 <= tmp)) && (1 <= waterLevel)) && (1 <= \result)) || (((2 <= waterLevel) && (2 <= \result)) && (2 <= tmp))) || (\old(waterLevel) < 2)) || (0 == systemActive))) && (((((((pumpRunning == 0) && (1 <= tmp)) && (1 <= \result)) && (\old(waterLevel) == waterLevel)) || !((\old(pumpRunning) == 0))) || (\old(waterLevel) < 1)) || !((0 == systemActive)))) - InvariantResult [Line: 266]: Loop Invariant Derived loop invariant: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive)) && (((waterLevel < 1) || (((((pumpRunning == \old(pumpRunning)) && (1 <= \result)) && (1 <= tmp___0)) && (tmp == 0)) && (\result == 0))) || (0 == systemActive))) - InvariantResult [Line: 300]: Loop Invariant Derived loop invariant: ((((((\result == 1) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive))) || ((((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) && (tmp == 1)) && !((0 == systemActive)))) - InvariantResult [Line: 874]: Loop Invariant Derived loop invariant: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) - InvariantResult [Line: 678]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 953]: Loop Invariant Derived loop invariant: (((((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || (((2 <= waterLevel) && (\old(waterLevel) == waterLevel)) && (2 <= \result))) && (((((2 <= waterLevel) && (2 <= \result)) || (\old(waterLevel) < 2)) || (((pumpRunning == 0) && (1 <= waterLevel)) && (1 <= \result))) || (0 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 2)) || ((pumpRunning == 0) && (1 <= \result))) || !((0 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (\result == 1))) && (((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 2)) || (((2 <= waterLevel) && (\old(waterLevel) == waterLevel)) && (2 <= \result))) || (0 == systemActive))) - InvariantResult [Line: 1011]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 687]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 776]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 1004]: Loop Invariant Derived loop invariant: (((pumpRunning == 0) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 688]: Loop Invariant Derived loop invariant: (((((((pumpRunning == 0) && (\result == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) || (((((\result == 1) && (2 <= waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive)))) || (((((pumpRunning == 0) && (\result == 1)) && (splverifierCounter == 0)) && (waterLevel == 1)) && (tmp == 1))) - InvariantResult [Line: 850]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 885]: Loop Invariant Derived loop invariant: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) - InvariantResult [Line: 150]: Loop Invariant Derived loop invariant: ((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || !((0 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || ((2 <= waterLevel) && (\old(waterLevel) == waterLevel)))) && ((((2 <= waterLevel) || (\old(waterLevel) < 2)) || (0 == systemActive)) || ((pumpRunning == 0) && (1 <= waterLevel)))) - InvariantResult [Line: 786]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2023-11-06 22:06:53,269 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_1f701576-7b49-4e00-9438-96dffbaef022/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE