./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec4_product57.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version e7bb482b Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec4_product57.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 7573d0f26b9c64760f56bc1038037f99fa78fd69add5234955c16ce4082df45a --- Real Ultimate output --- This is Ultimate 0.2.3-dev-e7bb482 [2023-11-06 21:14:35,083 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-06 21:14:35,192 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-06 21:14:35,203 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-06 21:14:35,204 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-06 21:14:35,243 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-06 21:14:35,244 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-06 21:14:35,244 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-06 21:14:35,245 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-06 21:14:35,250 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-06 21:14:35,251 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-06 21:14:35,251 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-06 21:14:35,252 INFO L153 SettingsManager]: * Use SBE=true [2023-11-06 21:14:35,254 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-06 21:14:35,254 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-06 21:14:35,255 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-06 21:14:35,255 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-06 21:14:35,255 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-06 21:14:35,256 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-06 21:14:35,256 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-06 21:14:35,257 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-06 21:14:35,257 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-06 21:14:35,258 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-06 21:14:35,258 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-06 21:14:35,258 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-06 21:14:35,259 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-06 21:14:35,259 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-06 21:14:35,260 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-06 21:14:35,260 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 21:14:35,260 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-06 21:14:35,262 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-06 21:14:35,262 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2023-11-06 21:14:35,262 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-06 21:14:35,262 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-06 21:14:35,262 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-06 21:14:35,263 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-06 21:14:35,263 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-06 21:14:35,263 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-06 21:14:35,263 INFO L153 SettingsManager]: * Independence relation used for large block encoding in concurrent analysis=SYNTACTIC [2023-11-06 21:14:35,263 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 7573d0f26b9c64760f56bc1038037f99fa78fd69add5234955c16ce4082df45a [2023-11-06 21:14:35,636 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-06 21:14:35,669 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-06 21:14:35,671 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-06 21:14:35,673 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-06 21:14:35,674 INFO L274 PluginConnector]: CDTParser initialized [2023-11-06 21:14:35,675 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/../../sv-benchmarks/c/product-lines/minepump_spec4_product57.cil.c [2023-11-06 21:14:38,804 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-06 21:14:39,094 INFO L384 CDTParser]: Found 1 translation units. [2023-11-06 21:14:39,094 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/sv-benchmarks/c/product-lines/minepump_spec4_product57.cil.c [2023-11-06 21:14:39,109 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/data/53b31b7dc/2bb5b9fa6683424ab2a9e4ddaa92efc2/FLAG2c43b12ef [2023-11-06 21:14:39,123 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/data/53b31b7dc/2bb5b9fa6683424ab2a9e4ddaa92efc2 [2023-11-06 21:14:39,125 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-06 21:14:39,127 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-06 21:14:39,128 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-06 21:14:39,129 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-06 21:14:39,134 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-06 21:14:39,135 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,136 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6399c2f7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39, skipping insertion in model container [2023-11-06 21:14:39,136 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,243 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-06 21:14:39,499 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/sv-benchmarks/c/product-lines/minepump_spec4_product57.cil.c[18691,18704] [2023-11-06 21:14:39,503 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 21:14:39,525 INFO L202 MainTranslator]: Completed pre-run [2023-11-06 21:14:39,535 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49] [2023-11-06 21:14:39,537 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [118] [2023-11-06 21:14:39,537 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [343] [2023-11-06 21:14:39,538 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [371] [2023-11-06 21:14:39,538 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [474] [2023-11-06 21:14:39,538 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [512] [2023-11-06 21:14:39,538 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [608] [2023-11-06 21:14:39,539 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [974] [2023-11-06 21:14:39,647 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/sv-benchmarks/c/product-lines/minepump_spec4_product57.cil.c[18691,18704] [2023-11-06 21:14:39,648 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 21:14:39,678 INFO L206 MainTranslator]: Completed translation [2023-11-06 21:14:39,679 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39 WrapperNode [2023-11-06 21:14:39,680 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-06 21:14:39,682 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-06 21:14:39,682 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-06 21:14:39,682 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-06 21:14:39,690 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,714 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,757 INFO L138 Inliner]: procedures = 56, calls = 100, calls flagged for inlining = 26, calls inlined = 23, statements flattened = 227 [2023-11-06 21:14:39,758 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-06 21:14:39,759 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-06 21:14:39,759 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-06 21:14:39,759 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-06 21:14:39,768 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,769 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,781 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,784 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,790 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,806 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,808 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,812 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,816 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-06 21:14:39,816 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-06 21:14:39,817 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-06 21:14:39,817 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-06 21:14:39,817 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (1/1) ... [2023-11-06 21:14:39,824 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 21:14:39,835 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:14:39,849 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-06 21:14:39,857 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-06 21:14:39,889 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-06 21:14:39,889 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-06 21:14:39,889 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-06 21:14:39,890 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-06 21:14:39,890 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-06 21:14:39,890 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-06 21:14:39,890 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-06 21:14:39,891 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 21:14:39,891 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 21:14:39,891 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-06 21:14:39,891 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-06 21:14:39,891 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2023-11-06 21:14:39,891 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-06 21:14:39,892 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-06 21:14:39,892 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-06 21:14:39,892 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-06 21:14:39,976 INFO L236 CfgBuilder]: Building ICFG [2023-11-06 21:14:39,979 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-06 21:14:40,311 INFO L277 CfgBuilder]: Performing block encoding [2023-11-06 21:14:40,324 INFO L297 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-06 21:14:40,324 INFO L302 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-06 21:14:40,326 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 09:14:40 BoogieIcfgContainer [2023-11-06 21:14:40,327 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-06 21:14:40,329 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-06 21:14:40,329 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-06 21:14:40,331 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-06 21:14:40,343 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 06.11 09:14:39" (1/3) ... [2023-11-06 21:14:40,344 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@339c8a92 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 09:14:40, skipping insertion in model container [2023-11-06 21:14:40,345 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:14:39" (2/3) ... [2023-11-06 21:14:40,345 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@339c8a92 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 09:14:40, skipping insertion in model container [2023-11-06 21:14:40,347 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 09:14:40" (3/3) ... [2023-11-06 21:14:40,348 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product57.cil.c [2023-11-06 21:14:40,367 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-06 21:14:40,368 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-06 21:14:40,419 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-06 21:14:40,426 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@50073357, mLbeIndependenceSettings=[IndependenceType=SYNTACTIC, AbstractionType=NONE, UseConditional=, UseSemiCommutativity=, Solver=, SolverTimeout=] [2023-11-06 21:14:40,426 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-06 21:14:40,431 INFO L276 IsEmpty]: Start isEmpty. Operand has 86 states, 68 states have (on average 1.3970588235294117) internal successors, (95), 76 states have internal predecessors, (95), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) [2023-11-06 21:14:40,439 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2023-11-06 21:14:40,440 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:40,440 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:40,441 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:40,452 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:40,453 INFO L85 PathProgramCache]: Analyzing trace with hash -1290449034, now seen corresponding path program 1 times [2023-11-06 21:14:40,462 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:40,462 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1236222813] [2023-11-06 21:14:40,462 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:40,463 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:40,569 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:40,667 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:14:40,667 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:40,668 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1236222813] [2023-11-06 21:14:40,668 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1236222813] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:40,669 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:14:40,669 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-06 21:14:40,670 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [643790850] [2023-11-06 21:14:40,671 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:40,676 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-06 21:14:40,676 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:40,705 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-06 21:14:40,706 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 21:14:40,708 INFO L87 Difference]: Start difference. First operand has 86 states, 68 states have (on average 1.3970588235294117) internal successors, (95), 76 states have internal predecessors, (95), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:14:40,744 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:40,744 INFO L93 Difference]: Finished difference Result 164 states and 225 transitions. [2023-11-06 21:14:40,745 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-06 21:14:40,746 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2023-11-06 21:14:40,747 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:40,755 INFO L225 Difference]: With dead ends: 164 [2023-11-06 21:14:40,755 INFO L226 Difference]: Without dead ends: 77 [2023-11-06 21:14:40,758 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 21:14:40,762 INFO L413 NwaCegarLoop]: 109 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 109 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:40,763 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 109 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:14:40,778 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 77 states. [2023-11-06 21:14:40,801 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 77 to 77. [2023-11-06 21:14:40,802 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 77 states, 61 states have (on average 1.3278688524590163) internal successors, (81), 68 states have internal predecessors, (81), 10 states have call successors, (10), 6 states have call predecessors, (10), 5 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2023-11-06 21:14:40,805 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 77 states to 77 states and 100 transitions. [2023-11-06 21:14:40,807 INFO L78 Accepts]: Start accepts. Automaton has 77 states and 100 transitions. Word has length 19 [2023-11-06 21:14:40,807 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:40,808 INFO L495 AbstractCegarLoop]: Abstraction has 77 states and 100 transitions. [2023-11-06 21:14:40,808 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:14:40,808 INFO L276 IsEmpty]: Start isEmpty. Operand 77 states and 100 transitions. [2023-11-06 21:14:40,810 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2023-11-06 21:14:40,811 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:40,811 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:40,811 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-06 21:14:40,812 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:40,812 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:40,813 INFO L85 PathProgramCache]: Analyzing trace with hash -1967581778, now seen corresponding path program 1 times [2023-11-06 21:14:40,813 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:40,813 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2101856529] [2023-11-06 21:14:40,813 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:40,814 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:40,845 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:40,988 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:14:40,989 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:40,989 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2101856529] [2023-11-06 21:14:40,989 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2101856529] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:40,989 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:14:40,990 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-06 21:14:40,990 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [296176221] [2023-11-06 21:14:40,990 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:40,991 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 21:14:40,992 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:40,992 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 21:14:40,993 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:14:40,993 INFO L87 Difference]: Start difference. First operand 77 states and 100 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:14:41,035 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:41,035 INFO L93 Difference]: Finished difference Result 120 states and 156 transitions. [2023-11-06 21:14:41,036 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 21:14:41,036 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2023-11-06 21:14:41,036 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:41,038 INFO L225 Difference]: With dead ends: 120 [2023-11-06 21:14:41,038 INFO L226 Difference]: Without dead ends: 68 [2023-11-06 21:14:41,039 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:14:41,043 INFO L413 NwaCegarLoop]: 87 mSDtfsCounter, 12 mSDsluCounter, 71 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 158 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:41,044 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 158 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:14:41,045 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 68 states. [2023-11-06 21:14:41,054 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 68 to 68. [2023-11-06 21:14:41,054 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 68 states, 55 states have (on average 1.3454545454545455) internal successors, (74), 62 states have internal predecessors, (74), 7 states have call successors, (7), 5 states have call predecessors, (7), 5 states have return successors, (7), 5 states have call predecessors, (7), 7 states have call successors, (7) [2023-11-06 21:14:41,056 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 68 states to 68 states and 88 transitions. [2023-11-06 21:14:41,056 INFO L78 Accepts]: Start accepts. Automaton has 68 states and 88 transitions. Word has length 20 [2023-11-06 21:14:41,057 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:41,057 INFO L495 AbstractCegarLoop]: Abstraction has 68 states and 88 transitions. [2023-11-06 21:14:41,057 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:14:41,057 INFO L276 IsEmpty]: Start isEmpty. Operand 68 states and 88 transitions. [2023-11-06 21:14:41,058 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2023-11-06 21:14:41,059 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:41,059 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:41,059 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-06 21:14:41,059 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:41,060 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:41,060 INFO L85 PathProgramCache]: Analyzing trace with hash 764053852, now seen corresponding path program 1 times [2023-11-06 21:14:41,060 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:41,061 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [592490282] [2023-11-06 21:14:41,061 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:41,061 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:41,085 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:41,213 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:14:41,214 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:41,214 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [592490282] [2023-11-06 21:14:41,214 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [592490282] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:41,214 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:14:41,215 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 21:14:41,215 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1628244222] [2023-11-06 21:14:41,215 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:41,215 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 21:14:41,216 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:41,216 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 21:14:41,217 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2023-11-06 21:14:41,217 INFO L87 Difference]: Start difference. First operand 68 states and 88 transitions. Second operand has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:14:41,329 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:41,330 INFO L93 Difference]: Finished difference Result 129 states and 170 transitions. [2023-11-06 21:14:41,330 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-06 21:14:41,330 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2023-11-06 21:14:41,331 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:41,332 INFO L225 Difference]: With dead ends: 129 [2023-11-06 21:14:41,333 INFO L226 Difference]: Without dead ends: 68 [2023-11-06 21:14:41,334 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-11-06 21:14:41,336 INFO L413 NwaCegarLoop]: 81 mSDtfsCounter, 171 mSDsluCounter, 108 mSDsCounter, 0 mSdLazyCounter, 33 mSolverCounterSat, 22 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 171 SdHoareTripleChecker+Valid, 189 SdHoareTripleChecker+Invalid, 55 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 22 IncrementalHoareTripleChecker+Valid, 33 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:41,336 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [171 Valid, 189 Invalid, 55 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [22 Valid, 33 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 21:14:41,337 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 68 states. [2023-11-06 21:14:41,353 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 68 to 68. [2023-11-06 21:14:41,354 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 68 states, 55 states have (on average 1.3272727272727274) internal successors, (73), 62 states have internal predecessors, (73), 7 states have call successors, (7), 5 states have call predecessors, (7), 5 states have return successors, (7), 5 states have call predecessors, (7), 7 states have call successors, (7) [2023-11-06 21:14:41,355 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 68 states to 68 states and 87 transitions. [2023-11-06 21:14:41,356 INFO L78 Accepts]: Start accepts. Automaton has 68 states and 87 transitions. Word has length 24 [2023-11-06 21:14:41,356 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:41,356 INFO L495 AbstractCegarLoop]: Abstraction has 68 states and 87 transitions. [2023-11-06 21:14:41,357 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:14:41,357 INFO L276 IsEmpty]: Start isEmpty. Operand 68 states and 87 transitions. [2023-11-06 21:14:41,358 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2023-11-06 21:14:41,359 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:41,359 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:41,359 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-06 21:14:41,359 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:41,364 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:41,364 INFO L85 PathProgramCache]: Analyzing trace with hash 1882395024, now seen corresponding path program 1 times [2023-11-06 21:14:41,365 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:41,366 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1993769562] [2023-11-06 21:14:41,366 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:41,366 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:41,411 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:41,523 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:14:41,523 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:41,524 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1993769562] [2023-11-06 21:14:41,524 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1993769562] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:41,524 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:14:41,524 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-06 21:14:41,525 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1766115941] [2023-11-06 21:14:41,525 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:41,525 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 21:14:41,525 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:41,526 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 21:14:41,526 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:14:41,527 INFO L87 Difference]: Start difference. First operand 68 states and 87 transitions. Second operand has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:14:41,597 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:41,597 INFO L93 Difference]: Finished difference Result 168 states and 221 transitions. [2023-11-06 21:14:41,600 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 21:14:41,601 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 32 [2023-11-06 21:14:41,601 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:41,603 INFO L225 Difference]: With dead ends: 168 [2023-11-06 21:14:41,603 INFO L226 Difference]: Without dead ends: 107 [2023-11-06 21:14:41,604 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:14:41,606 INFO L413 NwaCegarLoop]: 84 mSDtfsCounter, 67 mSDsluCounter, 55 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 67 SdHoareTripleChecker+Valid, 139 SdHoareTripleChecker+Invalid, 15 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:41,606 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [67 Valid, 139 Invalid, 15 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:14:41,607 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 107 states. [2023-11-06 21:14:41,642 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 107 to 105. [2023-11-06 21:14:41,648 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 105 states, 84 states have (on average 1.3095238095238095) internal successors, (110), 92 states have internal predecessors, (110), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (14), 10 states have call predecessors, (14), 10 states have call successors, (14) [2023-11-06 21:14:41,655 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 105 states to 105 states and 134 transitions. [2023-11-06 21:14:41,655 INFO L78 Accepts]: Start accepts. Automaton has 105 states and 134 transitions. Word has length 32 [2023-11-06 21:14:41,655 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:41,656 INFO L495 AbstractCegarLoop]: Abstraction has 105 states and 134 transitions. [2023-11-06 21:14:41,656 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:14:41,656 INFO L276 IsEmpty]: Start isEmpty. Operand 105 states and 134 transitions. [2023-11-06 21:14:41,658 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2023-11-06 21:14:41,659 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:41,660 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:41,660 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-06 21:14:41,660 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:41,661 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:41,661 INFO L85 PathProgramCache]: Analyzing trace with hash -1383918710, now seen corresponding path program 1 times [2023-11-06 21:14:41,661 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:41,662 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1674423845] [2023-11-06 21:14:41,662 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:41,662 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:41,706 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:41,868 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-11-06 21:14:41,873 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:41,878 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 21:14:41,880 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:41,881 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:14:41,881 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:41,882 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1674423845] [2023-11-06 21:14:41,882 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1674423845] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:41,882 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:14:41,882 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-06 21:14:41,883 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [618977614] [2023-11-06 21:14:41,883 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:41,883 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 21:14:41,884 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:41,885 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 21:14:41,885 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-06 21:14:41,885 INFO L87 Difference]: Start difference. First operand 105 states and 134 transitions. Second operand has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 2 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-06 21:14:42,080 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:42,080 INFO L93 Difference]: Finished difference Result 298 states and 395 transitions. [2023-11-06 21:14:42,080 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-06 21:14:42,081 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 2 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 40 [2023-11-06 21:14:42,081 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:42,084 INFO L225 Difference]: With dead ends: 298 [2023-11-06 21:14:42,084 INFO L226 Difference]: Without dead ends: 200 [2023-11-06 21:14:42,086 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=40, Invalid=70, Unknown=0, NotChecked=0, Total=110 [2023-11-06 21:14:42,087 INFO L413 NwaCegarLoop]: 64 mSDtfsCounter, 131 mSDsluCounter, 211 mSDsCounter, 0 mSdLazyCounter, 110 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 134 SdHoareTripleChecker+Valid, 275 SdHoareTripleChecker+Invalid, 133 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 110 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:42,088 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [134 Valid, 275 Invalid, 133 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 110 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 21:14:42,089 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 200 states. [2023-11-06 21:14:42,120 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 200 to 198. [2023-11-06 21:14:42,121 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 198 states, 159 states have (on average 1.2767295597484276) internal successors, (203), 170 states have internal predecessors, (203), 18 states have call successors, (18), 18 states have call predecessors, (18), 20 states have return successors, (32), 18 states have call predecessors, (32), 18 states have call successors, (32) [2023-11-06 21:14:42,123 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 198 states to 198 states and 253 transitions. [2023-11-06 21:14:42,123 INFO L78 Accepts]: Start accepts. Automaton has 198 states and 253 transitions. Word has length 40 [2023-11-06 21:14:42,123 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:42,124 INFO L495 AbstractCegarLoop]: Abstraction has 198 states and 253 transitions. [2023-11-06 21:14:42,124 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.833333333333333) internal successors, (35), 5 states have internal predecessors, (35), 2 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-06 21:14:42,124 INFO L276 IsEmpty]: Start isEmpty. Operand 198 states and 253 transitions. [2023-11-06 21:14:42,126 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2023-11-06 21:14:42,126 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:42,126 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:42,127 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-06 21:14:42,127 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:42,127 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:42,127 INFO L85 PathProgramCache]: Analyzing trace with hash 325624560, now seen corresponding path program 1 times [2023-11-06 21:14:42,128 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:42,128 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1150748313] [2023-11-06 21:14:42,128 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:42,128 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:42,143 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:42,223 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:14:42,224 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:42,232 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2023-11-06 21:14:42,235 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:42,243 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 21:14:42,244 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:42,247 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:14:42,247 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:42,247 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1150748313] [2023-11-06 21:14:42,247 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1150748313] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:42,247 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:14:42,247 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-06 21:14:42,248 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [971055219] [2023-11-06 21:14:42,248 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:42,248 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-06 21:14:42,248 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:42,249 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-06 21:14:42,249 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2023-11-06 21:14:42,249 INFO L87 Difference]: Start difference. First operand 198 states and 253 transitions. Second operand has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 21:14:42,744 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:42,744 INFO L93 Difference]: Finished difference Result 273 states and 343 transitions. [2023-11-06 21:14:42,745 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 21 states. [2023-11-06 21:14:42,745 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 44 [2023-11-06 21:14:42,747 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:42,752 INFO L225 Difference]: With dead ends: 273 [2023-11-06 21:14:42,753 INFO L226 Difference]: Without dead ends: 271 [2023-11-06 21:14:42,754 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 31 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 91 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=127, Invalid=335, Unknown=0, NotChecked=0, Total=462 [2023-11-06 21:14:42,763 INFO L413 NwaCegarLoop]: 58 mSDtfsCounter, 205 mSDsluCounter, 278 mSDsCounter, 0 mSdLazyCounter, 250 mSolverCounterSat, 40 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 207 SdHoareTripleChecker+Valid, 336 SdHoareTripleChecker+Invalid, 290 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 40 IncrementalHoareTripleChecker+Valid, 250 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:42,765 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [207 Valid, 336 Invalid, 290 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [40 Valid, 250 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-06 21:14:42,768 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 271 states. [2023-11-06 21:14:42,836 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 271 to 231. [2023-11-06 21:14:42,837 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 231 states, 186 states have (on average 1.2580645161290323) internal successors, (234), 202 states have internal predecessors, (234), 20 states have call successors, (20), 18 states have call predecessors, (20), 24 states have return successors, (39), 20 states have call predecessors, (39), 20 states have call successors, (39) [2023-11-06 21:14:42,841 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 231 states to 231 states and 293 transitions. [2023-11-06 21:14:42,841 INFO L78 Accepts]: Start accepts. Automaton has 231 states and 293 transitions. Word has length 44 [2023-11-06 21:14:42,842 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:42,842 INFO L495 AbstractCegarLoop]: Abstraction has 231 states and 293 transitions. [2023-11-06 21:14:42,842 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-06 21:14:42,842 INFO L276 IsEmpty]: Start isEmpty. Operand 231 states and 293 transitions. [2023-11-06 21:14:42,850 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2023-11-06 21:14:42,850 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:42,850 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:42,850 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-06 21:14:42,851 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:42,851 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:42,851 INFO L85 PathProgramCache]: Analyzing trace with hash 1024939841, now seen corresponding path program 1 times [2023-11-06 21:14:42,851 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:42,852 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [276901373] [2023-11-06 21:14:42,852 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:42,852 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:42,884 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:42,937 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:14:42,938 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:42,943 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2023-11-06 21:14:42,947 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:42,983 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:14:42,983 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:42,983 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [276901373] [2023-11-06 21:14:42,983 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [276901373] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:42,984 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:14:42,984 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-06 21:14:42,984 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2092963192] [2023-11-06 21:14:42,984 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:42,984 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-06 21:14:42,985 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:42,985 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-06 21:14:42,985 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2023-11-06 21:14:42,986 INFO L87 Difference]: Start difference. First operand 231 states and 293 transitions. Second operand has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-06 21:14:43,257 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:43,258 INFO L93 Difference]: Finished difference Result 495 states and 653 transitions. [2023-11-06 21:14:43,258 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-06 21:14:43,258 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 46 [2023-11-06 21:14:43,259 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:43,262 INFO L225 Difference]: With dead ends: 495 [2023-11-06 21:14:43,262 INFO L226 Difference]: Without dead ends: 271 [2023-11-06 21:14:43,263 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=43, Invalid=89, Unknown=0, NotChecked=0, Total=132 [2023-11-06 21:14:43,264 INFO L413 NwaCegarLoop]: 62 mSDtfsCounter, 139 mSDsluCounter, 253 mSDsCounter, 0 mSdLazyCounter, 218 mSolverCounterSat, 38 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 139 SdHoareTripleChecker+Valid, 315 SdHoareTripleChecker+Invalid, 256 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 38 IncrementalHoareTripleChecker+Valid, 218 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:43,264 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [139 Valid, 315 Invalid, 256 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [38 Valid, 218 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 21:14:43,265 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 271 states. [2023-11-06 21:14:43,306 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 271 to 237. [2023-11-06 21:14:43,307 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 237 states, 192 states have (on average 1.25) internal successors, (240), 208 states have internal predecessors, (240), 20 states have call successors, (20), 18 states have call predecessors, (20), 24 states have return successors, (39), 20 states have call predecessors, (39), 20 states have call successors, (39) [2023-11-06 21:14:43,310 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 237 states to 237 states and 299 transitions. [2023-11-06 21:14:43,310 INFO L78 Accepts]: Start accepts. Automaton has 237 states and 299 transitions. Word has length 46 [2023-11-06 21:14:43,310 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:43,310 INFO L495 AbstractCegarLoop]: Abstraction has 237 states and 299 transitions. [2023-11-06 21:14:43,311 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-06 21:14:43,311 INFO L276 IsEmpty]: Start isEmpty. Operand 237 states and 299 transitions. [2023-11-06 21:14:43,312 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2023-11-06 21:14:43,312 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:43,312 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:43,313 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-06 21:14:43,313 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:43,313 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:43,313 INFO L85 PathProgramCache]: Analyzing trace with hash -969204865, now seen corresponding path program 1 times [2023-11-06 21:14:43,314 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:43,314 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [370011652] [2023-11-06 21:14:43,314 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:43,314 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:43,327 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:43,392 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:14:43,393 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:43,400 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2023-11-06 21:14:43,405 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:43,474 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:14:43,475 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:43,475 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [370011652] [2023-11-06 21:14:43,475 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [370011652] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:43,475 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:14:43,475 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2023-11-06 21:14:43,476 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [333854413] [2023-11-06 21:14:43,476 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:43,476 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-06 21:14:43,476 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:43,477 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-06 21:14:43,477 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2023-11-06 21:14:43,478 INFO L87 Difference]: Start difference. First operand 237 states and 299 transitions. Second operand has 8 states, 8 states have (on average 5.125) internal successors, (41), 6 states have internal predecessors, (41), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-06 21:14:43,782 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:43,782 INFO L93 Difference]: Finished difference Result 463 states and 597 transitions. [2023-11-06 21:14:43,783 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-06 21:14:43,783 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 5.125) internal successors, (41), 6 states have internal predecessors, (41), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 46 [2023-11-06 21:14:43,785 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:43,788 INFO L225 Difference]: With dead ends: 463 [2023-11-06 21:14:43,788 INFO L226 Difference]: Without dead ends: 233 [2023-11-06 21:14:43,789 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=35, Invalid=97, Unknown=0, NotChecked=0, Total=132 [2023-11-06 21:14:43,791 INFO L413 NwaCegarLoop]: 58 mSDtfsCounter, 175 mSDsluCounter, 260 mSDsCounter, 0 mSdLazyCounter, 262 mSolverCounterSat, 43 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 175 SdHoareTripleChecker+Valid, 318 SdHoareTripleChecker+Invalid, 305 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 43 IncrementalHoareTripleChecker+Valid, 262 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:43,791 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [175 Valid, 318 Invalid, 305 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [43 Valid, 262 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 21:14:43,793 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 233 states. [2023-11-06 21:14:43,831 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 233 to 182. [2023-11-06 21:14:43,832 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 182 states, 146 states have (on average 1.2465753424657535) internal successors, (182), 158 states have internal predecessors, (182), 17 states have call successors, (17), 15 states have call predecessors, (17), 18 states have return successors, (28), 16 states have call predecessors, (28), 17 states have call successors, (28) [2023-11-06 21:14:43,838 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 182 states to 182 states and 227 transitions. [2023-11-06 21:14:43,838 INFO L78 Accepts]: Start accepts. Automaton has 182 states and 227 transitions. Word has length 46 [2023-11-06 21:14:43,839 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:43,839 INFO L495 AbstractCegarLoop]: Abstraction has 182 states and 227 transitions. [2023-11-06 21:14:43,839 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 5.125) internal successors, (41), 6 states have internal predecessors, (41), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-06 21:14:43,839 INFO L276 IsEmpty]: Start isEmpty. Operand 182 states and 227 transitions. [2023-11-06 21:14:43,841 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2023-11-06 21:14:43,841 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:43,841 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:43,844 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-06 21:14:43,844 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:43,845 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:43,845 INFO L85 PathProgramCache]: Analyzing trace with hash -1786853315, now seen corresponding path program 1 times [2023-11-06 21:14:43,845 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:43,845 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1036787567] [2023-11-06 21:14:43,845 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:43,846 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:43,869 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:43,981 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:14:43,983 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:43,990 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2023-11-06 21:14:43,994 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:44,020 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:14:44,020 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:44,020 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1036787567] [2023-11-06 21:14:44,021 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1036787567] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:44,021 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:14:44,021 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-06 21:14:44,021 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [634196679] [2023-11-06 21:14:44,021 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:44,022 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-06 21:14:44,022 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:44,023 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-06 21:14:44,023 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2023-11-06 21:14:44,024 INFO L87 Difference]: Start difference. First operand 182 states and 227 transitions. Second operand has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-06 21:14:44,436 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:44,436 INFO L93 Difference]: Finished difference Result 417 states and 553 transitions. [2023-11-06 21:14:44,436 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2023-11-06 21:14:44,437 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 46 [2023-11-06 21:14:44,437 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:44,441 INFO L225 Difference]: With dead ends: 417 [2023-11-06 21:14:44,441 INFO L226 Difference]: Without dead ends: 282 [2023-11-06 21:14:44,442 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 6 SyntacticMatches, 1 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 60 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=106, Invalid=236, Unknown=0, NotChecked=0, Total=342 [2023-11-06 21:14:44,444 INFO L413 NwaCegarLoop]: 84 mSDtfsCounter, 201 mSDsluCounter, 318 mSDsCounter, 0 mSdLazyCounter, 304 mSolverCounterSat, 41 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 202 SdHoareTripleChecker+Valid, 402 SdHoareTripleChecker+Invalid, 345 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 41 IncrementalHoareTripleChecker+Valid, 304 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:44,445 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [202 Valid, 402 Invalid, 345 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [41 Valid, 304 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 21:14:44,446 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 282 states. [2023-11-06 21:14:44,491 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 282 to 271. [2023-11-06 21:14:44,492 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 271 states, 217 states have (on average 1.2211981566820276) internal successors, (265), 232 states have internal predecessors, (265), 25 states have call successors, (25), 23 states have call predecessors, (25), 28 states have return successors, (54), 27 states have call predecessors, (54), 25 states have call successors, (54) [2023-11-06 21:14:44,496 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 271 states to 271 states and 344 transitions. [2023-11-06 21:14:44,496 INFO L78 Accepts]: Start accepts. Automaton has 271 states and 344 transitions. Word has length 46 [2023-11-06 21:14:44,496 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:44,497 INFO L495 AbstractCegarLoop]: Abstraction has 271 states and 344 transitions. [2023-11-06 21:14:44,497 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.857142857142857) internal successors, (41), 5 states have internal predecessors, (41), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-06 21:14:44,497 INFO L276 IsEmpty]: Start isEmpty. Operand 271 states and 344 transitions. [2023-11-06 21:14:44,499 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 81 [2023-11-06 21:14:44,499 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:44,499 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:44,500 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-11-06 21:14:44,500 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:44,501 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:44,502 INFO L85 PathProgramCache]: Analyzing trace with hash 1370841909, now seen corresponding path program 1 times [2023-11-06 21:14:44,502 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:44,502 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [868036526] [2023-11-06 21:14:44,502 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:44,502 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:44,524 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:44,684 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:14:44,685 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:44,699 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-11-06 21:14:44,704 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:44,722 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 21:14:44,725 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:44,742 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 65 [2023-11-06 21:14:44,743 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:44,747 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:14:44,748 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:44,751 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 11 proven. 7 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-06 21:14:44,751 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:44,751 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [868036526] [2023-11-06 21:14:44,752 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [868036526] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 21:14:44,752 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1033002241] [2023-11-06 21:14:44,752 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:44,752 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:14:44,753 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:14:44,759 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 21:14:44,793 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-06 21:14:44,874 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:44,876 INFO L262 TraceCheckSpWp]: Trace formula consists of 294 conjuncts, 8 conjunts are in the unsatisfiable core [2023-11-06 21:14:44,884 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 21:14:45,034 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 14 proven. 6 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:14:45,034 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-06 21:14:45,176 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 12 proven. 6 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-06 21:14:45,177 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1033002241] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-06 21:14:45,177 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-06 21:14:45,177 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 9 [2023-11-06 21:14:45,177 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1865234361] [2023-11-06 21:14:45,177 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-06 21:14:45,178 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2023-11-06 21:14:45,178 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:45,179 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2023-11-06 21:14:45,179 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=18, Invalid=54, Unknown=0, NotChecked=0, Total=72 [2023-11-06 21:14:45,179 INFO L87 Difference]: Start difference. First operand 271 states and 344 transitions. Second operand has 9 states, 9 states have (on average 8.333333333333334) internal successors, (75), 6 states have internal predecessors, (75), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-06 21:14:45,788 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:45,788 INFO L93 Difference]: Finished difference Result 636 states and 856 transitions. [2023-11-06 21:14:45,788 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2023-11-06 21:14:45,789 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 8.333333333333334) internal successors, (75), 6 states have internal predecessors, (75), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) Word has length 80 [2023-11-06 21:14:45,790 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:45,793 INFO L225 Difference]: With dead ends: 636 [2023-11-06 21:14:45,793 INFO L226 Difference]: Without dead ends: 412 [2023-11-06 21:14:45,795 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 201 GetRequests, 168 SyntacticMatches, 7 SemanticMatches, 26 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 174 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=214, Invalid=542, Unknown=0, NotChecked=0, Total=756 [2023-11-06 21:14:45,796 INFO L413 NwaCegarLoop]: 84 mSDtfsCounter, 284 mSDsluCounter, 393 mSDsCounter, 0 mSdLazyCounter, 376 mSolverCounterSat, 69 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 288 SdHoareTripleChecker+Valid, 477 SdHoareTripleChecker+Invalid, 445 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 69 IncrementalHoareTripleChecker+Valid, 376 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:45,797 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [288 Valid, 477 Invalid, 445 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [69 Valid, 376 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-06 21:14:45,798 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 412 states. [2023-11-06 21:14:45,852 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 412 to 365. [2023-11-06 21:14:45,853 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 365 states, 289 states have (on average 1.2283737024221453) internal successors, (355), 310 states have internal predecessors, (355), 36 states have call successors, (36), 33 states have call predecessors, (36), 39 states have return successors, (82), 36 states have call predecessors, (82), 36 states have call successors, (82) [2023-11-06 21:14:45,856 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 365 states to 365 states and 473 transitions. [2023-11-06 21:14:45,857 INFO L78 Accepts]: Start accepts. Automaton has 365 states and 473 transitions. Word has length 80 [2023-11-06 21:14:45,858 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:45,858 INFO L495 AbstractCegarLoop]: Abstraction has 365 states and 473 transitions. [2023-11-06 21:14:45,858 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 8.333333333333334) internal successors, (75), 6 states have internal predecessors, (75), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-06 21:14:45,859 INFO L276 IsEmpty]: Start isEmpty. Operand 365 states and 473 transitions. [2023-11-06 21:14:45,861 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 115 [2023-11-06 21:14:45,861 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:45,861 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:45,872 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2023-11-06 21:14:46,067 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-06 21:14:46,068 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:46,068 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:46,068 INFO L85 PathProgramCache]: Analyzing trace with hash -2051063763, now seen corresponding path program 2 times [2023-11-06 21:14:46,068 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:46,068 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [871785873] [2023-11-06 21:14:46,069 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:46,069 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:46,110 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:46,248 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:14:46,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:46,257 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-11-06 21:14:46,261 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:46,281 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 21:14:46,284 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:46,296 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 54 [2023-11-06 21:14:46,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:46,395 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-06 21:14:46,397 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:46,399 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:14:46,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:46,401 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 99 [2023-11-06 21:14:46,402 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:46,404 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:14:46,404 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:46,406 INFO L134 CoverageAnalysis]: Checked inductivity of 74 backedges. 51 proven. 11 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-06 21:14:46,406 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:46,406 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [871785873] [2023-11-06 21:14:46,406 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [871785873] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 21:14:46,407 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1646456017] [2023-11-06 21:14:46,407 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2023-11-06 21:14:46,407 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:14:46,407 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:14:46,408 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 21:14:46,431 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-06 21:14:46,541 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2023-11-06 21:14:46,541 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2023-11-06 21:14:46,543 INFO L262 TraceCheckSpWp]: Trace formula consists of 377 conjuncts, 10 conjunts are in the unsatisfiable core [2023-11-06 21:14:46,549 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 21:14:46,710 INFO L134 CoverageAnalysis]: Checked inductivity of 74 backedges. 62 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-06 21:14:46,710 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 21:14:46,710 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1646456017] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:46,710 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 21:14:46,711 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [10] total 14 [2023-11-06 21:14:46,711 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [304987024] [2023-11-06 21:14:46,711 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:46,712 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 21:14:46,712 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:46,712 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 21:14:46,713 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=32, Invalid=150, Unknown=0, NotChecked=0, Total=182 [2023-11-06 21:14:46,713 INFO L87 Difference]: Start difference. First operand 365 states and 473 transitions. Second operand has 6 states, 6 states have (on average 14.833333333333334) internal successors, (89), 6 states have internal predecessors, (89), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2023-11-06 21:14:47,069 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:47,069 INFO L93 Difference]: Finished difference Result 1004 states and 1357 transitions. [2023-11-06 21:14:47,070 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2023-11-06 21:14:47,070 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 14.833333333333334) internal successors, (89), 6 states have internal predecessors, (89), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) Word has length 114 [2023-11-06 21:14:47,070 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:47,075 INFO L225 Difference]: With dead ends: 1004 [2023-11-06 21:14:47,075 INFO L226 Difference]: Without dead ends: 685 [2023-11-06 21:14:47,077 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 145 GetRequests, 126 SyntacticMatches, 2 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 45 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=63, Invalid=279, Unknown=0, NotChecked=0, Total=342 [2023-11-06 21:14:47,078 INFO L413 NwaCegarLoop]: 129 mSDtfsCounter, 180 mSDsluCounter, 341 mSDsCounter, 0 mSdLazyCounter, 104 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 181 SdHoareTripleChecker+Valid, 470 SdHoareTripleChecker+Invalid, 119 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 104 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:47,079 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [181 Valid, 470 Invalid, 119 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 104 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 21:14:47,080 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 685 states. [2023-11-06 21:14:47,165 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 685 to 616. [2023-11-06 21:14:47,167 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 616 states, 489 states have (on average 1.2229038854805725) internal successors, (598), 518 states have internal predecessors, (598), 61 states have call successors, (61), 58 states have call predecessors, (61), 65 states have return successors, (123), 63 states have call predecessors, (123), 61 states have call successors, (123) [2023-11-06 21:14:47,172 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 616 states to 616 states and 782 transitions. [2023-11-06 21:14:47,173 INFO L78 Accepts]: Start accepts. Automaton has 616 states and 782 transitions. Word has length 114 [2023-11-06 21:14:47,173 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:47,173 INFO L495 AbstractCegarLoop]: Abstraction has 616 states and 782 transitions. [2023-11-06 21:14:47,173 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 14.833333333333334) internal successors, (89), 6 states have internal predecessors, (89), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2023-11-06 21:14:47,174 INFO L276 IsEmpty]: Start isEmpty. Operand 616 states and 782 transitions. [2023-11-06 21:14:47,176 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 115 [2023-11-06 21:14:47,176 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:14:47,177 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:47,183 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-11-06 21:14:47,383 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2023-11-06 21:14:47,383 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:14:47,384 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:14:47,384 INFO L85 PathProgramCache]: Analyzing trace with hash -1607163089, now seen corresponding path program 1 times [2023-11-06 21:14:47,384 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:14:47,384 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1443470036] [2023-11-06 21:14:47,384 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:14:47,385 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:14:47,411 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:47,540 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:14:47,541 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:47,551 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-11-06 21:14:47,554 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:47,563 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 21:14:47,565 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:47,569 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 54 [2023-11-06 21:14:47,573 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:47,642 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-06 21:14:47,644 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:47,645 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:14:47,648 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:47,649 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 99 [2023-11-06 21:14:47,650 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:47,652 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:14:47,654 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:14:47,655 INFO L134 CoverageAnalysis]: Checked inductivity of 74 backedges. 42 proven. 0 refuted. 0 times theorem prover too weak. 32 trivial. 0 not checked. [2023-11-06 21:14:47,655 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:14:47,655 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1443470036] [2023-11-06 21:14:47,656 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1443470036] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:14:47,656 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:14:47,656 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2023-11-06 21:14:47,656 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [782840501] [2023-11-06 21:14:47,656 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:14:47,657 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2023-11-06 21:14:47,657 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:14:47,658 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2023-11-06 21:14:47,658 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=19, Invalid=71, Unknown=0, NotChecked=0, Total=90 [2023-11-06 21:14:47,658 INFO L87 Difference]: Start difference. First operand 616 states and 782 transitions. Second operand has 10 states, 10 states have (on average 8.0) internal successors, (80), 7 states have internal predecessors, (80), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2023-11-06 21:14:47,963 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:14:47,963 INFO L93 Difference]: Finished difference Result 857 states and 1071 transitions. [2023-11-06 21:14:47,965 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2023-11-06 21:14:47,965 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 10 states have (on average 8.0) internal successors, (80), 7 states have internal predecessors, (80), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 114 [2023-11-06 21:14:47,966 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:14:47,967 INFO L225 Difference]: With dead ends: 857 [2023-11-06 21:14:47,967 INFO L226 Difference]: Without dead ends: 0 [2023-11-06 21:14:47,969 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 33 GetRequests, 20 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 21 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=43, Invalid=167, Unknown=0, NotChecked=0, Total=210 [2023-11-06 21:14:47,970 INFO L413 NwaCegarLoop]: 51 mSDtfsCounter, 169 mSDsluCounter, 260 mSDsCounter, 0 mSdLazyCounter, 310 mSolverCounterSat, 39 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 171 SdHoareTripleChecker+Valid, 311 SdHoareTripleChecker+Invalid, 349 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 39 IncrementalHoareTripleChecker+Valid, 310 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 21:14:47,971 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [171 Valid, 311 Invalid, 349 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [39 Valid, 310 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 21:14:47,971 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-06 21:14:47,971 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-06 21:14:47,972 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:14:47,972 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-06 21:14:47,973 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 114 [2023-11-06 21:14:47,973 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:14:47,973 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-06 21:14:47,973 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 10 states have (on average 8.0) internal successors, (80), 7 states have internal predecessors, (80), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2023-11-06 21:14:47,973 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-06 21:14:47,974 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-06 21:14:47,977 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-06 21:14:47,977 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2023-11-06 21:14:47,979 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-06 21:14:51,193 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 156 162) no Hoare annotation was computed. [2023-11-06 21:14:51,194 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 156 162) the Hoare annotation is: true [2023-11-06 21:14:51,194 INFO L899 garLoopResultBuilder]: For program point L402-1(lines 398 409) no Hoare annotation was computed. [2023-11-06 21:14:51,194 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 398 409) the Hoare annotation is: true [2023-11-06 21:14:51,194 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 398 409) no Hoare annotation was computed. [2023-11-06 21:14:51,194 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 514 543) no Hoare annotation was computed. [2023-11-06 21:14:51,194 INFO L902 garLoopResultBuilder]: At program point L539(lines 514 543) the Hoare annotation is: true [2023-11-06 21:14:51,194 INFO L899 garLoopResultBuilder]: For program point L535(line 535) no Hoare annotation was computed. [2023-11-06 21:14:51,194 INFO L899 garLoopResultBuilder]: For program point L528(lines 528 532) no Hoare annotation was computed. [2023-11-06 21:14:51,195 INFO L902 garLoopResultBuilder]: At program point L528-1(lines 528 532) the Hoare annotation is: true [2023-11-06 21:14:51,195 INFO L899 garLoopResultBuilder]: For program point L525(line 525) no Hoare annotation was computed. [2023-11-06 21:14:51,195 INFO L902 garLoopResultBuilder]: At program point L524-2(lines 524 538) the Hoare annotation is: true [2023-11-06 21:14:51,195 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 514 543) the Hoare annotation is: true [2023-11-06 21:14:51,195 INFO L902 garLoopResultBuilder]: At program point L520(line 520) the Hoare annotation is: true [2023-11-06 21:14:51,195 INFO L899 garLoopResultBuilder]: For program point L520-1(line 520) no Hoare annotation was computed. [2023-11-06 21:14:51,195 INFO L899 garLoopResultBuilder]: For program point L378(lines 378 382) no Hoare annotation was computed. [2023-11-06 21:14:51,196 INFO L895 garLoopResultBuilder]: At program point L378-2(lines 374 385) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (< |old(~waterLevel~0)| 2))) (and (or .cse0 .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0))) (or .cse2 (not (= |old(~waterLevel~0)| 1)) .cse0) (or .cse2 .cse0 .cse1))) [2023-11-06 21:14:51,196 INFO L895 garLoopResultBuilder]: At program point L209(line 209) the Hoare annotation is: (let ((.cse2 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse2)) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 (= ~pumpRunning~0 0) (< |old(~waterLevel~0)| 1) .cse1) (or .cse1 (and .cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (< |old(~waterLevel~0)| 2)) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (= ~waterLevel~0 1))))) [2023-11-06 21:14:51,196 INFO L895 garLoopResultBuilder]: At program point L209-1(lines 190 214) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (< |old(~waterLevel~0)| 2))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (and .cse2 (= ~waterLevel~0 1))) (or .cse1 (<= 2 ~waterLevel~0) .cse3 (and (not (= |timeShift_isLowWaterLevel_#res#1| 0)) .cse2 (not (= |timeShift_processEnvironment_~tmp~2#1| 0)) (<= 1 ~waterLevel~0))) (or .cse0 .cse1 .cse3 (= |old(~waterLevel~0)| ~waterLevel~0)))) [2023-11-06 21:14:51,196 INFO L899 garLoopResultBuilder]: For program point L143-1(lines 143 149) no Hoare annotation was computed. [2023-11-06 21:14:51,197 INFO L895 garLoopResultBuilder]: At program point isLowWaterSensorDry_returnLabel#1(lines 465 473) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (< |old(~waterLevel~0)| 2))) (and (or .cse0 .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 ~waterLevel~0))) (or .cse2 (not (= |old(~waterLevel~0)| 1)) .cse0) (or .cse2 .cse0 .cse1))) [2023-11-06 21:14:51,197 INFO L899 garLoopResultBuilder]: For program point L333(lines 333 337) no Hoare annotation was computed. [2023-11-06 21:14:51,197 INFO L899 garLoopResultBuilder]: For program point L333-2(lines 333 337) no Hoare annotation was computed. [2023-11-06 21:14:51,197 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 132 155) no Hoare annotation was computed. [2023-11-06 21:14:51,197 INFO L899 garLoopResultBuilder]: For program point L358(lines 358 364) no Hoare annotation was computed. [2023-11-06 21:14:51,197 INFO L899 garLoopResultBuilder]: For program point L354(lines 354 367) no Hoare annotation was computed. [2023-11-06 21:14:51,197 INFO L895 garLoopResultBuilder]: At program point L354-1(lines 346 370) the Hoare annotation is: (let ((.cse3 (< |old(~waterLevel~0)| 2)) (.cse0 (<= 2 |timeShift___utac_acc__Specification4_spec__1_~tmp~6#1|)) (.cse1 (<= 2 |timeShift_getWaterLevel_#res#1|)) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse4 (= ~pumpRunning~0 0))) (and (or (and (<= 2 ~waterLevel~0) .cse0 .cse1) .cse2 .cse3 (and (not (= |timeShift_isLowWaterLevel_#res#1| 0)) .cse4 (<= 1 |timeShift___utac_acc__Specification4_spec__1_~tmp~6#1|) (<= 1 ~waterLevel~0) (<= 1 |timeShift_getWaterLevel_#res#1|))) (or .cse5 .cse2 .cse3 (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1)) (or .cse5 (not (= |old(~waterLevel~0)| 1)) .cse2 (and .cse4 (= |timeShift___utac_acc__Specification4_spec__1_~tmp~6#1| 1) (= ~waterLevel~0 1) (= |timeShift_getWaterLevel_#res#1| 1))))) [2023-11-06 21:14:51,198 INFO L895 garLoopResultBuilder]: At program point getWaterLevel_returnLabel#1(lines 442 450) the Hoare annotation is: (let ((.cse6 (<= 2 ~waterLevel~0)) (.cse8 (= 1 ~systemActive~0)) (.cse5 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse7 (<= 2 |timeShift_getWaterLevel_#res#1|))) (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (and .cse6 .cse8 .cse5 .cse7)) (.cse1 (not .cse8)) (.cse2 (< |old(~waterLevel~0)| 2)) (.cse4 (= ~pumpRunning~0 0))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (= |timeShift_getWaterLevel_#res#1| 1)) (or .cse0 .cse1 .cse2 .cse3) (or .cse0 (< |old(~waterLevel~0)| 1) (and .cse4 .cse5) .cse1 .cse3) (or .cse1 (and .cse6 .cse7) .cse2 (and (not (= |timeShift_isLowWaterLevel_#res#1| 0)) .cse4 (<= 1 ~waterLevel~0) (<= 1 |timeShift_getWaterLevel_#res#1|)))))) [2023-11-06 21:14:51,198 INFO L899 garLoopResultBuilder]: For program point L136-1(lines 135 154) no Hoare annotation was computed. [2023-11-06 21:14:51,198 INFO L899 garLoopResultBuilder]: For program point L198(lines 198 206) no Hoare annotation was computed. [2023-11-06 21:14:51,198 INFO L899 garLoopResultBuilder]: For program point L194(lines 194 211) no Hoare annotation was computed. [2023-11-06 21:14:51,198 INFO L899 garLoopResultBuilder]: For program point L979(line 979) no Hoare annotation was computed. [2023-11-06 21:14:51,198 INFO L895 garLoopResultBuilder]: At program point __automaton_fail_returnLabel#1(lines 975 982) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2)) (or (not (= |old(~pumpRunning~0)| 0)) (not (= |old(~waterLevel~0)| 1)) .cse0))) [2023-11-06 21:14:51,199 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 132 155) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |old(~waterLevel~0)| ~waterLevel~0))) (or (not (= |old(~pumpRunning~0)| 0)) (not (= |old(~waterLevel~0)| 1)) .cse0 (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1))))) [2023-11-06 21:14:51,199 INFO L895 garLoopResultBuilder]: At program point deactivatePump_returnLabel#1(lines 241 248) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (< |old(~waterLevel~0)| 2))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1) (or .cse1 .cse2 (and (= |timeShift_isLowWaterSensorDry_#res#1| 0) (not (= |timeShift_isLowWaterLevel_#res#1| 0)) (= ~pumpRunning~0 0) (not (= |timeShift_processEnvironment_~tmp~2#1| 0)) (<= 1 ~waterLevel~0))) (or .cse0 .cse1 .cse2))) [2023-11-06 21:14:51,199 INFO L895 garLoopResultBuilder]: At program point isLowWaterLevel_returnLabel#1(lines 324 342) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (< |old(~waterLevel~0)| 2))) (and (or .cse0 .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (not (= |timeShift_isLowWaterLevel_#res#1| 0)) (<= 1 ~waterLevel~0) (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (= |timeShift_isLowWaterLevel_~tmp~5#1| 0))) (or .cse2 (not (= |old(~waterLevel~0)| 1)) .cse0) (or .cse2 .cse0 .cse1))) [2023-11-06 21:14:51,200 INFO L895 garLoopResultBuilder]: At program point L204(line 204) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2)) (or (not (= |old(~pumpRunning~0)| 0)) (not (= |old(~waterLevel~0)| 1)) .cse0))) [2023-11-06 21:14:51,200 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 132 155) no Hoare annotation was computed. [2023-11-06 21:14:51,200 INFO L895 garLoopResultBuilder]: At program point isPumpRunning_returnLabel#1(lines 260 268) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2)) (or (not (= |old(~pumpRunning~0)| 0)) (not (= |old(~waterLevel~0)| 1)) .cse0))) [2023-11-06 21:14:51,200 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 979) no Hoare annotation was computed. [2023-11-06 21:14:51,200 INFO L902 garLoopResultBuilder]: At program point runTest_returnLabel#1(lines 575 584) the Hoare annotation is: true [2023-11-06 21:14:51,200 INFO L895 garLoopResultBuilder]: At program point L110(lines 63 111) the Hoare annotation is: false [2023-11-06 21:14:51,200 INFO L895 garLoopResultBuilder]: At program point select_features_returnLabel#1(lines 489 495) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 21:14:51,201 INFO L902 garLoopResultBuilder]: At program point main_returnLabel#1(lines 585 607) the Hoare annotation is: true [2023-11-06 21:14:51,201 INFO L899 garLoopResultBuilder]: For program point L65(lines 64 109) no Hoare annotation was computed. [2023-11-06 21:14:51,201 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2023-11-06 21:14:51,201 INFO L899 garLoopResultBuilder]: For program point L94(lines 94 105) no Hoare annotation was computed. [2023-11-06 21:14:51,201 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2023-11-06 21:14:51,201 INFO L895 garLoopResultBuilder]: At program point L86(line 86) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 (= ~pumpRunning~0 0) .cse1 .cse2 .cse3 (= ~waterLevel~0 1)))) [2023-11-06 21:14:51,201 INFO L895 garLoopResultBuilder]: At program point L107(lines 64 109) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 (= ~pumpRunning~0 0) .cse1 .cse2 .cse3 (= ~waterLevel~0 1)))) [2023-11-06 21:14:51,201 INFO L899 garLoopResultBuilder]: For program point L74(lines 74 80) no Hoare annotation was computed. [2023-11-06 21:14:51,202 INFO L895 garLoopResultBuilder]: At program point setup_returnLabel#1(lines 568 574) the Hoare annotation is: (and (= |ULTIMATE.start_main_~tmp~7#1| 1) (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 21:14:51,202 INFO L899 garLoopResultBuilder]: For program point L74-1(lines 74 80) no Hoare annotation was computed. [2023-11-06 21:14:51,202 INFO L899 garLoopResultBuilder]: For program point L66(lines 66 70) no Hoare annotation was computed. [2023-11-06 21:14:51,202 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-06 21:14:51,202 INFO L899 garLoopResultBuilder]: For program point L595(lines 595 602) no Hoare annotation was computed. [2023-11-06 21:14:51,202 INFO L899 garLoopResultBuilder]: For program point L595-2(lines 595 602) no Hoare annotation was computed. [2023-11-06 21:14:51,202 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-06 21:14:51,202 INFO L895 garLoopResultBuilder]: At program point select_helpers_returnLabel#1(lines 496 502) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 21:14:51,202 INFO L899 garLoopResultBuilder]: For program point L100(lines 100 104) no Hoare annotation was computed. [2023-11-06 21:14:51,203 INFO L895 garLoopResultBuilder]: At program point L100-2(lines 94 105) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 (= ~pumpRunning~0 0) .cse1 .cse2 .cse3 (= ~waterLevel~0 1)))) [2023-11-06 21:14:51,203 INFO L899 garLoopResultBuilder]: For program point L84(lines 84 90) no Hoare annotation was computed. [2023-11-06 21:14:51,203 INFO L899 garLoopResultBuilder]: For program point L84-1(lines 84 90) no Hoare annotation was computed. [2023-11-06 21:14:51,203 INFO L902 garLoopResultBuilder]: At program point L113(lines 54 117) the Hoare annotation is: true [2023-11-06 21:14:51,203 INFO L895 garLoopResultBuilder]: At program point L76(line 76) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 (= ~pumpRunning~0 0) .cse1 .cse2 .cse3 (= ~waterLevel~0 1)))) [2023-11-06 21:14:51,203 INFO L895 garLoopResultBuilder]: At program point valid_product_returnLabel#1(lines 503 511) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2023-11-06 21:14:51,204 INFO L899 garLoopResultBuilder]: For program point L314(lines 314 318) no Hoare annotation was computed. [2023-11-06 21:14:51,204 INFO L899 garLoopResultBuilder]: For program point L314-2(lines 314 318) no Hoare annotation was computed. [2023-11-06 21:14:51,204 INFO L895 garLoopResultBuilder]: At program point L178(line 178) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= 1 ~systemActive~0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |processEnvironment__wrappee__highWaterSensor_~tmp~1#1| 0))) (and (or (not (= ~waterLevel~0 1)) .cse0 (and (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1|) .cse1 .cse2) .cse3) (or .cse0 .cse3 (and .cse1 .cse2) (< ~waterLevel~0 2)))) [2023-11-06 21:14:51,204 INFO L899 garLoopResultBuilder]: For program point L172(lines 172 180) no Hoare annotation was computed. [2023-11-06 21:14:51,204 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 164 188) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0))) [2023-11-06 21:14:51,204 INFO L899 garLoopResultBuilder]: For program point L168(lines 168 185) no Hoare annotation was computed. [2023-11-06 21:14:51,204 INFO L899 garLoopResultBuilder]: For program point L455(lines 455 461) no Hoare annotation was computed. [2023-11-06 21:14:51,205 INFO L895 garLoopResultBuilder]: At program point isHighWaterSensorDry_returnLabel#1(lines 451 464) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 .cse1 .cse2 (< ~waterLevel~0 2)) (or (not (= ~waterLevel~0 1)) .cse0 .cse2 (and (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1|) .cse1)))) [2023-11-06 21:14:51,205 INFO L895 garLoopResultBuilder]: At program point isHighWaterLevel_returnLabel#1(lines 305 323) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 .cse1 .cse2 (< ~waterLevel~0 2)) (or (not (= ~waterLevel~0 1)) .cse0 .cse2 (and (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1|) .cse1 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~1#1| 0) (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~4#1|) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0))))) [2023-11-06 21:14:51,205 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 164 188) no Hoare annotation was computed. [2023-11-06 21:14:51,205 INFO L895 garLoopResultBuilder]: At program point L183(line 183) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (not (= 1 ~systemActive~0))) [2023-11-06 21:14:51,205 INFO L899 garLoopResultBuilder]: For program point L183-1(lines 164 188) no Hoare annotation was computed. [2023-11-06 21:14:51,206 INFO L895 garLoopResultBuilder]: At program point isMethaneLevelCritical_returnLabel#1(lines 410 418) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1) (or .cse0 (= ~pumpRunning~0 0) .cse1 (< ~waterLevel~0 2)))) [2023-11-06 21:14:51,206 INFO L895 garLoopResultBuilder]: At program point isMethaneAlarm_returnLabel#1(lines 249 259) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1) (or .cse0 (= ~pumpRunning~0 0) .cse1 (< ~waterLevel~0 2)))) [2023-11-06 21:14:51,206 INFO L899 garLoopResultBuilder]: For program point L231(lines 231 237) no Hoare annotation was computed. [2023-11-06 21:14:51,206 INFO L895 garLoopResultBuilder]: At program point activatePump__wrappee__lowWaterSensor_returnLabel#1(lines 215 222) the Hoare annotation is: (or (not (= ~waterLevel~0 1)) (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2023-11-06 21:14:51,206 INFO L895 garLoopResultBuilder]: At program point L231-2(lines 224 240) the Hoare annotation is: (or (not (= ~waterLevel~0 1)) (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2023-11-06 21:14:51,206 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 386 397) no Hoare annotation was computed. [2023-11-06 21:14:51,206 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 386 397) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or .cse0 (< |old(~waterLevel~0)| 2) .cse1) (or (< |old(~waterLevel~0)| 1) (not (= ~pumpRunning~0 0)) .cse0 .cse1))) [2023-11-06 21:14:51,207 INFO L899 garLoopResultBuilder]: For program point L390-1(lines 386 397) no Hoare annotation was computed. [2023-11-06 21:14:51,209 INFO L445 BasicCegarLoop]: Path program histogram: [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:14:51,211 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-06 21:14:51,275 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 06.11 09:14:51 BoogieIcfgContainer [2023-11-06 21:14:51,284 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-06 21:14:51,285 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-06 21:14:51,285 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-06 21:14:51,285 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-06 21:14:51,286 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 09:14:40" (3/4) ... [2023-11-06 21:14:51,288 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-06 21:14:51,293 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-06 21:14:51,294 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-06 21:14:51,294 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-06 21:14:51,294 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-06 21:14:51,294 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 21:14:51,295 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-06 21:14:51,309 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 17 nodes and edges [2023-11-06 21:14:51,310 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2023-11-06 21:14:51,310 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-06 21:14:51,311 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 21:14:51,312 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 21:14:51,342 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0) && (\result == 1)) && (1 == systemActive)) && (waterLevel == 1)) [2023-11-06 21:14:51,343 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((tmp == 1) && (pumpRunning == 0)) && (\result == 1)) && (1 == systemActive)) && (waterLevel == 1)) [2023-11-06 21:14:51,343 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1) && (\result == 1)) && (2 <= waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0)) || ((((((tmp == 1) && (pumpRunning == 0)) && (\result == 1)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1))) [2023-11-06 21:14:51,345 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) [2023-11-06 21:14:51,346 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) || ((pumpRunning == 0) && (waterLevel == 1))) && (((!((1 == systemActive)) || (2 <= waterLevel)) || (\old(waterLevel) < 2)) || (((!((\result == 0)) && (pumpRunning == 0)) && !((tmp == 0))) && (1 <= waterLevel)))) && (((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(waterLevel) == waterLevel))) [2023-11-06 21:14:51,348 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) || (\result == 1)) && (((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || ((((2 <= waterLevel) && (1 == systemActive)) && (\old(waterLevel) == waterLevel)) && (2 <= \result)))) && ((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || ((((2 <= waterLevel) && (1 == systemActive)) && (\old(waterLevel) == waterLevel)) && (2 <= \result)))) && (((!((1 == systemActive)) || ((2 <= waterLevel) && (2 <= \result))) || (\old(waterLevel) < 2)) || (((!((\result == 0)) && (pumpRunning == 0)) && (1 <= waterLevel)) && (1 <= \result)))) [2023-11-06 21:14:51,348 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= waterLevel))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) [2023-11-06 21:14:51,349 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((2 <= waterLevel) && (2 <= tmp)) && (2 <= \result)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || ((((!((\result == 0)) && (pumpRunning == 0)) && (1 <= tmp)) && (1 <= waterLevel)) && (1 <= \result))) && (((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (((2 <= tmp) && (\old(waterLevel) == waterLevel)) && (2 <= \result)))) && (((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) || ((((pumpRunning == 0) && (tmp == 1)) && (waterLevel == 1)) && (\result == 1)))) [2023-11-06 21:14:51,349 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2)) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || ((1 <= \result) && (pumpRunning == 0)))) [2023-11-06 21:14:51,349 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((1 == systemActive)) || (\old(waterLevel) < 2)) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) [2023-11-06 21:14:51,350 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || ((((((pumpRunning == \old(pumpRunning)) && (\result == 0)) && !((\result == 0))) && (1 <= waterLevel)) && (1 <= tmp___0)) && (tmp == 0))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) [2023-11-06 21:14:51,350 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2)) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || (((((1 <= \result) && (pumpRunning == 0)) && (tmp___0 == 0)) && (1 <= tmp)) && (\result == 0)))) [2023-11-06 21:14:51,351 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((1 == systemActive)) || (\old(waterLevel) < 2)) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) [2023-11-06 21:14:51,351 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) && ((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((((\result == 0) && !((\result == 0))) && (pumpRunning == 0)) && !((tmp == 0))) && (1 <= waterLevel)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) [2023-11-06 21:14:51,354 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2))) [2023-11-06 21:14:51,355 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2))) [2023-11-06 21:14:51,355 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) [2023-11-06 21:14:51,357 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) [2023-11-06 21:14:51,409 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0) && (\result == 1)) && (1 == systemActive)) && (waterLevel == 1)) [2023-11-06 21:14:51,409 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((tmp == 1) && (pumpRunning == 0)) && (\result == 1)) && (1 == systemActive)) && (waterLevel == 1)) [2023-11-06 21:14:51,409 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 1) && (\result == 1)) && (2 <= waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0)) || ((((((tmp == 1) && (pumpRunning == 0)) && (\result == 1)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1))) [2023-11-06 21:14:51,409 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) [2023-11-06 21:14:51,410 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) || ((pumpRunning == 0) && (waterLevel == 1))) && (((!((1 == systemActive)) || (2 <= waterLevel)) || (\old(waterLevel) < 2)) || (((!((\result == 0)) && (pumpRunning == 0)) && !((tmp == 0))) && (1 <= waterLevel)))) && (((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(waterLevel) == waterLevel))) [2023-11-06 21:14:51,410 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) || (\result == 1)) && (((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || ((((2 <= waterLevel) && (1 == systemActive)) && (\old(waterLevel) == waterLevel)) && (2 <= \result)))) && ((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || ((((2 <= waterLevel) && (1 == systemActive)) && (\old(waterLevel) == waterLevel)) && (2 <= \result)))) && (((!((1 == systemActive)) || ((2 <= waterLevel) && (2 <= \result))) || (\old(waterLevel) < 2)) || (((!((\result == 0)) && (pumpRunning == 0)) && (1 <= waterLevel)) && (1 <= \result)))) [2023-11-06 21:14:51,410 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= waterLevel))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) [2023-11-06 21:14:51,410 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((2 <= waterLevel) && (2 <= tmp)) && (2 <= \result)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || ((((!((\result == 0)) && (pumpRunning == 0)) && (1 <= tmp)) && (1 <= waterLevel)) && (1 <= \result))) && (((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (((2 <= tmp) && (\old(waterLevel) == waterLevel)) && (2 <= \result)))) && (((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) || ((((pumpRunning == 0) && (tmp == 1)) && (waterLevel == 1)) && (\result == 1)))) [2023-11-06 21:14:51,411 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2)) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || ((1 <= \result) && (pumpRunning == 0)))) [2023-11-06 21:14:51,411 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((1 == systemActive)) || (\old(waterLevel) < 2)) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) [2023-11-06 21:14:51,411 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || ((((((pumpRunning == \old(pumpRunning)) && (\result == 0)) && !((\result == 0))) && (1 <= waterLevel)) && (1 <= tmp___0)) && (tmp == 0))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) [2023-11-06 21:14:51,411 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2)) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || (((((1 <= \result) && (pumpRunning == 0)) && (tmp___0 == 0)) && (1 <= tmp)) && (\result == 0)))) [2023-11-06 21:14:51,411 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((1 == systemActive)) || (\old(waterLevel) < 2)) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) [2023-11-06 21:14:51,411 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) && ((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((((\result == 0) && !((\result == 0))) && (pumpRunning == 0)) && !((tmp == 0))) && (1 <= waterLevel)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) [2023-11-06 21:14:51,411 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2))) [2023-11-06 21:14:51,412 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2))) [2023-11-06 21:14:51,412 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) [2023-11-06 21:14:51,412 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) [2023-11-06 21:14:51,435 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.graphml [2023-11-06 21:14:51,436 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.yaml [2023-11-06 21:14:51,437 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-06 21:14:51,445 INFO L158 Benchmark]: Toolchain (without parser) took 12310.50ms. Allocated memory was 172.0MB in the beginning and 268.4MB in the end (delta: 96.5MB). Free memory was 137.2MB in the beginning and 93.8MB in the end (delta: 43.4MB). Peak memory consumption was 139.8MB. Max. memory is 16.1GB. [2023-11-06 21:14:51,447 INFO L158 Benchmark]: CDTParser took 0.26ms. Allocated memory is still 125.8MB. Free memory is still 94.0MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-06 21:14:51,447 INFO L158 Benchmark]: CACSL2BoogieTranslator took 552.49ms. Allocated memory is still 172.0MB. Free memory was 137.2MB in the beginning and 125.2MB in the end (delta: 12.0MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. [2023-11-06 21:14:51,447 INFO L158 Benchmark]: Boogie Procedure Inliner took 76.14ms. Allocated memory is still 172.0MB. Free memory was 125.2MB in the beginning and 123.2MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-06 21:14:51,448 INFO L158 Benchmark]: Boogie Preprocessor took 57.11ms. Allocated memory is still 172.0MB. Free memory was 123.2MB in the beginning and 121.1MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-06 21:14:51,449 INFO L158 Benchmark]: RCFGBuilder took 510.21ms. Allocated memory is still 172.0MB. Free memory was 121.1MB in the beginning and 104.3MB in the end (delta: 16.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2023-11-06 21:14:51,449 INFO L158 Benchmark]: TraceAbstraction took 10955.16ms. Allocated memory was 172.0MB in the beginning and 268.4MB in the end (delta: 96.5MB). Free memory was 103.2MB in the beginning and 101.2MB in the end (delta: 2.1MB). Peak memory consumption was 122.6MB. Max. memory is 16.1GB. [2023-11-06 21:14:51,450 INFO L158 Benchmark]: Witness Printer took 151.96ms. Allocated memory is still 268.4MB. Free memory was 101.2MB in the beginning and 93.8MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2023-11-06 21:14:51,453 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.26ms. Allocated memory is still 125.8MB. Free memory is still 94.0MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 552.49ms. Allocated memory is still 172.0MB. Free memory was 137.2MB in the beginning and 125.2MB in the end (delta: 12.0MB). Peak memory consumption was 12.6MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 76.14ms. Allocated memory is still 172.0MB. Free memory was 125.2MB in the beginning and 123.2MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 57.11ms. Allocated memory is still 172.0MB. Free memory was 123.2MB in the beginning and 121.1MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 510.21ms. Allocated memory is still 172.0MB. Free memory was 121.1MB in the beginning and 104.3MB in the end (delta: 16.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 10955.16ms. Allocated memory was 172.0MB in the beginning and 268.4MB in the end (delta: 96.5MB). Free memory was 103.2MB in the beginning and 101.2MB in the end (delta: 2.1MB). Peak memory consumption was 122.6MB. Max. memory is 16.1GB. * Witness Printer took 151.96ms. Allocated memory is still 268.4MB. Free memory was 101.2MB in the beginning and 93.8MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49] - GenericResultAtLocation [Line: 118]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [118] - GenericResultAtLocation [Line: 343]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [343] - GenericResultAtLocation [Line: 371]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [371] - GenericResultAtLocation [Line: 474]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [474] - GenericResultAtLocation [Line: 512]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [512] - GenericResultAtLocation [Line: 608]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [608] - GenericResultAtLocation [Line: 974]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [974] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 979]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 86 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 10.8s, OverallIterations: 12, TraceHistogramMax: 3, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.0s, AutomataDifference: 3.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 3.2s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1750 SdHoareTripleChecker+Valid, 1.8s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1734 mSDsluCounter, 3499 SdHoareTripleChecker+Invalid, 1.5s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2548 mSDsCounter, 336 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1977 IncrementalHoareTripleChecker+Invalid, 2313 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 336 mSolverCounterUnsat, 951 mSDtfsCounter, 1977 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 498 GetRequests, 358 SyntacticMatches, 10 SemanticMatches, 130 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 406 ImplicationChecksByTransitivity, 1.1s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=616occurred in iteration=11, InterpolantAutomatonStates: 127, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 12 MinimizatonAttempts, 256 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 41 LocationsWithAnnotation, 1198 PreInvPairs, 1324 NumberOfFragments, 1055 HoareAnnotationTreeSize, 1198 FomulaSimplifications, 13760 FormulaSimplificationTreeSizeReduction, 1.0s HoareSimplificationTime, 41 FomulaSimplificationsInter, 4412 FormulaSimplificationTreeSizeReductionInter, 2.1s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 2.4s InterpolantComputationTime, 819 NumberOfCodeBlocks, 819 NumberOfCodeBlocksAsserted, 15 NumberOfCheckSat, 884 ConstructedInterpolants, 0 QuantifiedInterpolants, 1622 SizeOfPredicates, 8 NumberOfNonLiveVariables, 671 ConjunctsInSsa, 18 ConjunctsInUnsatCore, 15 InterpolantComputations, 11 PerfectInterpolantSequences, 252/282 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 63]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 568]: Loop Invariant Derived loop invariant: (((((tmp == 1) && (pumpRunning == 0)) && (\result == 1)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 215]: Loop Invariant Derived loop invariant: ((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) - InvariantResult [Line: 514]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 489]: Loop Invariant Derived loop invariant: (((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 324]: Loop Invariant Derived loop invariant: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || ((((((pumpRunning == \old(pumpRunning)) && (\result == 0)) && !((\result == 0))) && (1 <= waterLevel)) && (1 <= tmp___0)) && (tmp == 0))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) - InvariantResult [Line: 54]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 260]: Loop Invariant Derived loop invariant: ((!((1 == systemActive)) || (\old(waterLevel) < 2)) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) - InvariantResult [Line: 374]: Loop Invariant Derived loop invariant: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) - InvariantResult [Line: 451]: Loop Invariant Derived loop invariant: ((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2)) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || ((1 <= \result) && (pumpRunning == 0)))) - InvariantResult [Line: 465]: Loop Invariant Derived loop invariant: ((((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((pumpRunning == \old(pumpRunning)) && (\result == 0)) && (1 <= waterLevel))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) - InvariantResult [Line: 305]: Loop Invariant Derived loop invariant: ((((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2)) && (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) || (((((1 <= \result) && (pumpRunning == 0)) && (tmp___0 == 0)) && (1 <= tmp)) && (\result == 0)))) - InvariantResult [Line: 224]: Loop Invariant Derived loop invariant: ((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) - InvariantResult [Line: 575]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 975]: Loop Invariant Derived loop invariant: ((!((1 == systemActive)) || (\old(waterLevel) < 2)) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive)))) - InvariantResult [Line: 524]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 442]: Loop Invariant Derived loop invariant: ((((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) || (\result == 1)) && (((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || ((((2 <= waterLevel) && (1 == systemActive)) && (\old(waterLevel) == waterLevel)) && (2 <= \result)))) && ((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || ((pumpRunning == 0) && (\old(waterLevel) == waterLevel))) || !((1 == systemActive))) || ((((2 <= waterLevel) && (1 == systemActive)) && (\old(waterLevel) == waterLevel)) && (2 <= \result)))) && (((!((1 == systemActive)) || ((2 <= waterLevel) && (2 <= \result))) || (\old(waterLevel) < 2)) || (((!((\result == 0)) && (pumpRunning == 0)) && (1 <= waterLevel)) && (1 <= \result)))) - InvariantResult [Line: 190]: Loop Invariant Derived loop invariant: (((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) || ((pumpRunning == 0) && (waterLevel == 1))) && (((!((1 == systemActive)) || (2 <= waterLevel)) || (\old(waterLevel) < 2)) || (((!((\result == 0)) && (pumpRunning == 0)) && !((tmp == 0))) && (1 <= waterLevel)))) && (((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (\old(waterLevel) == waterLevel))) - InvariantResult [Line: 503]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (\result == 1)) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 496]: Loop Invariant Derived loop invariant: (((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1)) - InvariantResult [Line: 346]: Loop Invariant Derived loop invariant: ((((((((2 <= waterLevel) && (2 <= tmp)) && (2 <= \result)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || ((((!((\result == 0)) && (pumpRunning == 0)) && (1 <= tmp)) && (1 <= waterLevel)) && (1 <= \result))) && (((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2)) || (((2 <= tmp) && (\old(waterLevel) == waterLevel)) && (2 <= \result)))) && (((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) || ((((pumpRunning == 0) && (tmp == 1)) && (waterLevel == 1)) && (\result == 1)))) - InvariantResult [Line: 410]: Loop Invariant Derived loop invariant: (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2))) - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: ((((((tmp == 1) && (\result == 1)) && (2 <= waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0)) || ((((((tmp == 1) && (pumpRunning == 0)) && (\result == 1)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1))) - InvariantResult [Line: 249]: Loop Invariant Derived loop invariant: (((!((waterLevel == 1)) || !((\old(pumpRunning) == 0))) || !((1 == systemActive))) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || !((1 == systemActive))) || (waterLevel < 2))) - InvariantResult [Line: 585]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 241]: Loop Invariant Derived loop invariant: ((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || !((1 == systemActive))) && ((!((1 == systemActive)) || (\old(waterLevel) < 2)) || (((((\result == 0) && !((\result == 0))) && (pumpRunning == 0)) && !((tmp == 0))) && (1 <= waterLevel)))) && ((!((\old(pumpRunning) == 0)) || !((1 == systemActive))) || (\old(waterLevel) < 2))) RESULT: Ultimate proved your program to be correct! [2023-11-06 21:14:51,508 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_090828c3-a212-434f-9fc5-2e9aebf49f90/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE