./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec4_product64.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version e7bb482b Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec4_product64.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 0f3f23173af8ffbfd6ca2d826b937f078be2c112e64596739bc9740bb061a5d2 --- Real Ultimate output --- This is Ultimate 0.2.3-dev-e7bb482 [2023-11-06 21:15:58,792 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-06 21:15:58,877 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-06 21:15:58,888 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-06 21:15:58,889 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-06 21:15:58,939 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-06 21:15:58,943 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-06 21:15:58,944 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-06 21:15:58,945 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-06 21:15:58,947 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-06 21:15:58,948 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-06 21:15:58,949 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-06 21:15:58,950 INFO L153 SettingsManager]: * Use SBE=true [2023-11-06 21:15:58,953 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-06 21:15:58,953 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-06 21:15:58,954 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-06 21:15:58,955 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-06 21:15:58,960 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-06 21:15:58,960 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-06 21:15:58,961 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-06 21:15:58,961 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-06 21:15:58,968 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-06 21:15:58,969 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-06 21:15:58,969 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-06 21:15:58,970 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-06 21:15:58,970 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-06 21:15:58,971 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-06 21:15:58,972 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-06 21:15:58,972 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 21:15:58,973 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-06 21:15:58,974 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-06 21:15:58,974 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2023-11-06 21:15:58,975 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-06 21:15:58,975 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-06 21:15:58,975 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-06 21:15:58,976 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-06 21:15:58,977 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-06 21:15:58,977 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-06 21:15:58,978 INFO L153 SettingsManager]: * Independence relation used for large block encoding in concurrent analysis=SYNTACTIC [2023-11-06 21:15:58,978 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 0f3f23173af8ffbfd6ca2d826b937f078be2c112e64596739bc9740bb061a5d2 [2023-11-06 21:15:59,259 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-06 21:15:59,294 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-06 21:15:59,297 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-06 21:15:59,299 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-06 21:15:59,300 INFO L274 PluginConnector]: CDTParser initialized [2023-11-06 21:15:59,301 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/../../sv-benchmarks/c/product-lines/minepump_spec4_product64.cil.c [2023-11-06 21:16:02,513 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-06 21:16:02,828 INFO L384 CDTParser]: Found 1 translation units. [2023-11-06 21:16:02,828 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/sv-benchmarks/c/product-lines/minepump_spec4_product64.cil.c [2023-11-06 21:16:02,843 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/data/1e3d3843b/698a68d7101e4663aca9604b973d6c39/FLAG3e087406d [2023-11-06 21:16:02,857 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/data/1e3d3843b/698a68d7101e4663aca9604b973d6c39 [2023-11-06 21:16:02,860 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-06 21:16:02,861 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-06 21:16:02,863 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-06 21:16:02,863 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-06 21:16:02,868 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-06 21:16:02,869 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 09:16:02" (1/1) ... [2023-11-06 21:16:02,870 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@dcde2c3 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:02, skipping insertion in model container [2023-11-06 21:16:02,870 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.11 09:16:02" (1/1) ... [2023-11-06 21:16:02,926 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-06 21:16:03,097 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/sv-benchmarks/c/product-lines/minepump_spec4_product64.cil.c[2897,2910] [2023-11-06 21:16:03,241 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 21:16:03,259 INFO L202 MainTranslator]: Completed pre-run [2023-11-06 21:16:03,276 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [49] [2023-11-06 21:16:03,278 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [153] [2023-11-06 21:16:03,278 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [162] [2023-11-06 21:16:03,278 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [190] [2023-11-06 21:16:03,278 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [261] [2023-11-06 21:16:03,279 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [531] [2023-11-06 21:16:03,279 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [897] [2023-11-06 21:16:03,280 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [1000] [2023-11-06 21:16:03,301 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/sv-benchmarks/c/product-lines/minepump_spec4_product64.cil.c[2897,2910] [2023-11-06 21:16:03,376 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-06 21:16:03,406 INFO L206 MainTranslator]: Completed translation [2023-11-06 21:16:03,406 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03 WrapperNode [2023-11-06 21:16:03,406 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-06 21:16:03,407 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-06 21:16:03,407 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-06 21:16:03,408 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-06 21:16:03,415 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,446 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,474 INFO L138 Inliner]: procedures = 59, calls = 107, calls flagged for inlining = 26, calls inlined = 23, statements flattened = 244 [2023-11-06 21:16:03,475 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-06 21:16:03,476 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-06 21:16:03,476 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-06 21:16:03,476 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-06 21:16:03,485 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,485 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,488 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,488 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,494 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,499 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,501 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,503 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,506 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-06 21:16:03,507 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-06 21:16:03,507 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-06 21:16:03,508 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-06 21:16:03,508 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (1/1) ... [2023-11-06 21:16:03,515 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-06 21:16:03,531 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:16:03,546 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-06 21:16:03,553 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-06 21:16:03,585 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-06 21:16:03,585 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-06 21:16:03,585 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-06 21:16:03,585 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-06 21:16:03,586 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-06 21:16:03,586 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-06 21:16:03,586 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-06 21:16:03,586 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 21:16:03,586 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 21:16:03,587 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-06 21:16:03,587 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-06 21:16:03,587 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2023-11-06 21:16:03,592 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2023-11-06 21:16:03,592 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2023-11-06 21:16:03,592 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2023-11-06 21:16:03,593 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-06 21:16:03,593 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-06 21:16:03,593 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2023-11-06 21:16:03,594 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-06 21:16:03,594 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-06 21:16:03,595 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-06 21:16:03,595 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-06 21:16:03,671 INFO L236 CfgBuilder]: Building ICFG [2023-11-06 21:16:03,673 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-06 21:16:03,993 INFO L277 CfgBuilder]: Performing block encoding [2023-11-06 21:16:04,005 INFO L297 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-06 21:16:04,005 INFO L302 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-06 21:16:04,008 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 09:16:04 BoogieIcfgContainer [2023-11-06 21:16:04,008 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-06 21:16:04,011 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-06 21:16:04,011 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-06 21:16:04,014 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-06 21:16:04,015 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 06.11 09:16:02" (1/3) ... [2023-11-06 21:16:04,015 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@73fc9f42 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 09:16:04, skipping insertion in model container [2023-11-06 21:16:04,016 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.11 09:16:03" (2/3) ... [2023-11-06 21:16:04,016 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@73fc9f42 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.11 09:16:04, skipping insertion in model container [2023-11-06 21:16:04,016 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 09:16:04" (3/3) ... [2023-11-06 21:16:04,017 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product64.cil.c [2023-11-06 21:16:04,037 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-06 21:16:04,037 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-06 21:16:04,106 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-06 21:16:04,112 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@7d7db0a1, mLbeIndependenceSettings=[IndependenceType=SYNTACTIC, AbstractionType=NONE, UseConditional=, UseSemiCommutativity=, Solver=, SolverTimeout=] [2023-11-06 21:16:04,113 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-06 21:16:04,117 INFO L276 IsEmpty]: Start isEmpty. Operand has 108 states, 80 states have (on average 1.375) internal successors, (110), 91 states have internal predecessors, (110), 17 states have call successors, (17), 9 states have call predecessors, (17), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) [2023-11-06 21:16:04,126 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2023-11-06 21:16:04,126 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:04,127 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:04,128 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:04,134 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:04,134 INFO L85 PathProgramCache]: Analyzing trace with hash -1842892420, now seen corresponding path program 1 times [2023-11-06 21:16:04,143 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:04,143 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1705630954] [2023-11-06 21:16:04,144 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:04,144 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:04,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:04,408 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:16:04,409 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:04,409 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1705630954] [2023-11-06 21:16:04,410 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1705630954] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:16:04,410 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:16:04,411 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-06 21:16:04,412 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1454311693] [2023-11-06 21:16:04,413 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:16:04,420 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-06 21:16:04,421 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:04,464 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-06 21:16:04,465 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 21:16:04,469 INFO L87 Difference]: Start difference. First operand has 108 states, 80 states have (on average 1.375) internal successors, (110), 91 states have internal predecessors, (110), 17 states have call successors, (17), 9 states have call predecessors, (17), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:04,541 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:04,542 INFO L93 Difference]: Finished difference Result 208 states and 283 transitions. [2023-11-06 21:16:04,545 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-06 21:16:04,546 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2023-11-06 21:16:04,547 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:04,561 INFO L225 Difference]: With dead ends: 208 [2023-11-06 21:16:04,561 INFO L226 Difference]: Without dead ends: 99 [2023-11-06 21:16:04,567 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-06 21:16:04,573 INFO L413 NwaCegarLoop]: 138 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 138 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:04,574 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 138 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:16:04,614 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 99 states. [2023-11-06 21:16:04,639 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 99 to 99. [2023-11-06 21:16:04,640 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 99 states, 73 states have (on average 1.3150684931506849) internal successors, (96), 83 states have internal predecessors, (96), 17 states have call successors, (17), 9 states have call predecessors, (17), 8 states have return successors, (16), 11 states have call predecessors, (16), 16 states have call successors, (16) [2023-11-06 21:16:04,660 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 99 states to 99 states and 129 transitions. [2023-11-06 21:16:04,662 INFO L78 Accepts]: Start accepts. Automaton has 99 states and 129 transitions. Word has length 19 [2023-11-06 21:16:04,662 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:04,663 INFO L495 AbstractCegarLoop]: Abstraction has 99 states and 129 transitions. [2023-11-06 21:16:04,663 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:04,663 INFO L276 IsEmpty]: Start isEmpty. Operand 99 states and 129 transitions. [2023-11-06 21:16:04,666 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2023-11-06 21:16:04,666 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:04,666 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:04,667 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-06 21:16:04,667 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:04,668 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:04,668 INFO L85 PathProgramCache]: Analyzing trace with hash 750568636, now seen corresponding path program 1 times [2023-11-06 21:16:04,668 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:04,669 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1542263796] [2023-11-06 21:16:04,669 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:04,669 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:04,711 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:04,874 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:16:04,874 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:04,874 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1542263796] [2023-11-06 21:16:04,875 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1542263796] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:16:04,875 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:16:04,875 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-06 21:16:04,875 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [930913907] [2023-11-06 21:16:04,875 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:16:04,877 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 21:16:04,877 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:04,878 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 21:16:04,878 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:16:04,878 INFO L87 Difference]: Start difference. First operand 99 states and 129 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:04,901 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:04,901 INFO L93 Difference]: Finished difference Result 159 states and 207 transitions. [2023-11-06 21:16:04,902 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 21:16:04,902 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2023-11-06 21:16:04,902 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:04,904 INFO L225 Difference]: With dead ends: 159 [2023-11-06 21:16:04,904 INFO L226 Difference]: Without dead ends: 90 [2023-11-06 21:16:04,905 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:16:04,907 INFO L413 NwaCegarLoop]: 116 mSDtfsCounter, 17 mSDsluCounter, 94 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 21 SdHoareTripleChecker+Valid, 210 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:04,908 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [21 Valid, 210 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:16:04,909 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 90 states. [2023-11-06 21:16:04,921 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 90 to 90. [2023-11-06 21:16:04,922 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 90 states, 67 states have (on average 1.328358208955224) internal successors, (89), 77 states have internal predecessors, (89), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 9 states have call predecessors, (14), 14 states have call successors, (14) [2023-11-06 21:16:04,924 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 90 states to 90 states and 117 transitions. [2023-11-06 21:16:04,924 INFO L78 Accepts]: Start accepts. Automaton has 90 states and 117 transitions. Word has length 20 [2023-11-06 21:16:04,924 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:04,925 INFO L495 AbstractCegarLoop]: Abstraction has 90 states and 117 transitions. [2023-11-06 21:16:04,925 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:04,925 INFO L276 IsEmpty]: Start isEmpty. Operand 90 states and 117 transitions. [2023-11-06 21:16:04,926 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2023-11-06 21:16:04,927 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:04,927 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:04,927 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-06 21:16:04,927 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:04,928 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:04,928 INFO L85 PathProgramCache]: Analyzing trace with hash 1483068035, now seen corresponding path program 1 times [2023-11-06 21:16:04,929 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:04,929 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1592854658] [2023-11-06 21:16:04,929 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:04,929 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:04,952 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:05,071 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:16:05,084 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:05,084 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1592854658] [2023-11-06 21:16:05,085 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1592854658] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:16:05,085 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:16:05,085 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-06 21:16:05,085 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [816153187] [2023-11-06 21:16:05,086 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:16:05,086 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 21:16:05,086 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:05,087 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 21:16:05,087 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-06 21:16:05,088 INFO L87 Difference]: Start difference. First operand 90 states and 117 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:05,274 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:05,274 INFO L93 Difference]: Finished difference Result 211 states and 278 transitions. [2023-11-06 21:16:05,278 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-06 21:16:05,278 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2023-11-06 21:16:05,279 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:05,281 INFO L225 Difference]: With dead ends: 211 [2023-11-06 21:16:05,281 INFO L226 Difference]: Without dead ends: 128 [2023-11-06 21:16:05,283 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-11-06 21:16:05,284 INFO L413 NwaCegarLoop]: 121 mSDtfsCounter, 180 mSDsluCounter, 246 mSDsCounter, 0 mSdLazyCounter, 12 mSolverCounterSat, 19 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 180 SdHoareTripleChecker+Valid, 367 SdHoareTripleChecker+Invalid, 31 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 19 IncrementalHoareTripleChecker+Valid, 12 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:05,285 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [180 Valid, 367 Invalid, 31 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [19 Valid, 12 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-06 21:16:05,286 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 128 states. [2023-11-06 21:16:05,319 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 128 to 125. [2023-11-06 21:16:05,319 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 125 states, 94 states have (on average 1.351063829787234) internal successors, (127), 107 states have internal predecessors, (127), 18 states have call successors, (18), 12 states have call predecessors, (18), 12 states have return successors, (19), 12 states have call predecessors, (19), 18 states have call successors, (19) [2023-11-06 21:16:05,321 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 125 states to 125 states and 164 transitions. [2023-11-06 21:16:05,322 INFO L78 Accepts]: Start accepts. Automaton has 125 states and 164 transitions. Word has length 25 [2023-11-06 21:16:05,322 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:05,322 INFO L495 AbstractCegarLoop]: Abstraction has 125 states and 164 transitions. [2023-11-06 21:16:05,323 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:05,323 INFO L276 IsEmpty]: Start isEmpty. Operand 125 states and 164 transitions. [2023-11-06 21:16:05,325 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2023-11-06 21:16:05,325 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:05,325 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:05,325 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-06 21:16:05,326 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:05,326 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:05,326 INFO L85 PathProgramCache]: Analyzing trace with hash 417349686, now seen corresponding path program 1 times [2023-11-06 21:16:05,327 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:05,327 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [184282564] [2023-11-06 21:16:05,327 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:05,327 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:05,346 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:05,541 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:16:05,542 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:05,542 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [184282564] [2023-11-06 21:16:05,542 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [184282564] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:16:05,543 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:16:05,543 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-06 21:16:05,543 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [415525232] [2023-11-06 21:16:05,544 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:16:05,544 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-06 21:16:05,545 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:05,545 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-06 21:16:05,546 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2023-11-06 21:16:05,546 INFO L87 Difference]: Start difference. First operand 125 states and 164 transitions. Second operand has 8 states, 8 states have (on average 3.375) internal successors, (27), 7 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:05,912 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:05,913 INFO L93 Difference]: Finished difference Result 463 states and 651 transitions. [2023-11-06 21:16:05,913 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2023-11-06 21:16:05,913 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 3.375) internal successors, (27), 7 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 28 [2023-11-06 21:16:05,914 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:05,927 INFO L225 Difference]: With dead ends: 463 [2023-11-06 21:16:05,927 INFO L226 Difference]: Without dead ends: 345 [2023-11-06 21:16:05,933 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=51, Invalid=131, Unknown=0, NotChecked=0, Total=182 [2023-11-06 21:16:05,939 INFO L413 NwaCegarLoop]: 109 mSDtfsCounter, 237 mSDsluCounter, 625 mSDsCounter, 0 mSdLazyCounter, 182 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 237 SdHoareTripleChecker+Valid, 734 SdHoareTripleChecker+Invalid, 202 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 182 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:05,939 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [237 Valid, 734 Invalid, 202 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 182 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 21:16:05,941 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 345 states. [2023-11-06 21:16:05,996 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 345 to 339. [2023-11-06 21:16:05,998 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 339 states, 252 states have (on average 1.3333333333333333) internal successors, (336), 287 states have internal predecessors, (336), 52 states have call successors, (52), 34 states have call predecessors, (52), 34 states have return successors, (71), 34 states have call predecessors, (71), 52 states have call successors, (71) [2023-11-06 21:16:06,001 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 339 states to 339 states and 459 transitions. [2023-11-06 21:16:06,002 INFO L78 Accepts]: Start accepts. Automaton has 339 states and 459 transitions. Word has length 28 [2023-11-06 21:16:06,002 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:06,002 INFO L495 AbstractCegarLoop]: Abstraction has 339 states and 459 transitions. [2023-11-06 21:16:06,003 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 3.375) internal successors, (27), 7 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:06,003 INFO L276 IsEmpty]: Start isEmpty. Operand 339 states and 459 transitions. [2023-11-06 21:16:06,006 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2023-11-06 21:16:06,006 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:06,007 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:06,007 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-06 21:16:06,007 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:06,008 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:06,008 INFO L85 PathProgramCache]: Analyzing trace with hash -1384596677, now seen corresponding path program 1 times [2023-11-06 21:16:06,008 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:06,008 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [191730331] [2023-11-06 21:16:06,008 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:06,009 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:06,024 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:06,072 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:16:06,073 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:06,073 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [191730331] [2023-11-06 21:16:06,073 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [191730331] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:16:06,073 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:16:06,073 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-06 21:16:06,074 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [848811811] [2023-11-06 21:16:06,074 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:16:06,074 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-06 21:16:06,074 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:06,075 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-06 21:16:06,075 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:16:06,075 INFO L87 Difference]: Start difference. First operand 339 states and 459 transitions. Second operand has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:06,187 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:06,187 INFO L93 Difference]: Finished difference Result 764 states and 1072 transitions. [2023-11-06 21:16:06,188 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-06 21:16:06,188 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 30 [2023-11-06 21:16:06,189 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:06,193 INFO L225 Difference]: With dead ends: 764 [2023-11-06 21:16:06,193 INFO L226 Difference]: Without dead ends: 432 [2023-11-06 21:16:06,195 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-06 21:16:06,196 INFO L413 NwaCegarLoop]: 112 mSDtfsCounter, 68 mSDsluCounter, 73 mSDsCounter, 0 mSdLazyCounter, 13 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 68 SdHoareTripleChecker+Valid, 185 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 13 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:06,197 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [68 Valid, 185 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 13 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:16:06,198 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 432 states. [2023-11-06 21:16:06,290 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 432 to 427. [2023-11-06 21:16:06,291 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 427 states, 326 states have (on average 1.2699386503067485) internal successors, (414), 354 states have internal predecessors, (414), 51 states have call successors, (51), 47 states have call predecessors, (51), 49 states have return successors, (96), 49 states have call predecessors, (96), 51 states have call successors, (96) [2023-11-06 21:16:06,295 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 427 states to 427 states and 561 transitions. [2023-11-06 21:16:06,304 INFO L78 Accepts]: Start accepts. Automaton has 427 states and 561 transitions. Word has length 30 [2023-11-06 21:16:06,304 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:06,305 INFO L495 AbstractCegarLoop]: Abstraction has 427 states and 561 transitions. [2023-11-06 21:16:06,305 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:06,306 INFO L276 IsEmpty]: Start isEmpty. Operand 427 states and 561 transitions. [2023-11-06 21:16:06,317 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2023-11-06 21:16:06,318 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:06,318 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:06,318 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-06 21:16:06,318 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:06,319 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:06,319 INFO L85 PathProgramCache]: Analyzing trace with hash -1947892391, now seen corresponding path program 1 times [2023-11-06 21:16:06,319 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:06,319 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1107060926] [2023-11-06 21:16:06,319 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:06,320 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:06,344 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:06,460 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:16:06,462 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:06,482 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2023-11-06 21:16:06,485 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:06,492 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2023-11-06 21:16:06,495 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:06,498 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2023-11-06 21:16:06,499 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:06,499 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1107060926] [2023-11-06 21:16:06,499 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1107060926] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 21:16:06,499 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [85123063] [2023-11-06 21:16:06,500 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:06,500 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:06,500 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:16:06,504 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 21:16:06,532 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-06 21:16:06,637 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:06,653 INFO L262 TraceCheckSpWp]: Trace formula consists of 224 conjuncts, 9 conjunts are in the unsatisfiable core [2023-11-06 21:16:06,666 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 21:16:06,873 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 16 proven. 2 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-06 21:16:06,873 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-06 21:16:07,166 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 16 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:16:07,166 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [85123063] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-06 21:16:07,166 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-06 21:16:07,166 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6, 7] total 15 [2023-11-06 21:16:07,167 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [936034310] [2023-11-06 21:16:07,167 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-06 21:16:07,167 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2023-11-06 21:16:07,168 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:07,169 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2023-11-06 21:16:07,169 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=48, Invalid=162, Unknown=0, NotChecked=0, Total=210 [2023-11-06 21:16:07,169 INFO L87 Difference]: Start difference. First operand 427 states and 561 transitions. Second operand has 15 states, 15 states have (on average 6.0) internal successors, (90), 12 states have internal predecessors, (90), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2023-11-06 21:16:09,593 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:09,593 INFO L93 Difference]: Finished difference Result 1148 states and 1558 transitions. [2023-11-06 21:16:09,594 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 53 states. [2023-11-06 21:16:09,594 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 6.0) internal successors, (90), 12 states have internal predecessors, (90), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) Word has length 54 [2023-11-06 21:16:09,594 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:09,601 INFO L225 Difference]: With dead ends: 1148 [2023-11-06 21:16:09,601 INFO L226 Difference]: Without dead ends: 846 [2023-11-06 21:16:09,605 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 166 GetRequests, 103 SyntacticMatches, 4 SemanticMatches, 59 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1001 ImplicationChecksByTransitivity, 0.9s TimeCoverageRelationStatistics Valid=713, Invalid=2947, Unknown=0, NotChecked=0, Total=3660 [2023-11-06 21:16:09,606 INFO L413 NwaCegarLoop]: 144 mSDtfsCounter, 842 mSDsluCounter, 976 mSDsCounter, 0 mSdLazyCounter, 1787 mSolverCounterSat, 307 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 854 SdHoareTripleChecker+Valid, 1120 SdHoareTripleChecker+Invalid, 2094 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 307 IncrementalHoareTripleChecker+Valid, 1787 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.4s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:09,607 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [854 Valid, 1120 Invalid, 2094 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [307 Valid, 1787 Invalid, 0 Unknown, 0 Unchecked, 1.4s Time] [2023-11-06 21:16:09,609 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 846 states. [2023-11-06 21:16:09,711 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 846 to 768. [2023-11-06 21:16:09,713 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 768 states, 583 states have (on average 1.2521440823327616) internal successors, (730), 632 states have internal predecessors, (730), 85 states have call successors, (85), 78 states have call predecessors, (85), 99 states have return successors, (186), 90 states have call predecessors, (186), 85 states have call successors, (186) [2023-11-06 21:16:09,719 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 768 states to 768 states and 1001 transitions. [2023-11-06 21:16:09,719 INFO L78 Accepts]: Start accepts. Automaton has 768 states and 1001 transitions. Word has length 54 [2023-11-06 21:16:09,720 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:09,720 INFO L495 AbstractCegarLoop]: Abstraction has 768 states and 1001 transitions. [2023-11-06 21:16:09,720 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 6.0) internal successors, (90), 12 states have internal predecessors, (90), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2023-11-06 21:16:09,720 INFO L276 IsEmpty]: Start isEmpty. Operand 768 states and 1001 transitions. [2023-11-06 21:16:09,723 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 100 [2023-11-06 21:16:09,724 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:09,724 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:09,736 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-06 21:16:09,936 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:09,936 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:09,937 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:09,937 INFO L85 PathProgramCache]: Analyzing trace with hash -1561750174, now seen corresponding path program 1 times [2023-11-06 21:16:09,937 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:09,937 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1041238173] [2023-11-06 21:16:09,937 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:09,938 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:09,956 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,026 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-06 21:16:10,031 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,057 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 21:16:10,060 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,076 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:10,079 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,111 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 21:16:10,113 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,115 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 67 [2023-11-06 21:16:10,117 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,119 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 74 [2023-11-06 21:16:10,122 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,126 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 21:16:10,127 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,129 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:10,129 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,131 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 13 proven. 4 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-06 21:16:10,131 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:10,131 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1041238173] [2023-11-06 21:16:10,132 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1041238173] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 21:16:10,132 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [694233593] [2023-11-06 21:16:10,132 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:10,132 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:10,132 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:16:10,133 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 21:16:10,156 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-06 21:16:10,246 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,248 INFO L262 TraceCheckSpWp]: Trace formula consists of 337 conjuncts, 9 conjunts are in the unsatisfiable core [2023-11-06 21:16:10,252 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 21:16:10,267 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 17 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-06 21:16:10,268 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 21:16:10,268 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [694233593] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:16:10,268 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 21:16:10,268 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [7] total 7 [2023-11-06 21:16:10,269 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1754017948] [2023-11-06 21:16:10,269 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:16:10,269 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 21:16:10,269 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:10,270 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 21:16:10,270 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2023-11-06 21:16:10,271 INFO L87 Difference]: Start difference. First operand 768 states and 1001 transitions. Second operand has 5 states, 5 states have (on average 14.8) internal successors, (74), 5 states have internal predecessors, (74), 2 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 1 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-06 21:16:10,381 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:10,381 INFO L93 Difference]: Finished difference Result 1569 states and 2171 transitions. [2023-11-06 21:16:10,382 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-06 21:16:10,382 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 14.8) internal successors, (74), 5 states have internal predecessors, (74), 2 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 1 states have call predecessors, (8), 2 states have call successors, (8) Word has length 99 [2023-11-06 21:16:10,382 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:10,389 INFO L225 Difference]: With dead ends: 1569 [2023-11-06 21:16:10,389 INFO L226 Difference]: Without dead ends: 808 [2023-11-06 21:16:10,393 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 124 GetRequests, 117 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=20, Invalid=52, Unknown=0, NotChecked=0, Total=72 [2023-11-06 21:16:10,394 INFO L413 NwaCegarLoop]: 118 mSDtfsCounter, 6 mSDsluCounter, 344 mSDsCounter, 0 mSdLazyCounter, 15 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 7 SdHoareTripleChecker+Valid, 462 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 15 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:10,394 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [7 Valid, 462 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 15 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:16:10,396 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 808 states. [2023-11-06 21:16:10,489 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 808 to 783. [2023-11-06 21:16:10,491 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 783 states, 598 states have (on average 1.245819397993311) internal successors, (745), 647 states have internal predecessors, (745), 85 states have call successors, (85), 78 states have call predecessors, (85), 99 states have return successors, (186), 90 states have call predecessors, (186), 85 states have call successors, (186) [2023-11-06 21:16:10,497 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 783 states to 783 states and 1016 transitions. [2023-11-06 21:16:10,497 INFO L78 Accepts]: Start accepts. Automaton has 783 states and 1016 transitions. Word has length 99 [2023-11-06 21:16:10,498 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:10,498 INFO L495 AbstractCegarLoop]: Abstraction has 783 states and 1016 transitions. [2023-11-06 21:16:10,498 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 14.8) internal successors, (74), 5 states have internal predecessors, (74), 2 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 1 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-06 21:16:10,498 INFO L276 IsEmpty]: Start isEmpty. Operand 783 states and 1016 transitions. [2023-11-06 21:16:10,502 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 100 [2023-11-06 21:16:10,502 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:10,502 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:10,513 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-11-06 21:16:10,708 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:10,708 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:10,709 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:10,709 INFO L85 PathProgramCache]: Analyzing trace with hash 1765866468, now seen corresponding path program 1 times [2023-11-06 21:16:10,709 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:10,709 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [277517812] [2023-11-06 21:16:10,709 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:10,709 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:10,729 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,841 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-06 21:16:10,845 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,878 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 21:16:10,881 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,902 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:10,907 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,941 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 21:16:10,943 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,945 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 67 [2023-11-06 21:16:10,946 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,948 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 74 [2023-11-06 21:16:10,951 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,955 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 21:16:10,959 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,962 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:10,963 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:10,965 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 13 proven. 4 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-06 21:16:10,965 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:10,965 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [277517812] [2023-11-06 21:16:10,965 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [277517812] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 21:16:10,965 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2039188760] [2023-11-06 21:16:10,965 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:10,966 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:10,966 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:16:10,967 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 21:16:10,996 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-11-06 21:16:11,076 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,078 INFO L262 TraceCheckSpWp]: Trace formula consists of 338 conjuncts, 4 conjunts are in the unsatisfiable core [2023-11-06 21:16:11,082 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 21:16:11,110 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 17 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-06 21:16:11,110 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 21:16:11,110 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2039188760] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:16:11,110 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 21:16:11,111 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [8] total 10 [2023-11-06 21:16:11,111 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2042008589] [2023-11-06 21:16:11,111 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:16:11,112 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-06 21:16:11,112 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:11,112 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-06 21:16:11,113 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=20, Invalid=70, Unknown=0, NotChecked=0, Total=90 [2023-11-06 21:16:11,113 INFO L87 Difference]: Start difference. First operand 783 states and 1016 transitions. Second operand has 4 states, 4 states have (on average 18.5) internal successors, (74), 4 states have internal predecessors, (74), 2 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 1 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-06 21:16:11,197 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:11,198 INFO L93 Difference]: Finished difference Result 1441 states and 1925 transitions. [2023-11-06 21:16:11,198 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-06 21:16:11,198 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 18.5) internal successors, (74), 4 states have internal predecessors, (74), 2 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 1 states have call predecessors, (8), 2 states have call successors, (8) Word has length 99 [2023-11-06 21:16:11,199 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:11,205 INFO L225 Difference]: With dead ends: 1441 [2023-11-06 21:16:11,205 INFO L226 Difference]: Without dead ends: 665 [2023-11-06 21:16:11,209 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 125 GetRequests, 116 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=26, Invalid=84, Unknown=0, NotChecked=0, Total=110 [2023-11-06 21:16:11,210 INFO L413 NwaCegarLoop]: 116 mSDtfsCounter, 8 mSDsluCounter, 227 mSDsCounter, 0 mSdLazyCounter, 10 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 9 SdHoareTripleChecker+Valid, 343 SdHoareTripleChecker+Invalid, 10 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 10 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:11,210 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [9 Valid, 343 Invalid, 10 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 10 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:16:11,212 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 665 states. [2023-11-06 21:16:11,270 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 665 to 665. [2023-11-06 21:16:11,272 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 665 states, 506 states have (on average 1.2450592885375493) internal successors, (630), 545 states have internal predecessors, (630), 77 states have call successors, (77), 70 states have call predecessors, (77), 81 states have return successors, (149), 76 states have call predecessors, (149), 77 states have call successors, (149) [2023-11-06 21:16:11,301 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 665 states to 665 states and 856 transitions. [2023-11-06 21:16:11,301 INFO L78 Accepts]: Start accepts. Automaton has 665 states and 856 transitions. Word has length 99 [2023-11-06 21:16:11,302 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:11,302 INFO L495 AbstractCegarLoop]: Abstraction has 665 states and 856 transitions. [2023-11-06 21:16:11,302 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 18.5) internal successors, (74), 4 states have internal predecessors, (74), 2 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 1 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-06 21:16:11,302 INFO L276 IsEmpty]: Start isEmpty. Operand 665 states and 856 transitions. [2023-11-06 21:16:11,304 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 107 [2023-11-06 21:16:11,305 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:11,305 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:11,314 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2023-11-06 21:16:11,511 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:11,511 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:11,511 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:11,511 INFO L85 PathProgramCache]: Analyzing trace with hash -919500097, now seen corresponding path program 1 times [2023-11-06 21:16:11,512 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:11,512 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [115116150] [2023-11-06 21:16:11,512 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:11,512 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:11,527 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,587 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:16:11,589 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,597 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2023-11-06 21:16:11,602 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,627 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 21:16:11,632 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,638 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:11,640 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,644 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 21:16:11,645 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,647 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 74 [2023-11-06 21:16:11,648 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,652 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 81 [2023-11-06 21:16:11,654 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,659 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 21:16:11,660 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,661 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:11,662 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:11,663 INFO L134 CoverageAnalysis]: Checked inductivity of 28 backedges. 16 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-06 21:16:11,664 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:11,664 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [115116150] [2023-11-06 21:16:11,664 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [115116150] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:16:11,664 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-06 21:16:11,664 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-06 21:16:11,664 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1503271050] [2023-11-06 21:16:11,664 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:16:11,665 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-06 21:16:11,665 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:11,666 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-06 21:16:11,666 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2023-11-06 21:16:11,666 INFO L87 Difference]: Start difference. First operand 665 states and 856 transitions. Second operand has 7 states, 7 states have (on average 11.428571428571429) internal successors, (80), 4 states have internal predecessors, (80), 4 states have call successors, (10), 5 states have call predecessors, (10), 2 states have return successors, (9), 3 states have call predecessors, (9), 4 states have call successors, (9) [2023-11-06 21:16:12,055 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:12,056 INFO L93 Difference]: Finished difference Result 1362 states and 1747 transitions. [2023-11-06 21:16:12,056 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-06 21:16:12,056 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 11.428571428571429) internal successors, (80), 4 states have internal predecessors, (80), 4 states have call successors, (10), 5 states have call predecessors, (10), 2 states have return successors, (9), 3 states have call predecessors, (9), 4 states have call successors, (9) Word has length 106 [2023-11-06 21:16:12,058 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:12,063 INFO L225 Difference]: With dead ends: 1362 [2023-11-06 21:16:12,063 INFO L226 Difference]: Without dead ends: 704 [2023-11-06 21:16:12,066 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 31 GetRequests, 21 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=40, Invalid=92, Unknown=0, NotChecked=0, Total=132 [2023-11-06 21:16:12,068 INFO L413 NwaCegarLoop]: 96 mSDtfsCounter, 227 mSDsluCounter, 231 mSDsCounter, 0 mSdLazyCounter, 293 mSolverCounterSat, 61 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 235 SdHoareTripleChecker+Valid, 327 SdHoareTripleChecker+Invalid, 354 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 61 IncrementalHoareTripleChecker+Valid, 293 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:12,069 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [235 Valid, 327 Invalid, 354 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [61 Valid, 293 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-06 21:16:12,071 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 704 states. [2023-11-06 21:16:12,131 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 704 to 665. [2023-11-06 21:16:12,133 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 665 states, 506 states have (on average 1.2351778656126482) internal successors, (625), 545 states have internal predecessors, (625), 77 states have call successors, (77), 70 states have call predecessors, (77), 81 states have return successors, (138), 76 states have call predecessors, (138), 77 states have call successors, (138) [2023-11-06 21:16:12,137 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 665 states to 665 states and 840 transitions. [2023-11-06 21:16:12,138 INFO L78 Accepts]: Start accepts. Automaton has 665 states and 840 transitions. Word has length 106 [2023-11-06 21:16:12,138 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:12,138 INFO L495 AbstractCegarLoop]: Abstraction has 665 states and 840 transitions. [2023-11-06 21:16:12,138 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 11.428571428571429) internal successors, (80), 4 states have internal predecessors, (80), 4 states have call successors, (10), 5 states have call predecessors, (10), 2 states have return successors, (9), 3 states have call predecessors, (9), 4 states have call successors, (9) [2023-11-06 21:16:12,139 INFO L276 IsEmpty]: Start isEmpty. Operand 665 states and 840 transitions. [2023-11-06 21:16:12,141 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 104 [2023-11-06 21:16:12,141 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:12,142 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:12,142 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-11-06 21:16:12,142 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:12,143 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:12,143 INFO L85 PathProgramCache]: Analyzing trace with hash -1661930304, now seen corresponding path program 1 times [2023-11-06 21:16:12,143 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:12,143 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1599443305] [2023-11-06 21:16:12,143 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:12,143 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:12,165 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,336 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:16:12,337 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,347 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 21:16:12,354 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,375 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 21:16:12,380 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,390 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:12,393 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,404 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 21:16:12,406 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,409 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 71 [2023-11-06 21:16:12,412 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,414 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 78 [2023-11-06 21:16:12,418 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,424 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 21:16:12,425 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,427 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:12,428 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,430 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 12 proven. 9 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2023-11-06 21:16:12,431 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:12,431 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1599443305] [2023-11-06 21:16:12,431 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1599443305] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 21:16:12,431 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1878005272] [2023-11-06 21:16:12,432 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:12,432 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:12,432 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:16:12,437 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 21:16:12,456 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2023-11-06 21:16:12,548 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:12,550 INFO L262 TraceCheckSpWp]: Trace formula consists of 347 conjuncts, 8 conjunts are in the unsatisfiable core [2023-11-06 21:16:12,554 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 21:16:12,679 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 17 proven. 12 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-06 21:16:12,680 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-06 21:16:12,830 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 13 proven. 8 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2023-11-06 21:16:12,830 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1878005272] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-06 21:16:12,830 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-06 21:16:12,831 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 11 [2023-11-06 21:16:12,831 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [480517518] [2023-11-06 21:16:12,831 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-06 21:16:12,832 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2023-11-06 21:16:12,832 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:12,832 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2023-11-06 21:16:12,833 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=24, Invalid=86, Unknown=0, NotChecked=0, Total=110 [2023-11-06 21:16:12,833 INFO L87 Difference]: Start difference. First operand 665 states and 840 transitions. Second operand has 11 states, 11 states have (on average 9.454545454545455) internal successors, (104), 8 states have internal predecessors, (104), 3 states have call successors, (21), 6 states have call predecessors, (21), 3 states have return successors, (14), 3 states have call predecessors, (14), 3 states have call successors, (14) [2023-11-06 21:16:13,688 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:13,689 INFO L93 Difference]: Finished difference Result 1271 states and 1619 transitions. [2023-11-06 21:16:13,689 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 31 states. [2023-11-06 21:16:13,689 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 11 states have (on average 9.454545454545455) internal successors, (104), 8 states have internal predecessors, (104), 3 states have call successors, (21), 6 states have call predecessors, (21), 3 states have return successors, (14), 3 states have call predecessors, (14), 3 states have call successors, (14) Word has length 103 [2023-11-06 21:16:13,691 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:13,695 INFO L225 Difference]: With dead ends: 1271 [2023-11-06 21:16:13,696 INFO L226 Difference]: Without dead ends: 690 [2023-11-06 21:16:13,699 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 261 GetRequests, 221 SyntacticMatches, 8 SemanticMatches, 32 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 304 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=279, Invalid=843, Unknown=0, NotChecked=0, Total=1122 [2023-11-06 21:16:13,700 INFO L413 NwaCegarLoop]: 87 mSDtfsCounter, 473 mSDsluCounter, 486 mSDsCounter, 0 mSdLazyCounter, 655 mSolverCounterSat, 147 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 481 SdHoareTripleChecker+Valid, 573 SdHoareTripleChecker+Invalid, 802 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 147 IncrementalHoareTripleChecker+Valid, 655 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:13,701 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [481 Valid, 573 Invalid, 802 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [147 Valid, 655 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2023-11-06 21:16:13,703 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 690 states. [2023-11-06 21:16:13,763 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 690 to 607. [2023-11-06 21:16:13,764 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 607 states, 458 states have (on average 1.2161572052401746) internal successors, (557), 495 states have internal predecessors, (557), 72 states have call successors, (72), 65 states have call predecessors, (72), 76 states have return successors, (133), 68 states have call predecessors, (133), 72 states have call successors, (133) [2023-11-06 21:16:13,768 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 607 states to 607 states and 762 transitions. [2023-11-06 21:16:13,769 INFO L78 Accepts]: Start accepts. Automaton has 607 states and 762 transitions. Word has length 103 [2023-11-06 21:16:13,770 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:13,770 INFO L495 AbstractCegarLoop]: Abstraction has 607 states and 762 transitions. [2023-11-06 21:16:13,771 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 11 states have (on average 9.454545454545455) internal successors, (104), 8 states have internal predecessors, (104), 3 states have call successors, (21), 6 states have call predecessors, (21), 3 states have return successors, (14), 3 states have call predecessors, (14), 3 states have call successors, (14) [2023-11-06 21:16:13,771 INFO L276 IsEmpty]: Start isEmpty. Operand 607 states and 762 transitions. [2023-11-06 21:16:13,774 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 151 [2023-11-06 21:16:13,774 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:13,774 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:13,784 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2023-11-06 21:16:13,980 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:13,981 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:13,981 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:13,981 INFO L85 PathProgramCache]: Analyzing trace with hash 745596908, now seen corresponding path program 2 times [2023-11-06 21:16:13,981 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:13,981 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1894054563] [2023-11-06 21:16:13,982 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:13,982 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:14,025 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,231 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:16:14,233 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,240 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 21:16:14,245 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,262 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 21:16:14,266 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,275 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:14,278 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,290 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 21:16:14,292 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,295 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 65 [2023-11-06 21:16:14,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,399 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-06 21:16:14,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,403 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 21:16:14,407 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,528 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 21:16:14,530 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,533 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:14,534 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,535 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 118 [2023-11-06 21:16:14,537 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,539 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 125 [2023-11-06 21:16:14,545 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,549 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 21:16:14,550 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,552 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:14,553 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:14,556 INFO L134 CoverageAnalysis]: Checked inductivity of 105 backedges. 52 proven. 23 refuted. 0 times theorem prover too weak. 30 trivial. 0 not checked. [2023-11-06 21:16:14,556 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:14,556 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1894054563] [2023-11-06 21:16:14,557 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1894054563] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 21:16:14,557 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [900444202] [2023-11-06 21:16:14,557 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2023-11-06 21:16:14,557 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:14,558 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:16:14,559 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 21:16:14,588 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2023-11-06 21:16:14,705 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2023-11-06 21:16:14,705 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2023-11-06 21:16:14,707 INFO L262 TraceCheckSpWp]: Trace formula consists of 464 conjuncts, 10 conjunts are in the unsatisfiable core [2023-11-06 21:16:14,713 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 21:16:14,815 INFO L134 CoverageAnalysis]: Checked inductivity of 105 backedges. 86 proven. 0 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2023-11-06 21:16:14,815 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 21:16:14,816 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [900444202] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:16:14,816 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 21:16:14,816 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [11] total 12 [2023-11-06 21:16:14,818 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1846807921] [2023-11-06 21:16:14,818 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:16:14,819 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-06 21:16:14,819 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:14,820 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-06 21:16:14,820 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=26, Invalid=106, Unknown=0, NotChecked=0, Total=132 [2023-11-06 21:16:14,820 INFO L87 Difference]: Start difference. First operand 607 states and 762 transitions. Second operand has 6 states, 6 states have (on average 18.0) internal successors, (108), 6 states have internal predecessors, (108), 3 states have call successors, (14), 4 states have call predecessors, (14), 3 states have return successors, (14), 3 states have call predecessors, (14), 3 states have call successors, (14) [2023-11-06 21:16:15,224 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:15,224 INFO L93 Difference]: Finished difference Result 1585 states and 2064 transitions. [2023-11-06 21:16:15,225 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2023-11-06 21:16:15,225 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 18.0) internal successors, (108), 6 states have internal predecessors, (108), 3 states have call successors, (14), 4 states have call predecessors, (14), 3 states have return successors, (14), 3 states have call predecessors, (14), 3 states have call successors, (14) Word has length 150 [2023-11-06 21:16:15,226 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:15,234 INFO L225 Difference]: With dead ends: 1585 [2023-11-06 21:16:15,234 INFO L226 Difference]: Without dead ends: 1061 [2023-11-06 21:16:15,237 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 195 GetRequests, 177 SyntacticMatches, 3 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 30 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=57, Invalid=215, Unknown=0, NotChecked=0, Total=272 [2023-11-06 21:16:15,238 INFO L413 NwaCegarLoop]: 192 mSDtfsCounter, 170 mSDsluCounter, 576 mSDsCounter, 0 mSdLazyCounter, 162 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 172 SdHoareTripleChecker+Valid, 768 SdHoareTripleChecker+Invalid, 173 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 162 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:15,238 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [172 Valid, 768 Invalid, 173 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 162 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-06 21:16:15,240 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1061 states. [2023-11-06 21:16:15,361 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1061 to 1036. [2023-11-06 21:16:15,364 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1036 states, 785 states have (on average 1.2140127388535031) internal successors, (953), 839 states have internal predecessors, (953), 122 states have call successors, (122), 112 states have call predecessors, (122), 128 states have return successors, (212), 118 states have call predecessors, (212), 122 states have call successors, (212) [2023-11-06 21:16:15,370 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1036 states to 1036 states and 1287 transitions. [2023-11-06 21:16:15,371 INFO L78 Accepts]: Start accepts. Automaton has 1036 states and 1287 transitions. Word has length 150 [2023-11-06 21:16:15,371 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:15,371 INFO L495 AbstractCegarLoop]: Abstraction has 1036 states and 1287 transitions. [2023-11-06 21:16:15,372 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 18.0) internal successors, (108), 6 states have internal predecessors, (108), 3 states have call successors, (14), 4 states have call predecessors, (14), 3 states have return successors, (14), 3 states have call predecessors, (14), 3 states have call successors, (14) [2023-11-06 21:16:15,372 INFO L276 IsEmpty]: Start isEmpty. Operand 1036 states and 1287 transitions. [2023-11-06 21:16:15,375 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 151 [2023-11-06 21:16:15,375 INFO L187 NwaCegarLoop]: Found error trace [2023-11-06 21:16:15,376 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:15,386 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2023-11-06 21:16:15,581 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:15,582 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-06 21:16:15,582 INFO L145 PredicateUnifier]: Initialized classic predicate unifier [2023-11-06 21:16:15,582 INFO L85 PathProgramCache]: Analyzing trace with hash 1699537066, now seen corresponding path program 1 times [2023-11-06 21:16:15,582 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-06 21:16:15,582 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [21749967] [2023-11-06 21:16:15,583 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:15,583 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-06 21:16:15,628 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,733 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-06 21:16:15,734 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,741 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-06 21:16:15,744 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,753 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-06 21:16:15,755 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,759 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:15,761 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,765 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-06 21:16:15,766 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,768 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 65 [2023-11-06 21:16:15,773 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,802 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-06 21:16:15,803 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,805 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-06 21:16:15,808 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,845 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 21:16:15,846 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,848 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:15,848 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,850 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 118 [2023-11-06 21:16:15,851 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,853 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 125 [2023-11-06 21:16:15,856 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,859 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-06 21:16:15,861 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,863 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-06 21:16:15,864 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:15,866 INFO L134 CoverageAnalysis]: Checked inductivity of 105 backedges. 45 proven. 6 refuted. 0 times theorem prover too weak. 54 trivial. 0 not checked. [2023-11-06 21:16:15,866 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-06 21:16:15,866 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [21749967] [2023-11-06 21:16:15,866 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [21749967] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-06 21:16:15,866 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [819002280] [2023-11-06 21:16:15,867 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-06 21:16:15,867 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-06 21:16:15,867 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 [2023-11-06 21:16:15,868 INFO L229 MonitoredProcess]: Starting monitored process 7 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-06 21:16:15,883 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2023-11-06 21:16:16,019 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-06 21:16:16,021 INFO L262 TraceCheckSpWp]: Trace formula consists of 465 conjuncts, 5 conjunts are in the unsatisfiable core [2023-11-06 21:16:16,027 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-06 21:16:16,047 INFO L134 CoverageAnalysis]: Checked inductivity of 105 backedges. 72 proven. 0 refuted. 0 times theorem prover too weak. 33 trivial. 0 not checked. [2023-11-06 21:16:16,047 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-06 21:16:16,048 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [819002280] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-06 21:16:16,048 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-06 21:16:16,048 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [8] total 8 [2023-11-06 21:16:16,049 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [506617069] [2023-11-06 21:16:16,049 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-06 21:16:16,049 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-06 21:16:16,050 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-06 21:16:16,050 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-06 21:16:16,050 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2023-11-06 21:16:16,051 INFO L87 Difference]: Start difference. First operand 1036 states and 1287 transitions. Second operand has 5 states, 5 states have (on average 20.0) internal successors, (100), 5 states have internal predecessors, (100), 2 states have call successors, (12), 2 states have call predecessors, (12), 2 states have return successors, (12), 2 states have call predecessors, (12), 2 states have call successors, (12) [2023-11-06 21:16:16,149 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-06 21:16:16,149 INFO L93 Difference]: Finished difference Result 1412 states and 1748 transitions. [2023-11-06 21:16:16,152 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-06 21:16:16,152 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 20.0) internal successors, (100), 5 states have internal predecessors, (100), 2 states have call successors, (12), 2 states have call predecessors, (12), 2 states have return successors, (12), 2 states have call predecessors, (12), 2 states have call successors, (12) Word has length 150 [2023-11-06 21:16:16,153 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-06 21:16:16,153 INFO L225 Difference]: With dead ends: 1412 [2023-11-06 21:16:16,153 INFO L226 Difference]: Without dead ends: 0 [2023-11-06 21:16:16,157 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 187 GetRequests, 179 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=23, Invalid=67, Unknown=0, NotChecked=0, Total=90 [2023-11-06 21:16:16,158 INFO L413 NwaCegarLoop]: 115 mSDtfsCounter, 6 mSDsluCounter, 329 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 6 SdHoareTripleChecker+Valid, 444 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-06 21:16:16,158 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [6 Valid, 444 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-06 21:16:16,158 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-06 21:16:16,158 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-06 21:16:16,159 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-06 21:16:16,159 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-06 21:16:16,159 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 150 [2023-11-06 21:16:16,159 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-06 21:16:16,159 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-06 21:16:16,160 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 20.0) internal successors, (100), 5 states have internal predecessors, (100), 2 states have call successors, (12), 2 states have call predecessors, (12), 2 states have return successors, (12), 2 states have call predecessors, (12), 2 states have call successors, (12) [2023-11-06 21:16:16,160 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-06 21:16:16,160 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-06 21:16:16,163 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-06 21:16:16,179 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2023-11-06 21:16:16,374 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2023-11-06 21:16:16,376 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-06 21:16:18,997 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 406 413) no Hoare annotation was computed. [2023-11-06 21:16:18,998 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 406 413) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (< ~waterLevel~0 1) (= 0 ~systemActive~0)) [2023-11-06 21:16:18,998 INFO L899 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 406 413) no Hoare annotation was computed. [2023-11-06 21:16:18,998 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 296 302) no Hoare annotation was computed. [2023-11-06 21:16:18,998 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 296 302) the Hoare annotation is: true [2023-11-06 21:16:18,998 INFO L899 garLoopResultBuilder]: For program point L928-1(lines 924 935) no Hoare annotation was computed. [2023-11-06 21:16:18,998 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 924 935) the Hoare annotation is: true [2023-11-06 21:16:18,999 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 924 935) no Hoare annotation was computed. [2023-11-06 21:16:18,999 INFO L899 garLoopResultBuilder]: For program point L283-1(lines 283 289) no Hoare annotation was computed. [2023-11-06 21:16:18,999 INFO L895 garLoopResultBuilder]: At program point L370(line 370) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 21:16:18,999 INFO L895 garLoopResultBuilder]: At program point L366(line 366) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 21:16:18,999 INFO L895 garLoopResultBuilder]: At program point L362(line 362) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 21:16:18,999 INFO L899 garLoopResultBuilder]: For program point L362-1(line 362) no Hoare annotation was computed. [2023-11-06 21:16:19,000 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 272 295) no Hoare annotation was computed. [2023-11-06 21:16:19,000 INFO L895 garLoopResultBuilder]: At program point L375(line 375) the Hoare annotation is: (let ((.cse2 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse2)) (.cse1 (< |old(~waterLevel~0)| 1)) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0))) (or (< |old(~waterLevel~0)| 2) .cse2 .cse3) (or .cse0 .cse1 (not .cse3))))) [2023-11-06 21:16:19,000 INFO L895 garLoopResultBuilder]: At program point L375-1(lines 356 380) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) (<= |old(~waterLevel~0)| 1)) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 (= ~waterLevel~0 1))) (or .cse0 (< |old(~waterLevel~0)| 1) (not .cse2)) (or (<= 2 ~waterLevel~0) (< |old(~waterLevel~0)| 2) .cse2 (and .cse1 (<= 1 ~waterLevel~0))))) [2023-11-06 21:16:19,000 INFO L895 garLoopResultBuilder]: At program point getWaterLevel_returnLabel#1(lines 968 976) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (< |old(~waterLevel~0)| 2)) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= 0 ~systemActive~0)) (.cse2 (<= 1 |timeShift_getWaterLevel_#res#1|))) (and (or .cse0 .cse1 (and .cse2 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse0 .cse3 .cse1 (not .cse4)) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse2 (= ~waterLevel~0 1))) (or .cse1 (and .cse3 (<= 1 ~waterLevel~0) .cse2) .cse4 (and (<= 2 ~waterLevel~0) .cse2)))) [2023-11-06 21:16:19,001 INFO L899 garLoopResultBuilder]: For program point L276-1(lines 275 294) no Hoare annotation was computed. [2023-11-06 21:16:19,001 INFO L899 garLoopResultBuilder]: For program point L177(lines 177 183) no Hoare annotation was computed. [2023-11-06 21:16:19,001 INFO L899 garLoopResultBuilder]: For program point L173(lines 173 186) no Hoare annotation was computed. [2023-11-06 21:16:19,001 INFO L895 garLoopResultBuilder]: At program point L173-1(lines 165 189) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse5 (<= 1 |timeShift___utac_acc__Specification4_spec__1_~tmp~1#1|)) (.cse6 (<= 1 |timeShift_getWaterLevel_#res#1|))) (let ((.cse3 (= 0 ~systemActive~0)) (.cse1 (< |old(~waterLevel~0)| 1)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (and .cse4 .cse5 .cse6))) (and (or .cse0 .cse1 .cse2 (not .cse3)) (or (< |old(~waterLevel~0)| 2) (and .cse4 .cse5 (<= 1 ~waterLevel~0) .cse6) .cse3 (and (<= 2 ~waterLevel~0) .cse5 .cse6)) (or .cse0 .cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse2)))) [2023-11-06 21:16:19,001 INFO L899 garLoopResultBuilder]: For program point L904(lines 904 908) no Hoare annotation was computed. [2023-11-06 21:16:19,001 INFO L895 garLoopResultBuilder]: At program point L904-2(lines 900 911) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 21:16:19,002 INFO L899 garLoopResultBuilder]: For program point L364(lines 364 372) no Hoare annotation was computed. [2023-11-06 21:16:19,002 INFO L895 garLoopResultBuilder]: At program point __automaton_fail_returnLabel#1(lines 154 161) the Hoare annotation is: (and (or (< |old(~waterLevel~0)| 2) (= 0 ~systemActive~0)) (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1))) [2023-11-06 21:16:19,002 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 272 295) the Hoare annotation is: (let ((.cse0 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1) (and (= ~pumpRunning~0 0) .cse0)) (or (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0) (= 0 ~systemActive~0)))) [2023-11-06 21:16:19,002 INFO L899 garLoopResultBuilder]: For program point L360(lines 360 377) no Hoare annotation was computed. [2023-11-06 21:16:19,002 INFO L899 garLoopResultBuilder]: For program point L158(line 158) no Hoare annotation was computed. [2023-11-06 21:16:19,002 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 272 295) no Hoare annotation was computed. [2023-11-06 21:16:19,002 INFO L895 garLoopResultBuilder]: At program point isPumpRunning_returnLabel#1(lines 425 433) the Hoare annotation is: (and (or (< |old(~waterLevel~0)| 2) (= 0 ~systemActive~0)) (or (not (= |old(~pumpRunning~0)| 0)) (< |old(~waterLevel~0)| 1))) [2023-11-06 21:16:19,003 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 158) no Hoare annotation was computed. [2023-11-06 21:16:19,003 INFO L902 garLoopResultBuilder]: At program point L66-1(lines 66 70) the Hoare annotation is: true [2023-11-06 21:16:19,003 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 52 81) no Hoare annotation was computed. [2023-11-06 21:16:19,003 INFO L899 garLoopResultBuilder]: For program point L63(line 63) no Hoare annotation was computed. [2023-11-06 21:16:19,003 INFO L902 garLoopResultBuilder]: At program point L62-2(lines 62 76) the Hoare annotation is: true [2023-11-06 21:16:19,003 INFO L902 garLoopResultBuilder]: At program point L58(line 58) the Hoare annotation is: true [2023-11-06 21:16:19,003 INFO L899 garLoopResultBuilder]: For program point L58-1(line 58) no Hoare annotation was computed. [2023-11-06 21:16:19,003 INFO L902 garLoopResultBuilder]: At program point L77(lines 52 81) the Hoare annotation is: true [2023-11-06 21:16:19,004 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 52 81) the Hoare annotation is: true [2023-11-06 21:16:19,004 INFO L899 garLoopResultBuilder]: For program point L73(line 73) no Hoare annotation was computed. [2023-11-06 21:16:19,004 INFO L899 garLoopResultBuilder]: For program point L66(lines 66 70) no Hoare annotation was computed. [2023-11-06 21:16:19,004 INFO L895 garLoopResultBuilder]: At program point L225(line 225) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 (<= 1 ~waterLevel~0)) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 (not (= 0 ~systemActive~0))))) [2023-11-06 21:16:19,004 INFO L895 garLoopResultBuilder]: At program point startSystem_returnLabel#1(lines 523 530) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 (<= 1 ~waterLevel~0) .cse3))) [2023-11-06 21:16:19,004 INFO L895 garLoopResultBuilder]: At program point L250(lines 203 252) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 (<= 1 ~waterLevel~0)) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 (not (= 0 ~systemActive~0))))) [2023-11-06 21:16:19,005 INFO L899 garLoopResultBuilder]: For program point L213(lines 213 219) no Hoare annotation was computed. [2023-11-06 21:16:19,005 INFO L899 garLoopResultBuilder]: For program point L213-1(lines 213 219) no Hoare annotation was computed. [2023-11-06 21:16:19,005 INFO L902 garLoopResultBuilder]: At program point runTest_returnLabel#1(lines 117 126) the Hoare annotation is: true [2023-11-06 21:16:19,005 INFO L899 garLoopResultBuilder]: For program point L205(lines 205 209) no Hoare annotation was computed. [2023-11-06 21:16:19,005 INFO L895 garLoopResultBuilder]: At program point select_features_returnLabel#1(lines 1012 1018) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 21:16:19,005 INFO L902 garLoopResultBuilder]: At program point main_returnLabel#1(lines 130 152) the Hoare annotation is: true [2023-11-06 21:16:19,005 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2023-11-06 21:16:19,005 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2023-11-06 21:16:19,005 INFO L899 garLoopResultBuilder]: For program point L140(lines 140 147) no Hoare annotation was computed. [2023-11-06 21:16:19,006 INFO L899 garLoopResultBuilder]: For program point L140-2(lines 140 147) no Hoare annotation was computed. [2023-11-06 21:16:19,006 INFO L895 garLoopResultBuilder]: At program point setup_returnLabel#1(lines 109 115) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= |ULTIMATE.start_main_~tmp~0#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 21:16:19,006 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-06 21:16:19,006 INFO L899 garLoopResultBuilder]: For program point L512(lines 512 518) no Hoare annotation was computed. [2023-11-06 21:16:19,006 INFO L902 garLoopResultBuilder]: At program point L256(lines 193 260) the Hoare annotation is: true [2023-11-06 21:16:19,006 INFO L899 garLoopResultBuilder]: For program point L223(lines 223 229) no Hoare annotation was computed. [2023-11-06 21:16:19,006 INFO L899 garLoopResultBuilder]: For program point L512-1(lines 512 518) no Hoare annotation was computed. [2023-11-06 21:16:19,006 INFO L899 garLoopResultBuilder]: For program point L223-1(lines 223 229) no Hoare annotation was computed. [2023-11-06 21:16:19,007 INFO L895 garLoopResultBuilder]: At program point L215(line 215) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 (<= 1 ~waterLevel~0)) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 (not (= 0 ~systemActive~0))))) [2023-11-06 21:16:19,007 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-06 21:16:19,007 INFO L895 garLoopResultBuilder]: At program point select_helpers_returnLabel#1(lines 1019 1025) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 21:16:19,007 INFO L895 garLoopResultBuilder]: At program point L253(lines 202 254) the Hoare annotation is: false [2023-11-06 21:16:19,007 INFO L895 garLoopResultBuilder]: At program point stopSystem_returnLabel#1(lines 508 522) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= |ULTIMATE.start_main_~tmp~0#1| 1) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (<= 1 ~waterLevel~0) (= 0 ~systemActive~0)) [2023-11-06 21:16:19,007 INFO L899 garLoopResultBuilder]: For program point L241(lines 241 247) no Hoare annotation was computed. [2023-11-06 21:16:19,008 INFO L895 garLoopResultBuilder]: At program point L241-2(lines 233 248) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 (<= 1 ~waterLevel~0)) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 (not (= 0 ~systemActive~0))))) [2023-11-06 21:16:19,008 INFO L899 garLoopResultBuilder]: For program point L204(lines 203 252) no Hoare annotation was computed. [2023-11-06 21:16:19,013 INFO L895 garLoopResultBuilder]: At program point valid_product_returnLabel#1(lines 1026 1034) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2023-11-06 21:16:19,013 INFO L899 garLoopResultBuilder]: For program point L233(lines 233 248) no Hoare annotation was computed. [2023-11-06 21:16:19,014 INFO L895 garLoopResultBuilder]: At program point L514(line 514) the Hoare annotation is: (and (= |ULTIMATE.start_valid_product_#res#1| 1) (= |ULTIMATE.start_main_~tmp~0#1| 1) (<= 2 ~waterLevel~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (not (= 0 ~systemActive~0))) [2023-11-06 21:16:19,014 INFO L899 garLoopResultBuilder]: For program point L479(lines 479 483) no Hoare annotation was computed. [2023-11-06 21:16:19,014 INFO L895 garLoopResultBuilder]: At program point L318(line 318) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |processEnvironment__wrappee__highWaterSensor_~tmp~3#1| 0))) (and (or .cse0 (and .cse1 .cse2) (<= ~waterLevel~0 1) .cse3) (or (not (= ~waterLevel~0 1)) .cse0 .cse3 (and (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1|) .cse1 .cse2)))) [2023-11-06 21:16:19,014 INFO L899 garLoopResultBuilder]: For program point L479-2(lines 479 483) no Hoare annotation was computed. [2023-11-06 21:16:19,014 INFO L899 garLoopResultBuilder]: For program point L312(lines 312 320) no Hoare annotation was computed. [2023-11-06 21:16:19,014 INFO L899 garLoopResultBuilder]: For program point L981(lines 981 987) no Hoare annotation was computed. [2023-11-06 21:16:19,014 INFO L899 garLoopResultBuilder]: For program point L308(lines 308 325) no Hoare annotation was computed. [2023-11-06 21:16:19,015 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 304 328) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (< ~waterLevel~0 1) (= 0 ~systemActive~0)) [2023-11-06 21:16:19,015 INFO L895 garLoopResultBuilder]: At program point L323(line 323) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (= 0 ~systemActive~0)) [2023-11-06 21:16:19,015 INFO L895 garLoopResultBuilder]: At program point isHighWaterSensorDry_returnLabel#1(lines 977 990) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (and .cse0 (<= 2 ~waterLevel~0)) (= 0 ~systemActive~0) (and (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1|) .cse0))) [2023-11-06 21:16:19,015 INFO L899 garLoopResultBuilder]: For program point L323-1(lines 304 328) no Hoare annotation was computed. [2023-11-06 21:16:19,015 INFO L895 garLoopResultBuilder]: At program point isHighWaterLevel_returnLabel#1(lines 470 488) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0))) (or (and (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1|) .cse0 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~2#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~7#1|)) (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (and .cse0 (<= 2 ~waterLevel~0)) (= 0 ~systemActive~0))) [2023-11-06 21:16:19,015 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 304 328) no Hoare annotation was computed. [2023-11-06 21:16:19,016 INFO L899 garLoopResultBuilder]: For program point L396(lines 396 402) no Hoare annotation was computed. [2023-11-06 21:16:19,016 INFO L895 garLoopResultBuilder]: At program point L394(line 394) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (and (= ~pumpRunning~0 0) (<= 2 ~waterLevel~0)) (= 0 ~systemActive~0)) [2023-11-06 21:16:19,016 INFO L895 garLoopResultBuilder]: At program point L396-2(lines 389 405) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (<= 2 ~waterLevel~0) (= 0 ~systemActive~0)) [2023-11-06 21:16:19,016 INFO L899 garLoopResultBuilder]: For program point L394-1(line 394) no Hoare annotation was computed. [2023-11-06 21:16:19,016 INFO L895 garLoopResultBuilder]: At program point activatePump__wrappee__lowWaterSensor_returnLabel#1(lines 381 388) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (< ~waterLevel~0 1) (<= 2 ~waterLevel~0) (= 0 ~systemActive~0)) [2023-11-06 21:16:19,017 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 912 923) no Hoare annotation was computed. [2023-11-06 21:16:19,017 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 912 923) the Hoare annotation is: (let ((.cse0 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or (< |old(~waterLevel~0)| 1) (not (= ~pumpRunning~0 0)) .cse0) (or (< |old(~waterLevel~0)| 2) .cse0 (= 0 ~systemActive~0)))) [2023-11-06 21:16:19,017 INFO L899 garLoopResultBuilder]: For program point L916-1(lines 912 923) no Hoare annotation was computed. [2023-11-06 21:16:19,017 INFO L895 garLoopResultBuilder]: At program point L349(line 349) the Hoare annotation is: (or (< ~waterLevel~0 1) (= 0 ~systemActive~0) (and (= ~pumpRunning~0 0) (= |old(~pumpRunning~0)| 0))) [2023-11-06 21:16:19,018 INFO L899 garLoopResultBuilder]: For program point L349-1(lines 330 354) no Hoare annotation was computed. [2023-11-06 21:16:19,018 INFO L899 garLoopResultBuilder]: For program point L498(lines 498 502) no Hoare annotation was computed. [2023-11-06 21:16:19,018 INFO L899 garLoopResultBuilder]: For program point L498-2(lines 498 502) no Hoare annotation was computed. [2023-11-06 21:16:19,018 INFO L895 garLoopResultBuilder]: At program point isLowWaterSensorDry_returnLabel#1(lines 991 999) the Hoare annotation is: (let ((.cse0 (< ~waterLevel~0 1)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |processEnvironment__wrappee__methaneQuery_isLowWaterSensorDry_#res#1| 0)) .cse1))) [2023-11-06 21:16:19,018 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 330 354) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (< ~waterLevel~0 1) (= 0 ~systemActive~0)) [2023-11-06 21:16:19,018 INFO L895 garLoopResultBuilder]: At program point isLowWaterLevel_returnLabel#1(lines 489 507) the Hoare annotation is: (let ((.cse0 (< ~waterLevel~0 1)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or .cse0 .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |processEnvironment__wrappee__methaneQuery_isLowWaterLevel_#res#1|) (= |processEnvironment__wrappee__methaneQuery_isLowWaterSensorDry_#res#1| 0) (= |processEnvironment__wrappee__methaneQuery_isLowWaterLevel_~tmp~8#1| 0) (<= 1 |processEnvironment__wrappee__methaneQuery_isLowWaterLevel_~tmp___0~3#1|))))) [2023-11-06 21:16:19,018 INFO L895 garLoopResultBuilder]: At program point L344(line 344) the Hoare annotation is: (or (< ~waterLevel~0 1) (= 0 ~systemActive~0)) [2023-11-06 21:16:19,019 INFO L895 garLoopResultBuilder]: At program point L340(line 340) the Hoare annotation is: (let ((.cse0 (< ~waterLevel~0 1)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |processEnvironment__wrappee__methaneQuery_isLowWaterLevel_#res#1|) (= |processEnvironment__wrappee__methaneQuery_isLowWaterSensorDry_#res#1| 0) (<= 1 |processEnvironment__wrappee__methaneQuery_~tmp~4#1|))) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2023-11-06 21:16:19,019 INFO L899 garLoopResultBuilder]: For program point L338(lines 338 346) no Hoare annotation was computed. [2023-11-06 21:16:19,019 INFO L899 garLoopResultBuilder]: For program point L334(lines 334 351) no Hoare annotation was computed. [2023-11-06 21:16:19,019 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 330 354) no Hoare annotation was computed. [2023-11-06 21:16:19,019 INFO L902 garLoopResultBuilder]: At program point isMethaneLevelCritical_returnLabel#1(lines 936 944) the Hoare annotation is: true [2023-11-06 21:16:19,019 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 414 424) no Hoare annotation was computed. [2023-11-06 21:16:19,019 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 414 424) the Hoare annotation is: true [2023-11-06 21:16:19,019 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmFINAL(lines 414 424) no Hoare annotation was computed. [2023-11-06 21:16:19,022 INFO L445 BasicCegarLoop]: Path program histogram: [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-06 21:16:19,024 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-06 21:16:19,074 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 06.11 09:16:19 BoogieIcfgContainer [2023-11-06 21:16:19,075 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-06 21:16:19,075 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-06 21:16:19,075 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-06 21:16:19,076 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-06 21:16:19,076 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.11 09:16:04" (3/4) ... [2023-11-06 21:16:19,078 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-06 21:16:19,087 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-06 21:16:19,088 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-06 21:16:19,088 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-06 21:16:19,088 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-06 21:16:19,088 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-06 21:16:19,089 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-06 21:16:19,089 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-06 21:16:19,089 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2023-11-06 21:16:19,089 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2023-11-06 21:16:19,106 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 19 nodes and edges [2023-11-06 21:16:19,107 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2023-11-06 21:16:19,108 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-06 21:16:19,108 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 21:16:19,109 INFO L939 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-06 21:16:19,144 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && !((0 == systemActive))) [2023-11-06 21:16:19,144 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (waterLevel == 1)) && !((0 == systemActive))) [2023-11-06 21:16:19,145 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) || (((((\result == 1) && (tmp == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && !((0 == systemActive)))) [2023-11-06 21:16:19,145 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) [2023-11-06 21:16:19,146 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) == waterLevel)) || (\old(waterLevel) <= 1)) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((pumpRunning == 0) && (waterLevel == 1)))) && ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || !((0 == systemActive)))) && ((((2 <= waterLevel) || (\old(waterLevel) < 2)) || (0 == systemActive)) || ((pumpRunning == 0) && (1 <= waterLevel)))) [2023-11-06 21:16:19,147 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 2)) || ((1 <= \result) && (\old(waterLevel) == waterLevel))) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || (\old(waterLevel) < 2)) || !((0 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (((pumpRunning == 0) && (1 <= \result)) && (waterLevel == 1)))) && ((((\old(waterLevel) < 2) || (((pumpRunning == 0) && (1 <= waterLevel)) && (1 <= \result))) || (0 == systemActive)) || ((2 <= waterLevel) && (1 <= \result)))) [2023-11-06 21:16:19,147 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((\result == 1) && (tmp == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && !((0 == systemActive))) || ((((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) && !((0 == systemActive)))) [2023-11-06 21:16:19,148 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) && (0 == systemActive)) [2023-11-06 21:16:19,148 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || (((pumpRunning == 0) && (1 <= tmp)) && (1 <= \result))) || !((0 == systemActive))) && ((((\old(waterLevel) < 2) || ((((pumpRunning == 0) && (1 <= tmp)) && (1 <= waterLevel)) && (1 <= \result))) || (0 == systemActive)) || (((2 <= waterLevel) && (1 <= tmp)) && (1 <= \result)))) && ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || (\old(waterLevel) == waterLevel))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (((pumpRunning == 0) && (1 <= tmp)) && (1 <= \result)))) [2023-11-06 21:16:19,148 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive)) && (((waterLevel < 1) || ((pumpRunning == \old(pumpRunning)) && (\result == 0))) || (0 == systemActive))) [2023-11-06 21:16:19,149 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((pumpRunning == 0) && (2 <= waterLevel))) || (0 == systemActive)) || ((1 <= \result) && (pumpRunning == 0))) [2023-11-06 21:16:19,149 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) [2023-11-06 21:16:19,149 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (2 <= waterLevel)) || (0 == systemActive)) [2023-11-06 21:16:19,150 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (2 <= waterLevel)) || (0 == systemActive)) [2023-11-06 21:16:19,150 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive)) && (((waterLevel < 1) || (0 == systemActive)) || (((((pumpRunning == \old(pumpRunning)) && (1 <= \result)) && (\result == 0)) && (tmp == 0)) && (1 <= tmp___0)))) [2023-11-06 21:16:19,150 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((1 <= \result) && (pumpRunning == 0)) && (tmp___0 == 0)) && (\result == 0)) && (1 <= tmp)) || !((\old(pumpRunning) == 0))) || (waterLevel < 1)) || ((pumpRunning == 0) && (2 <= waterLevel))) || (0 == systemActive)) [2023-11-06 21:16:19,150 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) [2023-11-06 21:16:19,190 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && !((0 == systemActive))) [2023-11-06 21:16:19,191 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (waterLevel == 1)) && !((0 == systemActive))) [2023-11-06 21:16:19,191 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) || (((((\result == 1) && (tmp == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && !((0 == systemActive)))) [2023-11-06 21:16:19,192 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) [2023-11-06 21:16:19,192 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) == waterLevel)) || (\old(waterLevel) <= 1)) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((pumpRunning == 0) && (waterLevel == 1)))) && ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || !((0 == systemActive)))) && ((((2 <= waterLevel) || (\old(waterLevel) < 2)) || (0 == systemActive)) || ((pumpRunning == 0) && (1 <= waterLevel)))) [2023-11-06 21:16:19,192 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 2)) || ((1 <= \result) && (\old(waterLevel) == waterLevel))) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || (\old(waterLevel) < 2)) || !((0 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (((pumpRunning == 0) && (1 <= \result)) && (waterLevel == 1)))) && ((((\old(waterLevel) < 2) || (((pumpRunning == 0) && (1 <= waterLevel)) && (1 <= \result))) || (0 == systemActive)) || ((2 <= waterLevel) && (1 <= \result)))) [2023-11-06 21:16:19,193 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((\result == 1) && (tmp == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && !((0 == systemActive))) || ((((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) && !((0 == systemActive)))) [2023-11-06 21:16:19,193 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) && (0 == systemActive)) [2023-11-06 21:16:19,193 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || (((pumpRunning == 0) && (1 <= tmp)) && (1 <= \result))) || !((0 == systemActive))) && ((((\old(waterLevel) < 2) || ((((pumpRunning == 0) && (1 <= tmp)) && (1 <= waterLevel)) && (1 <= \result))) || (0 == systemActive)) || (((2 <= waterLevel) && (1 <= tmp)) && (1 <= \result)))) && ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || (\old(waterLevel) == waterLevel))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (((pumpRunning == 0) && (1 <= tmp)) && (1 <= \result)))) [2023-11-06 21:16:19,194 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive)) && (((waterLevel < 1) || ((pumpRunning == \old(pumpRunning)) && (\result == 0))) || (0 == systemActive))) [2023-11-06 21:16:19,194 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((pumpRunning == 0) && (2 <= waterLevel))) || (0 == systemActive)) || ((1 <= \result) && (pumpRunning == 0))) [2023-11-06 21:16:19,194 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) [2023-11-06 21:16:19,194 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (2 <= waterLevel)) || (0 == systemActive)) [2023-11-06 21:16:19,194 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (2 <= waterLevel)) || (0 == systemActive)) [2023-11-06 21:16:19,195 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive)) && (((waterLevel < 1) || (0 == systemActive)) || (((((pumpRunning == \old(pumpRunning)) && (1 <= \result)) && (\result == 0)) && (tmp == 0)) && (1 <= tmp___0)))) [2023-11-06 21:16:19,195 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((1 <= \result) && (pumpRunning == 0)) && (tmp___0 == 0)) && (\result == 0)) && (1 <= tmp)) || !((\old(pumpRunning) == 0))) || (waterLevel < 1)) || ((pumpRunning == 0) && (2 <= waterLevel))) || (0 == systemActive)) [2023-11-06 21:16:19,195 WARN L115 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) [2023-11-06 21:16:19,211 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.graphml [2023-11-06 21:16:19,212 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/witness.graphml.yaml [2023-11-06 21:16:19,212 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-06 21:16:19,213 INFO L158 Benchmark]: Toolchain (without parser) took 16351.42ms. Allocated memory was 163.6MB in the beginning and 268.4MB in the end (delta: 104.9MB). Free memory was 129.8MB in the beginning and 215.8MB in the end (delta: -86.0MB). Peak memory consumption was 19.6MB. Max. memory is 16.1GB. [2023-11-06 21:16:19,213 INFO L158 Benchmark]: CDTParser took 0.34ms. Allocated memory is still 117.4MB. Free memory is still 72.7MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-06 21:16:19,214 INFO L158 Benchmark]: CACSL2BoogieTranslator took 543.93ms. Allocated memory is still 163.6MB. Free memory was 129.8MB in the beginning and 110.2MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-06 21:16:19,214 INFO L158 Benchmark]: Boogie Procedure Inliner took 67.72ms. Allocated memory is still 163.6MB. Free memory was 110.2MB in the beginning and 107.5MB in the end (delta: 2.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-06 21:16:19,214 INFO L158 Benchmark]: Boogie Preprocessor took 30.88ms. Allocated memory is still 163.6MB. Free memory was 107.5MB in the beginning and 106.0MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-06 21:16:19,215 INFO L158 Benchmark]: RCFGBuilder took 500.96ms. Allocated memory is still 163.6MB. Free memory was 106.0MB in the beginning and 87.2MB in the end (delta: 18.9MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-06 21:16:19,215 INFO L158 Benchmark]: TraceAbstraction took 15063.80ms. Allocated memory was 163.6MB in the beginning and 268.4MB in the end (delta: 104.9MB). Free memory was 87.2MB in the beginning and 224.2MB in the end (delta: -137.1MB). Peak memory consumption was 118.2MB. Max. memory is 16.1GB. [2023-11-06 21:16:19,216 INFO L158 Benchmark]: Witness Printer took 136.86ms. Allocated memory is still 268.4MB. Free memory was 224.2MB in the beginning and 215.8MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-06 21:16:19,218 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.34ms. Allocated memory is still 117.4MB. Free memory is still 72.7MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 543.93ms. Allocated memory is still 163.6MB. Free memory was 129.8MB in the beginning and 110.2MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 67.72ms. Allocated memory is still 163.6MB. Free memory was 110.2MB in the beginning and 107.5MB in the end (delta: 2.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 30.88ms. Allocated memory is still 163.6MB. Free memory was 107.5MB in the beginning and 106.0MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 500.96ms. Allocated memory is still 163.6MB. Free memory was 106.0MB in the beginning and 87.2MB in the end (delta: 18.9MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * TraceAbstraction took 15063.80ms. Allocated memory was 163.6MB in the beginning and 268.4MB in the end (delta: 104.9MB). Free memory was 87.2MB in the beginning and 224.2MB in the end (delta: -137.1MB). Peak memory consumption was 118.2MB. Max. memory is 16.1GB. * Witness Printer took 136.86ms. Allocated memory is still 268.4MB. Free memory was 224.2MB in the beginning and 215.8MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [49] - GenericResultAtLocation [Line: 153]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [153] - GenericResultAtLocation [Line: 162]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [162] - GenericResultAtLocation [Line: 190]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [190] - GenericResultAtLocation [Line: 261]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [261] - GenericResultAtLocation [Line: 531]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [531] - GenericResultAtLocation [Line: 897]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [897] - GenericResultAtLocation [Line: 1000]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [1000] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 158]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 10 procedures, 108 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 14.9s, OverallIterations: 12, TraceHistogramMax: 3, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.1s, AutomataDifference: 5.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.6s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 2270 SdHoareTripleChecker+Valid, 2.8s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 2234 mSDsluCounter, 5671 SdHoareTripleChecker+Invalid, 2.3s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 4207 mSDsCounter, 579 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 3147 IncrementalHoareTripleChecker+Invalid, 3726 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 579 mSolverCounterUnsat, 1464 mSDtfsCounter, 3147 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 1122 GetRequests, 947 SyntacticMatches, 15 SemanticMatches, 160 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1385 ImplicationChecksByTransitivity, 1.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1036occurred in iteration=11, InterpolantAutomatonStates: 143, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.9s AutomataMinimizationTime, 12 MinimizatonAttempts, 264 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 51 LocationsWithAnnotation, 2755 PreInvPairs, 2899 NumberOfFragments, 1009 HoareAnnotationTreeSize, 2755 FomulaSimplifications, 3704 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 51 FomulaSimplificationsInter, 5478 FormulaSimplificationTreeSizeReductionInter, 2.4s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.2s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 3.4s InterpolantComputationTime, 1538 NumberOfCodeBlocks, 1538 NumberOfCodeBlocksAsserted, 19 NumberOfCheckSat, 1675 ConstructedInterpolants, 0 QuantifiedInterpolants, 2849 SizeOfPredicates, 16 NumberOfNonLiveVariables, 2175 ConjunctsInSsa, 45 ConjunctsInUnsatCore, 20 InterpolantComputations, 10 PerfectInterpolantSequences, 636/708 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 109]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 381]: Loop Invariant Derived loop invariant: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (2 <= waterLevel)) || (0 == systemActive)) - InvariantResult [Line: 1012]: Loop Invariant Derived loop invariant: (((pumpRunning == 0) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 389]: Loop Invariant Derived loop invariant: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (2 <= waterLevel)) || (0 == systemActive)) - InvariantResult [Line: 991]: Loop Invariant Derived loop invariant: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive)) && (((waterLevel < 1) || ((pumpRunning == \old(pumpRunning)) && (\result == 0))) || (0 == systemActive))) - InvariantResult [Line: 425]: Loop Invariant Derived loop invariant: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) - InvariantResult [Line: 165]: Loop Invariant Derived loop invariant: ((((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || (((pumpRunning == 0) && (1 <= tmp)) && (1 <= \result))) || !((0 == systemActive))) && ((((\old(waterLevel) < 2) || ((((pumpRunning == 0) && (1 <= tmp)) && (1 <= waterLevel)) && (1 <= \result))) || (0 == systemActive)) || (((2 <= waterLevel) && (1 <= tmp)) && (1 <= \result)))) && ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || (\old(waterLevel) == waterLevel))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (((pumpRunning == 0) && (1 <= tmp)) && (1 <= \result)))) - InvariantResult [Line: 977]: Loop Invariant Derived loop invariant: ((((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || ((pumpRunning == 0) && (2 <= waterLevel))) || (0 == systemActive)) || ((1 <= \result) && (pumpRunning == 0))) - InvariantResult [Line: 470]: Loop Invariant Derived loop invariant: (((((((((1 <= \result) && (pumpRunning == 0)) && (tmp___0 == 0)) && (\result == 0)) && (1 <= tmp)) || !((\old(pumpRunning) == 0))) || (waterLevel < 1)) || ((pumpRunning == 0) && (2 <= waterLevel))) || (0 == systemActive)) - InvariantResult [Line: 117]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 356]: Loop Invariant Derived loop invariant: (((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) == waterLevel)) || (\old(waterLevel) <= 1)) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((pumpRunning == 0) && (waterLevel == 1)))) && ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) || !((0 == systemActive)))) && ((((2 <= waterLevel) || (\old(waterLevel) < 2)) || (0 == systemActive)) || ((pumpRunning == 0) && (1 <= waterLevel)))) - InvariantResult [Line: 202]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 193]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 936]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 508]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) && (0 == systemActive)) - InvariantResult [Line: 52]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 523]: Loop Invariant Derived loop invariant: ((((((\result == 1) && (tmp == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && !((0 == systemActive))) || ((((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) && !((0 == systemActive)))) - InvariantResult [Line: 154]: Loop Invariant Derived loop invariant: (((\old(waterLevel) < 2) || (0 == systemActive)) && (!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1))) - InvariantResult [Line: 968]: Loop Invariant Derived loop invariant: (((((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 2)) || ((1 <= \result) && (\old(waterLevel) == waterLevel))) && (((!((\old(pumpRunning) == 0)) || (pumpRunning == 0)) || (\old(waterLevel) < 2)) || !((0 == systemActive)))) && ((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (((pumpRunning == 0) && (1 <= \result)) && (waterLevel == 1)))) && ((((\old(waterLevel) < 2) || (((pumpRunning == 0) && (1 <= waterLevel)) && (1 <= \result))) || (0 == systemActive)) || ((2 <= waterLevel) && (1 <= \result)))) - InvariantResult [Line: 203]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0) && (\result == 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= waterLevel)) || (((((\result == 1) && (tmp == 1)) && (2 <= waterLevel)) && (splverifierCounter == 0)) && !((0 == systemActive)))) - InvariantResult [Line: 1026]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (\result == 1)) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 1019]: Loop Invariant Derived loop invariant: (((pumpRunning == 0) && (waterLevel == 1)) && !((0 == systemActive))) - InvariantResult [Line: 489]: Loop Invariant Derived loop invariant: (((!((\old(pumpRunning) == 0)) || (waterLevel < 1)) || (0 == systemActive)) && (((waterLevel < 1) || (0 == systemActive)) || (((((pumpRunning == \old(pumpRunning)) && (1 <= \result)) && (\result == 0)) && (tmp == 0)) && (1 <= tmp___0)))) - InvariantResult [Line: 130]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 900]: Loop Invariant Derived loop invariant: ((!((\old(pumpRunning) == 0)) || (\old(waterLevel) < 1)) && (((\old(waterLevel) < 2) || ((pumpRunning == \old(pumpRunning)) && (1 <= waterLevel))) || (0 == systemActive))) - InvariantResult [Line: 62]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2023-11-06 21:16:19,256 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2ac8aba3-18c8-487d-9e61-52e1811095e7/bin/uautomizer-verify-WvqO1wxjHP/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE