./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec1_product57.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 527bcce2 Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec1_product57.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash d0f26fc8ab0bdaf05de905c05e583bc491c727ef99c3d3df87bba160b541b55a --- Real Ultimate output --- This is Ultimate 0.2.3-dev-527bcce [2023-11-21 22:21:30,163 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-21 22:21:30,284 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-21 22:21:30,296 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-21 22:21:30,297 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-21 22:21:30,336 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-21 22:21:30,337 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-21 22:21:30,338 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-21 22:21:30,340 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-21 22:21:30,345 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-21 22:21:30,345 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-21 22:21:30,346 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-21 22:21:30,347 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-21 22:21:30,349 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-21 22:21:30,349 INFO L153 SettingsManager]: * Use SBE=true [2023-11-21 22:21:30,350 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-21 22:21:30,350 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-21 22:21:30,351 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-21 22:21:30,351 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-21 22:21:30,352 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-21 22:21:30,352 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-21 22:21:30,353 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-21 22:21:30,354 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-21 22:21:30,354 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-21 22:21:30,354 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-21 22:21:30,355 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-21 22:21:30,355 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-21 22:21:30,357 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-21 22:21:30,357 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-21 22:21:30,358 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-21 22:21:30,359 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-21 22:21:30,359 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-21 22:21:30,360 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-21 22:21:30,360 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-21 22:21:30,360 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-21 22:21:30,361 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-21 22:21:30,361 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-21 22:21:30,361 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-21 22:21:30,362 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-21 22:21:30,362 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-21 22:21:30,362 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-21 22:21:30,363 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-21 22:21:30,363 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> d0f26fc8ab0bdaf05de905c05e583bc491c727ef99c3d3df87bba160b541b55a [2023-11-21 22:21:30,703 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-21 22:21:30,745 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-21 22:21:30,749 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-21 22:21:30,750 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-21 22:21:30,751 INFO L274 PluginConnector]: CDTParser initialized [2023-11-21 22:21:30,753 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/../../sv-benchmarks/c/product-lines/minepump_spec1_product57.cil.c [2023-11-21 22:21:33,824 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-21 22:21:34,182 INFO L384 CDTParser]: Found 1 translation units. [2023-11-21 22:21:34,184 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/sv-benchmarks/c/product-lines/minepump_spec1_product57.cil.c [2023-11-21 22:21:34,208 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/data/ccc0bccca/71b8bebdb4074fb6b511d85dda333e5a/FLAG618bb8fde [2023-11-21 22:21:34,227 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/data/ccc0bccca/71b8bebdb4074fb6b511d85dda333e5a [2023-11-21 22:21:34,233 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-21 22:21:34,235 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-21 22:21:34,239 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-21 22:21:34,239 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-21 22:21:34,245 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-21 22:21:34,246 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,248 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@2c38772e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34, skipping insertion in model container [2023-11-21 22:21:34,248 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,318 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-21 22:21:34,618 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/sv-benchmarks/c/product-lines/minepump_spec1_product57.cil.c[18661,18674] [2023-11-21 22:21:34,622 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-21 22:21:34,643 INFO L202 MainTranslator]: Completed pre-run [2023-11-21 22:21:34,656 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification1_spec.i","") [49] [2023-11-21 22:21:34,658 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [78] [2023-11-21 22:21:34,658 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [116] [2023-11-21 22:21:34,658 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [482] [2023-11-21 22:21:34,659 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [551] [2023-11-21 22:21:34,659 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [773] [2023-11-21 22:21:34,659 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [869] [2023-11-21 22:21:34,659 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [973] [2023-11-21 22:21:34,783 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/sv-benchmarks/c/product-lines/minepump_spec1_product57.cil.c[18661,18674] [2023-11-21 22:21:34,783 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-21 22:21:34,805 INFO L206 MainTranslator]: Completed translation [2023-11-21 22:21:34,805 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34 WrapperNode [2023-11-21 22:21:34,805 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-21 22:21:34,807 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-21 22:21:34,807 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-21 22:21:34,807 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-21 22:21:34,815 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,830 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,860 INFO L138 Inliner]: procedures = 56, calls = 100, calls flagged for inlining = 24, calls inlined = 21, statements flattened = 215 [2023-11-21 22:21:34,860 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-21 22:21:34,861 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-21 22:21:34,861 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-21 22:21:34,862 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-21 22:21:34,873 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,874 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,879 INFO L184 PluginConnector]: Executing the observer HeapSplitter from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,900 INFO L187 HeapSplitter]: Split 2 memory accesses to 1 slices as follows [2] [2023-11-21 22:21:34,901 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,901 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,909 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,915 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,917 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,919 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,922 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-21 22:21:34,923 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-21 22:21:34,923 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-21 22:21:34,923 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-21 22:21:34,924 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (1/1) ... [2023-11-21 22:21:34,930 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-21 22:21:34,944 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 22:21:34,974 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-21 22:21:35,016 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-21 22:21:35,029 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-21 22:21:35,030 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-21 22:21:35,030 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-21 22:21:35,031 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-21 22:21:35,031 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-21 22:21:35,031 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-21 22:21:35,031 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-21 22:21:35,031 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2023-11-21 22:21:35,032 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2023-11-21 22:21:35,032 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 22:21:35,032 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 22:21:35,033 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-21 22:21:35,033 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-21 22:21:35,033 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-21 22:21:35,034 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-21 22:21:35,034 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-21 22:21:35,034 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-21 22:21:35,036 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-21 22:21:35,134 INFO L240 CfgBuilder]: Building ICFG [2023-11-21 22:21:35,136 INFO L266 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-21 22:21:35,528 INFO L281 CfgBuilder]: Performing block encoding [2023-11-21 22:21:35,682 INFO L303 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-21 22:21:35,682 INFO L308 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-21 22:21:35,684 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 10:21:35 BoogieIcfgContainer [2023-11-21 22:21:35,684 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-21 22:21:35,687 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-21 22:21:35,687 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-21 22:21:35,690 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-21 22:21:35,691 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.11 10:21:34" (1/3) ... [2023-11-21 22:21:35,691 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@78505516 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 10:21:35, skipping insertion in model container [2023-11-21 22:21:35,691 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:21:34" (2/3) ... [2023-11-21 22:21:35,692 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@78505516 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 10:21:35, skipping insertion in model container [2023-11-21 22:21:35,692 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 10:21:35" (3/3) ... [2023-11-21 22:21:35,693 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product57.cil.c [2023-11-21 22:21:35,712 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-21 22:21:35,712 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-21 22:21:35,767 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-21 22:21:35,775 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@194183c9, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-21 22:21:35,776 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-21 22:21:35,781 INFO L276 IsEmpty]: Start isEmpty. Operand has 57 states, 36 states have (on average 1.4166666666666667) internal successors, (51), 44 states have internal predecessors, (51), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) [2023-11-21 22:21:35,790 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2023-11-21 22:21:35,790 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:21:35,791 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:35,791 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:21:35,797 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:21:35,797 INFO L85 PathProgramCache]: Analyzing trace with hash -272895338, now seen corresponding path program 1 times [2023-11-21 22:21:35,807 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:21:35,807 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1996372921] [2023-11-21 22:21:35,808 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:35,808 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:21:35,948 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:36,053 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-21 22:21:36,060 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:36,069 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:21:36,069 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:21:36,070 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1996372921] [2023-11-21 22:21:36,070 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1996372921] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:21:36,071 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:21:36,071 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-21 22:21:36,072 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1432297726] [2023-11-21 22:21:36,073 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:21:36,077 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-21 22:21:36,078 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:21:36,115 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-21 22:21:36,115 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-21 22:21:36,118 INFO L87 Difference]: Start difference. First operand has 57 states, 36 states have (on average 1.4166666666666667) internal successors, (51), 44 states have internal predecessors, (51), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:21:36,213 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:21:36,216 INFO L93 Difference]: Finished difference Result 112 states and 151 transitions. [2023-11-21 22:21:36,217 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-21 22:21:36,218 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2023-11-21 22:21:36,219 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:21:36,228 INFO L225 Difference]: With dead ends: 112 [2023-11-21 22:21:36,228 INFO L226 Difference]: Without dead ends: 52 [2023-11-21 22:21:36,233 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-21 22:21:36,238 INFO L413 NwaCegarLoop]: 55 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 55 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-21 22:21:36,240 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 55 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-21 22:21:36,257 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 52 states. [2023-11-21 22:21:36,290 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 52 to 52. [2023-11-21 22:21:36,292 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 52 states, 33 states have (on average 1.303030303030303) internal successors, (43), 40 states have internal predecessors, (43), 12 states have call successors, (12), 7 states have call predecessors, (12), 6 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2023-11-21 22:21:36,300 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 52 states to 52 states and 66 transitions. [2023-11-21 22:21:36,302 INFO L78 Accepts]: Start accepts. Automaton has 52 states and 66 transitions. Word has length 16 [2023-11-21 22:21:36,302 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:21:36,302 INFO L495 AbstractCegarLoop]: Abstraction has 52 states and 66 transitions. [2023-11-21 22:21:36,303 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:21:36,303 INFO L276 IsEmpty]: Start isEmpty. Operand 52 states and 66 transitions. [2023-11-21 22:21:36,309 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2023-11-21 22:21:36,309 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:21:36,309 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:36,309 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-21 22:21:36,310 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:21:36,310 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:21:36,310 INFO L85 PathProgramCache]: Analyzing trace with hash 2100348772, now seen corresponding path program 1 times [2023-11-21 22:21:36,311 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:21:36,311 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [361666868] [2023-11-21 22:21:36,311 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:36,312 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:21:36,354 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:36,438 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-21 22:21:36,440 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:36,442 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:21:36,443 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:21:36,443 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [361666868] [2023-11-21 22:21:36,443 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [361666868] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:21:36,444 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:21:36,444 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 22:21:36,444 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [144087008] [2023-11-21 22:21:36,444 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:21:36,446 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-21 22:21:36,446 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:21:36,447 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-21 22:21:36,447 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 22:21:36,447 INFO L87 Difference]: Start difference. First operand 52 states and 66 transitions. Second operand has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:21:36,486 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:21:36,487 INFO L93 Difference]: Finished difference Result 81 states and 103 transitions. [2023-11-21 22:21:36,487 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-21 22:21:36,487 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2023-11-21 22:21:36,488 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:21:36,489 INFO L225 Difference]: With dead ends: 81 [2023-11-21 22:21:36,489 INFO L226 Difference]: Without dead ends: 44 [2023-11-21 22:21:36,490 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 22:21:36,491 INFO L413 NwaCegarLoop]: 41 mSDtfsCounter, 7 mSDsluCounter, 32 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 73 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-21 22:21:36,492 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 73 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-21 22:21:36,493 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 44 states. [2023-11-21 22:21:36,503 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 44 to 44. [2023-11-21 22:21:36,503 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 44 states, 28 states have (on average 1.3214285714285714) internal successors, (37), 35 states have internal predecessors, (37), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2023-11-21 22:21:36,509 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 44 states to 44 states and 55 transitions. [2023-11-21 22:21:36,509 INFO L78 Accepts]: Start accepts. Automaton has 44 states and 55 transitions. Word has length 17 [2023-11-21 22:21:36,509 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:21:36,509 INFO L495 AbstractCegarLoop]: Abstraction has 44 states and 55 transitions. [2023-11-21 22:21:36,510 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:21:36,510 INFO L276 IsEmpty]: Start isEmpty. Operand 44 states and 55 transitions. [2023-11-21 22:21:36,511 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2023-11-21 22:21:36,511 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:21:36,511 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:36,511 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-21 22:21:36,512 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:21:36,512 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:21:36,512 INFO L85 PathProgramCache]: Analyzing trace with hash 345337604, now seen corresponding path program 1 times [2023-11-21 22:21:36,512 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:21:36,513 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [52158237] [2023-11-21 22:21:36,513 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:36,513 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:21:36,551 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:36,628 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 22:21:36,629 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:36,632 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:21:36,632 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:21:36,632 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [52158237] [2023-11-21 22:21:36,633 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [52158237] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:21:36,633 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:21:36,633 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 22:21:36,633 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1276750713] [2023-11-21 22:21:36,633 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:21:36,634 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-21 22:21:36,634 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:21:36,635 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-21 22:21:36,635 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 22:21:36,635 INFO L87 Difference]: Start difference. First operand 44 states and 55 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:21:36,677 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:21:36,677 INFO L93 Difference]: Finished difference Result 86 states and 109 transitions. [2023-11-21 22:21:36,678 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-21 22:21:36,679 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 19 [2023-11-21 22:21:36,680 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:21:36,683 INFO L225 Difference]: With dead ends: 86 [2023-11-21 22:21:36,683 INFO L226 Difference]: Without dead ends: 44 [2023-11-21 22:21:36,688 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 22:21:36,692 INFO L413 NwaCegarLoop]: 39 mSDtfsCounter, 44 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 15 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 44 SdHoareTripleChecker+Valid, 39 SdHoareTripleChecker+Invalid, 15 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 15 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-21 22:21:36,694 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [44 Valid, 39 Invalid, 15 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 15 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-21 22:21:36,696 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 44 states. [2023-11-21 22:21:36,702 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 44 to 44. [2023-11-21 22:21:36,703 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 44 states, 28 states have (on average 1.2857142857142858) internal successors, (36), 35 states have internal predecessors, (36), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2023-11-21 22:21:36,704 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 44 states to 44 states and 54 transitions. [2023-11-21 22:21:36,706 INFO L78 Accepts]: Start accepts. Automaton has 44 states and 54 transitions. Word has length 19 [2023-11-21 22:21:36,706 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:21:36,707 INFO L495 AbstractCegarLoop]: Abstraction has 44 states and 54 transitions. [2023-11-21 22:21:36,708 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:21:36,708 INFO L276 IsEmpty]: Start isEmpty. Operand 44 states and 54 transitions. [2023-11-21 22:21:36,715 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2023-11-21 22:21:36,716 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:21:36,716 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:36,716 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-21 22:21:36,716 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:21:36,717 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:21:36,717 INFO L85 PathProgramCache]: Analyzing trace with hash -802980982, now seen corresponding path program 1 times [2023-11-21 22:21:36,717 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:21:36,717 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1775561867] [2023-11-21 22:21:36,718 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:36,718 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:21:36,744 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:36,810 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 22:21:36,812 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:36,814 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:21:36,815 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:21:36,815 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1775561867] [2023-11-21 22:21:36,815 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1775561867] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:21:36,815 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:21:36,816 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 22:21:36,816 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [57611099] [2023-11-21 22:21:36,816 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:21:36,816 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-21 22:21:36,817 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:21:36,817 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-21 22:21:36,817 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 22:21:36,818 INFO L87 Difference]: Start difference. First operand 44 states and 54 transitions. Second operand has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:21:36,878 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:21:36,878 INFO L93 Difference]: Finished difference Result 120 states and 150 transitions. [2023-11-21 22:21:36,878 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-21 22:21:36,878 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 22 [2023-11-21 22:21:36,879 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:21:36,880 INFO L225 Difference]: With dead ends: 120 [2023-11-21 22:21:36,880 INFO L226 Difference]: Without dead ends: 78 [2023-11-21 22:21:36,881 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 22:21:36,883 INFO L413 NwaCegarLoop]: 47 mSDtfsCounter, 36 mSDsluCounter, 31 mSDsCounter, 0 mSdLazyCounter, 28 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 36 SdHoareTripleChecker+Valid, 78 SdHoareTripleChecker+Invalid, 32 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 28 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-21 22:21:36,883 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [36 Valid, 78 Invalid, 32 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 28 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-21 22:21:36,884 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 78 states. [2023-11-21 22:21:36,899 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 78 to 76. [2023-11-21 22:21:36,899 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 50 states have (on average 1.24) internal successors, (62), 57 states have internal predecessors, (62), 13 states have call successors, (13), 12 states have call predecessors, (13), 12 states have return successors, (17), 13 states have call predecessors, (17), 13 states have call successors, (17) [2023-11-21 22:21:36,901 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 92 transitions. [2023-11-21 22:21:36,901 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 92 transitions. Word has length 22 [2023-11-21 22:21:36,901 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:21:36,902 INFO L495 AbstractCegarLoop]: Abstraction has 76 states and 92 transitions. [2023-11-21 22:21:36,902 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.333333333333333) internal successors, (19), 3 states have internal predecessors, (19), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:21:36,902 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 92 transitions. [2023-11-21 22:21:36,903 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2023-11-21 22:21:36,903 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:21:36,904 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:36,904 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-21 22:21:36,904 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:21:36,905 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:21:36,905 INFO L85 PathProgramCache]: Analyzing trace with hash -991009571, now seen corresponding path program 1 times [2023-11-21 22:21:36,905 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:21:36,905 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1293584017] [2023-11-21 22:21:36,906 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:36,906 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:21:36,924 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:37,054 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 22:21:37,084 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:37,106 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:21:37,108 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:37,110 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2023-11-21 22:21:37,112 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:37,117 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:21:37,118 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:21:37,118 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1293584017] [2023-11-21 22:21:37,118 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1293584017] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:21:37,119 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:21:37,119 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-21 22:21:37,119 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [32907645] [2023-11-21 22:21:37,119 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:21:37,120 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-21 22:21:37,120 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:21:37,121 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-21 22:21:37,121 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-21 22:21:37,121 INFO L87 Difference]: Start difference. First operand 76 states and 92 transitions. Second operand has 5 states, 5 states have (on average 4.6) internal successors, (23), 4 states have internal predecessors, (23), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-21 22:21:37,394 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:21:37,395 INFO L93 Difference]: Finished difference Result 102 states and 122 transitions. [2023-11-21 22:21:37,395 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-21 22:21:37,396 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.6) internal successors, (23), 4 states have internal predecessors, (23), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 30 [2023-11-21 22:21:37,396 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:21:37,400 INFO L225 Difference]: With dead ends: 102 [2023-11-21 22:21:37,400 INFO L226 Difference]: Without dead ends: 100 [2023-11-21 22:21:37,402 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2023-11-21 22:21:37,404 INFO L413 NwaCegarLoop]: 37 mSDtfsCounter, 57 mSDsluCounter, 82 mSDsCounter, 0 mSdLazyCounter, 122 mSolverCounterSat, 26 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 119 SdHoareTripleChecker+Invalid, 148 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 26 IncrementalHoareTripleChecker+Valid, 122 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-21 22:21:37,404 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 119 Invalid, 148 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [26 Valid, 122 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-21 22:21:37,406 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 100 states. [2023-11-21 22:21:37,427 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 100 to 94. [2023-11-21 22:21:37,428 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 94 states, 63 states have (on average 1.2222222222222223) internal successors, (77), 70 states have internal predecessors, (77), 15 states have call successors, (15), 12 states have call predecessors, (15), 15 states have return successors, (22), 16 states have call predecessors, (22), 15 states have call successors, (22) [2023-11-21 22:21:37,429 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 94 states to 94 states and 114 transitions. [2023-11-21 22:21:37,430 INFO L78 Accepts]: Start accepts. Automaton has 94 states and 114 transitions. Word has length 30 [2023-11-21 22:21:37,430 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:21:37,430 INFO L495 AbstractCegarLoop]: Abstraction has 94 states and 114 transitions. [2023-11-21 22:21:37,431 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.6) internal successors, (23), 4 states have internal predecessors, (23), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2023-11-21 22:21:37,431 INFO L276 IsEmpty]: Start isEmpty. Operand 94 states and 114 transitions. [2023-11-21 22:21:37,432 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2023-11-21 22:21:37,432 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:21:37,432 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:37,433 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-21 22:21:37,433 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:21:37,433 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:21:37,434 INFO L85 PathProgramCache]: Analyzing trace with hash 1938263853, now seen corresponding path program 1 times [2023-11-21 22:21:37,434 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:21:37,434 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1462917203] [2023-11-21 22:21:37,434 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:37,434 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:21:37,469 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:37,667 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 22:21:37,676 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:37,755 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:21:37,756 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:37,760 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2023-11-21 22:21:37,761 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:37,763 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 22:21:37,764 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:21:37,764 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1462917203] [2023-11-21 22:21:37,764 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1462917203] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:21:37,765 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:21:37,765 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-21 22:21:37,765 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1101367353] [2023-11-21 22:21:37,766 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:21:37,766 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-21 22:21:37,766 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:21:37,769 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-21 22:21:37,769 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2023-11-21 22:21:37,770 INFO L87 Difference]: Start difference. First operand 94 states and 114 transitions. Second operand has 7 states, 7 states have (on average 3.2857142857142856) internal successors, (23), 6 states have internal predecessors, (23), 4 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-21 22:21:38,046 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:21:38,046 INFO L93 Difference]: Finished difference Result 240 states and 290 transitions. [2023-11-21 22:21:38,047 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-21 22:21:38,047 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 3.2857142857142856) internal successors, (23), 6 states have internal predecessors, (23), 4 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 31 [2023-11-21 22:21:38,047 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:21:38,052 INFO L225 Difference]: With dead ends: 240 [2023-11-21 22:21:38,052 INFO L226 Difference]: Without dead ends: 148 [2023-11-21 22:21:38,056 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=36, Invalid=74, Unknown=0, NotChecked=0, Total=110 [2023-11-21 22:21:38,058 INFO L413 NwaCegarLoop]: 52 mSDtfsCounter, 129 mSDsluCounter, 82 mSDsCounter, 0 mSdLazyCounter, 136 mSolverCounterSat, 59 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 134 SdHoareTripleChecker+Valid, 134 SdHoareTripleChecker+Invalid, 195 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 59 IncrementalHoareTripleChecker+Valid, 136 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-21 22:21:38,060 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [134 Valid, 134 Invalid, 195 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [59 Valid, 136 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-21 22:21:38,063 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 148 states. [2023-11-21 22:21:38,099 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 148 to 130. [2023-11-21 22:21:38,101 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 130 states, 87 states have (on average 1.1954022988505748) internal successors, (104), 95 states have internal predecessors, (104), 20 states have call successors, (20), 19 states have call predecessors, (20), 22 states have return successors, (27), 21 states have call predecessors, (27), 20 states have call successors, (27) [2023-11-21 22:21:38,105 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 130 states to 130 states and 151 transitions. [2023-11-21 22:21:38,106 INFO L78 Accepts]: Start accepts. Automaton has 130 states and 151 transitions. Word has length 31 [2023-11-21 22:21:38,106 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:21:38,106 INFO L495 AbstractCegarLoop]: Abstraction has 130 states and 151 transitions. [2023-11-21 22:21:38,107 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 3.2857142857142856) internal successors, (23), 6 states have internal predecessors, (23), 4 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-21 22:21:38,107 INFO L276 IsEmpty]: Start isEmpty. Operand 130 states and 151 transitions. [2023-11-21 22:21:38,110 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2023-11-21 22:21:38,110 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:21:38,111 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:38,111 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-21 22:21:38,111 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:21:38,112 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:21:38,112 INFO L85 PathProgramCache]: Analyzing trace with hash 788946186, now seen corresponding path program 1 times [2023-11-21 22:21:38,112 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:21:38,112 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [280508279] [2023-11-21 22:21:38,112 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:38,113 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:21:38,135 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:38,211 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 22:21:38,215 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:38,225 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 22:21:38,229 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:38,238 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:21:38,240 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:38,243 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2023-11-21 22:21:38,244 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:38,300 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-21 22:21:38,301 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:21:38,301 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [280508279] [2023-11-21 22:21:38,301 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [280508279] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:21:38,301 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:21:38,301 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2023-11-21 22:21:38,302 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [163437826] [2023-11-21 22:21:38,302 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:21:38,302 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-21 22:21:38,302 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:21:38,303 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-21 22:21:38,304 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2023-11-21 22:21:38,304 INFO L87 Difference]: Start difference. First operand 130 states and 151 transitions. Second operand has 8 states, 7 states have (on average 3.5714285714285716) internal successors, (25), 5 states have internal predecessors, (25), 2 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-21 22:21:38,684 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:21:38,684 INFO L93 Difference]: Finished difference Result 383 states and 454 transitions. [2023-11-21 22:21:38,685 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2023-11-21 22:21:38,685 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 3.5714285714285716) internal successors, (25), 5 states have internal predecessors, (25), 2 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) Word has length 34 [2023-11-21 22:21:38,686 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:21:38,690 INFO L225 Difference]: With dead ends: 383 [2023-11-21 22:21:38,691 INFO L226 Difference]: Without dead ends: 255 [2023-11-21 22:21:38,692 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 26 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 52 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=77, Invalid=265, Unknown=0, NotChecked=0, Total=342 [2023-11-21 22:21:38,695 INFO L413 NwaCegarLoop]: 24 mSDtfsCounter, 95 mSDsluCounter, 108 mSDsCounter, 0 mSdLazyCounter, 206 mSolverCounterSat, 69 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 98 SdHoareTripleChecker+Valid, 132 SdHoareTripleChecker+Invalid, 275 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 69 IncrementalHoareTripleChecker+Valid, 206 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-21 22:21:38,696 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [98 Valid, 132 Invalid, 275 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [69 Valid, 206 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-21 22:21:38,698 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 255 states. [2023-11-21 22:21:38,748 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 255 to 242. [2023-11-21 22:21:38,750 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 242 states, 163 states have (on average 1.165644171779141) internal successors, (190), 175 states have internal predecessors, (190), 37 states have call successors, (37), 35 states have call predecessors, (37), 41 states have return successors, (51), 39 states have call predecessors, (51), 37 states have call successors, (51) [2023-11-21 22:21:38,752 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 242 states to 242 states and 278 transitions. [2023-11-21 22:21:38,752 INFO L78 Accepts]: Start accepts. Automaton has 242 states and 278 transitions. Word has length 34 [2023-11-21 22:21:38,754 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:21:38,754 INFO L495 AbstractCegarLoop]: Abstraction has 242 states and 278 transitions. [2023-11-21 22:21:38,755 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 3.5714285714285716) internal successors, (25), 5 states have internal predecessors, (25), 2 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-21 22:21:38,755 INFO L276 IsEmpty]: Start isEmpty. Operand 242 states and 278 transitions. [2023-11-21 22:21:38,757 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2023-11-21 22:21:38,758 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:21:38,758 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:38,758 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-21 22:21:38,759 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:21:38,760 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:21:38,760 INFO L85 PathProgramCache]: Analyzing trace with hash -302651709, now seen corresponding path program 1 times [2023-11-21 22:21:38,761 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:21:38,761 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1066189674] [2023-11-21 22:21:38,761 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:38,761 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:21:38,783 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:39,047 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 22:21:39,049 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:39,059 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-21 22:21:39,061 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:39,094 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-21 22:21:39,099 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:39,170 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:21:39,172 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:39,189 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2023-11-21 22:21:39,191 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:39,199 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 22:21:39,200 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:21:39,200 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1066189674] [2023-11-21 22:21:39,200 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1066189674] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:21:39,200 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:21:39,201 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [15] imperfect sequences [] total 15 [2023-11-21 22:21:39,201 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2117112950] [2023-11-21 22:21:39,201 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:21:39,202 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2023-11-21 22:21:39,202 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:21:39,203 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2023-11-21 22:21:39,203 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=43, Invalid=167, Unknown=0, NotChecked=0, Total=210 [2023-11-21 22:21:39,203 INFO L87 Difference]: Start difference. First operand 242 states and 278 transitions. Second operand has 15 states, 13 states have (on average 1.9230769230769231) internal successors, (25), 10 states have internal predecessors, (25), 3 states have call successors, (6), 5 states have call predecessors, (6), 4 states have return successors, (5), 5 states have call predecessors, (5), 3 states have call successors, (5) [2023-11-21 22:21:40,371 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:21:40,371 INFO L93 Difference]: Finished difference Result 431 states and 516 transitions. [2023-11-21 22:21:40,372 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2023-11-21 22:21:40,372 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 13 states have (on average 1.9230769230769231) internal successors, (25), 10 states have internal predecessors, (25), 3 states have call successors, (6), 5 states have call predecessors, (6), 4 states have return successors, (5), 5 states have call predecessors, (5), 3 states have call successors, (5) Word has length 37 [2023-11-21 22:21:40,373 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:21:40,375 INFO L225 Difference]: With dead ends: 431 [2023-11-21 22:21:40,375 INFO L226 Difference]: Without dead ends: 335 [2023-11-21 22:21:40,377 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 56 GetRequests, 14 SyntacticMatches, 0 SemanticMatches, 42 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 529 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=485, Invalid=1407, Unknown=0, NotChecked=0, Total=1892 [2023-11-21 22:21:40,378 INFO L413 NwaCegarLoop]: 9 mSDtfsCounter, 408 mSDsluCounter, 63 mSDsCounter, 0 mSdLazyCounter, 416 mSolverCounterSat, 250 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 413 SdHoareTripleChecker+Valid, 72 SdHoareTripleChecker+Invalid, 666 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 250 IncrementalHoareTripleChecker+Valid, 416 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2023-11-21 22:21:40,378 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [413 Valid, 72 Invalid, 666 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [250 Valid, 416 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2023-11-21 22:21:40,379 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 335 states. [2023-11-21 22:21:40,422 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 335 to 287. [2023-11-21 22:21:40,423 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 287 states, 192 states have (on average 1.171875) internal successors, (225), 208 states have internal predecessors, (225), 46 states have call successors, (46), 40 states have call predecessors, (46), 48 states have return successors, (64), 49 states have call predecessors, (64), 46 states have call successors, (64) [2023-11-21 22:21:40,425 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 287 states to 287 states and 335 transitions. [2023-11-21 22:21:40,426 INFO L78 Accepts]: Start accepts. Automaton has 287 states and 335 transitions. Word has length 37 [2023-11-21 22:21:40,426 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:21:40,426 INFO L495 AbstractCegarLoop]: Abstraction has 287 states and 335 transitions. [2023-11-21 22:21:40,427 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 13 states have (on average 1.9230769230769231) internal successors, (25), 10 states have internal predecessors, (25), 3 states have call successors, (6), 5 states have call predecessors, (6), 4 states have return successors, (5), 5 states have call predecessors, (5), 3 states have call successors, (5) [2023-11-21 22:21:40,427 INFO L276 IsEmpty]: Start isEmpty. Operand 287 states and 335 transitions. [2023-11-21 22:21:40,429 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2023-11-21 22:21:40,430 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:21:40,430 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:40,430 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-21 22:21:40,430 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:21:40,431 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:21:40,431 INFO L85 PathProgramCache]: Analyzing trace with hash 601557894, now seen corresponding path program 1 times [2023-11-21 22:21:40,431 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:21:40,432 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1730899249] [2023-11-21 22:21:40,432 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:40,432 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:21:40,454 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:40,810 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 22:21:40,812 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:40,845 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-21 22:21:40,851 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:40,920 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:21:40,923 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:40,928 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:21:40,929 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:40,930 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 22:21:40,931 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:40,943 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 39 [2023-11-21 22:21:40,944 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:40,946 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2023-11-21 22:21:40,947 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:40,949 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:21:40,950 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:40,951 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2023-11-21 22:21:40,952 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:40,953 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 5 proven. 10 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2023-11-21 22:21:40,953 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:21:40,954 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1730899249] [2023-11-21 22:21:40,954 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1730899249] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 22:21:40,954 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [951909709] [2023-11-21 22:21:40,954 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:40,954 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 22:21:40,955 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 22:21:40,960 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 22:21:41,015 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-21 22:21:41,116 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:41,132 INFO L262 TraceCheckSpWp]: Trace formula consists of 262 conjuncts, 21 conjunts are in the unsatisfiable core [2023-11-21 22:21:41,140 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 22:21:41,531 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 13 proven. 10 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 22:21:41,531 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-21 22:21:41,945 INFO L134 CoverageAnalysis]: Checked inductivity of 25 backedges. 8 proven. 3 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2023-11-21 22:21:41,946 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [951909709] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-21 22:21:41,946 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-21 22:21:41,946 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 11, 11] total 27 [2023-11-21 22:21:41,947 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2102833282] [2023-11-21 22:21:41,947 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-21 22:21:41,949 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2023-11-21 22:21:41,950 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:21:41,951 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2023-11-21 22:21:41,952 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=137, Invalid=565, Unknown=0, NotChecked=0, Total=702 [2023-11-21 22:21:41,952 INFO L87 Difference]: Start difference. First operand 287 states and 335 transitions. Second operand has 27 states, 24 states have (on average 3.5) internal successors, (84), 21 states have internal predecessors, (84), 10 states have call successors, (24), 11 states have call predecessors, (24), 8 states have return successors, (19), 7 states have call predecessors, (19), 10 states have call successors, (19) [2023-11-21 22:21:43,781 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:21:43,782 INFO L93 Difference]: Finished difference Result 1029 states and 1267 transitions. [2023-11-21 22:21:43,782 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 44 states. [2023-11-21 22:21:43,783 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 24 states have (on average 3.5) internal successors, (84), 21 states have internal predecessors, (84), 10 states have call successors, (24), 11 states have call predecessors, (24), 8 states have return successors, (19), 7 states have call predecessors, (19), 10 states have call successors, (19) Word has length 65 [2023-11-21 22:21:43,783 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:21:43,790 INFO L225 Difference]: With dead ends: 1029 [2023-11-21 22:21:43,790 INFO L226 Difference]: Without dead ends: 804 [2023-11-21 22:21:43,793 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 198 GetRequests, 136 SyntacticMatches, 3 SemanticMatches, 59 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 925 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=882, Invalid=2778, Unknown=0, NotChecked=0, Total=3660 [2023-11-21 22:21:43,795 INFO L413 NwaCegarLoop]: 18 mSDtfsCounter, 945 mSDsluCounter, 123 mSDsCounter, 0 mSdLazyCounter, 753 mSolverCounterSat, 559 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 951 SdHoareTripleChecker+Valid, 141 SdHoareTripleChecker+Invalid, 1312 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 559 IncrementalHoareTripleChecker+Valid, 753 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2023-11-21 22:21:43,796 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [951 Valid, 141 Invalid, 1312 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [559 Valid, 753 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2023-11-21 22:21:43,798 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 804 states. [2023-11-21 22:21:43,902 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 804 to 628. [2023-11-21 22:21:43,904 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 628 states, 423 states have (on average 1.160756501182033) internal successors, (491), 457 states have internal predecessors, (491), 100 states have call successors, (100), 79 states have call predecessors, (100), 104 states have return successors, (153), 110 states have call predecessors, (153), 100 states have call successors, (153) [2023-11-21 22:21:43,911 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 628 states to 628 states and 744 transitions. [2023-11-21 22:21:43,912 INFO L78 Accepts]: Start accepts. Automaton has 628 states and 744 transitions. Word has length 65 [2023-11-21 22:21:43,914 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:21:43,915 INFO L495 AbstractCegarLoop]: Abstraction has 628 states and 744 transitions. [2023-11-21 22:21:43,915 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 24 states have (on average 3.5) internal successors, (84), 21 states have internal predecessors, (84), 10 states have call successors, (24), 11 states have call predecessors, (24), 8 states have return successors, (19), 7 states have call predecessors, (19), 10 states have call successors, (19) [2023-11-21 22:21:43,915 INFO L276 IsEmpty]: Start isEmpty. Operand 628 states and 744 transitions. [2023-11-21 22:21:43,920 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 115 [2023-11-21 22:21:43,920 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:21:43,920 INFO L195 NwaCegarLoop]: trace histogram [6, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:43,945 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-21 22:21:44,145 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 22:21:44,145 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:21:44,145 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:21:44,145 INFO L85 PathProgramCache]: Analyzing trace with hash -1665248009, now seen corresponding path program 1 times [2023-11-21 22:21:44,146 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:21:44,146 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1052034644] [2023-11-21 22:21:44,146 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:44,146 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:21:44,195 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,029 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 22:21:45,032 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,089 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-21 22:21:45,095 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,223 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:21:45,227 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,239 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:21:45,242 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,244 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 22:21:45,246 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,253 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 40 [2023-11-21 22:21:45,257 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,357 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 6 [2023-11-21 22:21:45,358 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,363 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 60 [2023-11-21 22:21:45,370 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,486 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:21:45,491 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,554 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:21:45,555 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,557 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 22:21:45,559 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,572 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 88 [2023-11-21 22:21:45,573 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,575 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 97 [2023-11-21 22:21:45,579 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,580 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:21:45,581 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,582 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 107 [2023-11-21 22:21:45,583 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,585 INFO L134 CoverageAnalysis]: Checked inductivity of 143 backedges. 51 proven. 51 refuted. 0 times theorem prover too weak. 41 trivial. 0 not checked. [2023-11-21 22:21:45,585 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:21:45,586 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1052034644] [2023-11-21 22:21:45,586 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1052034644] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 22:21:45,586 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1446026870] [2023-11-21 22:21:45,586 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:21:45,586 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 22:21:45,587 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 22:21:45,588 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 22:21:45,619 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-21 22:21:45,718 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:21:45,721 INFO L262 TraceCheckSpWp]: Trace formula consists of 402 conjuncts, 33 conjunts are in the unsatisfiable core [2023-11-21 22:21:45,730 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 22:21:46,556 INFO L134 CoverageAnalysis]: Checked inductivity of 143 backedges. 68 proven. 71 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-11-21 22:21:46,556 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-21 22:21:47,583 INFO L134 CoverageAnalysis]: Checked inductivity of 143 backedges. 73 proven. 32 refuted. 0 times theorem prover too weak. 38 trivial. 0 not checked. [2023-11-21 22:21:47,583 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1446026870] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-21 22:21:47,584 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-21 22:21:47,584 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [21, 18, 17] total 45 [2023-11-21 22:21:47,584 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [336592919] [2023-11-21 22:21:47,584 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-21 22:21:47,585 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 45 states [2023-11-21 22:21:47,586 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:21:47,587 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 45 interpolants. [2023-11-21 22:21:47,589 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=339, Invalid=1641, Unknown=0, NotChecked=0, Total=1980 [2023-11-21 22:21:47,589 INFO L87 Difference]: Start difference. First operand 628 states and 744 transitions. Second operand has 45 states, 43 states have (on average 4.023255813953488) internal successors, (173), 40 states have internal predecessors, (173), 24 states have call successors, (41), 13 states have call predecessors, (41), 15 states have return successors, (38), 20 states have call predecessors, (38), 24 states have call successors, (38) [2023-11-21 22:21:48,663 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:21:48,663 INFO L93 Difference]: Finished difference Result 901 states and 1068 transitions. [2023-11-21 22:21:48,663 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2023-11-21 22:21:48,664 INFO L78 Accepts]: Start accepts. Automaton has has 45 states, 43 states have (on average 4.023255813953488) internal successors, (173), 40 states have internal predecessors, (173), 24 states have call successors, (41), 13 states have call predecessors, (41), 15 states have return successors, (38), 20 states have call predecessors, (38), 24 states have call successors, (38) Word has length 114 [2023-11-21 22:21:48,665 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:21:48,666 INFO L225 Difference]: With dead ends: 901 [2023-11-21 22:21:48,666 INFO L226 Difference]: Without dead ends: 0 [2023-11-21 22:21:48,670 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 290 GetRequests, 226 SyntacticMatches, 4 SemanticMatches, 60 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1100 ImplicationChecksByTransitivity, 1.4s TimeCoverageRelationStatistics Valid=850, Invalid=2932, Unknown=0, NotChecked=0, Total=3782 [2023-11-21 22:21:48,671 INFO L413 NwaCegarLoop]: 18 mSDtfsCounter, 406 mSDsluCounter, 135 mSDsCounter, 0 mSdLazyCounter, 656 mSolverCounterSat, 247 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 407 SdHoareTripleChecker+Valid, 153 SdHoareTripleChecker+Invalid, 903 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 247 IncrementalHoareTripleChecker+Valid, 656 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2023-11-21 22:21:48,672 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [407 Valid, 153 Invalid, 903 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [247 Valid, 656 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2023-11-21 22:21:48,673 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-21 22:21:48,673 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-21 22:21:48,674 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 22:21:48,674 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-21 22:21:48,675 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 114 [2023-11-21 22:21:48,675 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:21:48,675 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-21 22:21:48,676 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 45 states, 43 states have (on average 4.023255813953488) internal successors, (173), 40 states have internal predecessors, (173), 24 states have call successors, (41), 13 states have call predecessors, (41), 15 states have return successors, (38), 20 states have call predecessors, (38), 24 states have call successors, (38) [2023-11-21 22:21:48,676 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-21 22:21:48,676 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-21 22:21:48,679 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-21 22:21:48,707 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-11-21 22:21:48,892 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-21 22:21:48,895 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-21 22:21:51,275 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 586 592) no Hoare annotation was computed. [2023-11-21 22:21:51,275 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 586 592) the Hoare annotation is: true [2023-11-21 22:21:51,275 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 897 908) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (and (not (= |old(~methaneLevelCritical~0)| 0)) (not (= |old(~methaneLevelCritical~0)| 1)))) (.cse2 (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0))) (and (or .cse0 .cse1 (not (= 2 ~waterLevel~0)) .cse2) (or (not (= ~waterLevel~0 1)) (not (= ~pumpRunning~0 0)) .cse0 .cse1 .cse2))) [2023-11-21 22:21:51,276 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 897 908) no Hoare annotation was computed. [2023-11-21 22:21:51,276 INFO L899 garLoopResultBuilder]: For program point L800(lines 775 804) no Hoare annotation was computed. [2023-11-21 22:21:51,276 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 775 804) no Hoare annotation was computed. [2023-11-21 22:21:51,276 INFO L899 garLoopResultBuilder]: For program point L796(line 796) no Hoare annotation was computed. [2023-11-21 22:21:51,276 INFO L899 garLoopResultBuilder]: For program point L789(lines 789 793) no Hoare annotation was computed. [2023-11-21 22:21:51,276 INFO L902 garLoopResultBuilder]: At program point L789-1(lines 789 793) the Hoare annotation is: true [2023-11-21 22:21:51,277 INFO L902 garLoopResultBuilder]: At program point L785-2(lines 785 799) the Hoare annotation is: true [2023-11-21 22:21:51,277 INFO L902 garLoopResultBuilder]: At program point L781(line 781) the Hoare annotation is: true [2023-11-21 22:21:51,277 INFO L899 garLoopResultBuilder]: For program point L781-1(line 781) no Hoare annotation was computed. [2023-11-21 22:21:51,277 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 775 804) the Hoare annotation is: true [2023-11-21 22:21:51,277 INFO L895 garLoopResultBuilder]: At program point L634(line 634) the Hoare annotation is: (let ((.cse0 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 2))) (or (not (= |old(~pumpRunning~0)| 0)) (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1))) [2023-11-21 22:21:51,277 INFO L899 garLoopResultBuilder]: For program point L65(lines 65 71) no Hoare annotation was computed. [2023-11-21 22:21:51,278 INFO L895 garLoopResultBuilder]: At program point L639(line 639) the Hoare annotation is: (let ((.cse1 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (= ~pumpRunning~0 0)) (.cse0 (= |old(~pumpRunning~0)| 0))) (and (or (not .cse0) (not (= |old(~waterLevel~0)| 1)) .cse1 .cse2 (and .cse3 (= ~waterLevel~0 1))) (or .cse1 .cse2 (not (= |old(~waterLevel~0)| 2)) (and .cse3 (= 2 ~waterLevel~0) .cse0)))) [2023-11-21 22:21:51,278 INFO L899 garLoopResultBuilder]: For program point L639-1(lines 620 644) no Hoare annotation was computed. [2023-11-21 22:21:51,278 INFO L899 garLoopResultBuilder]: For program point L61(lines 61 74) no Hoare annotation was computed. [2023-11-21 22:21:51,278 INFO L899 garLoopResultBuilder]: For program point L573-1(lines 573 579) no Hoare annotation was computed. [2023-11-21 22:21:51,278 INFO L899 garLoopResultBuilder]: For program point L61-1(lines 53 77) no Hoare annotation was computed. [2023-11-21 22:21:51,279 INFO L899 garLoopResultBuilder]: For program point L978(line 978) no Hoare annotation was computed. [2023-11-21 22:21:51,279 INFO L899 garLoopResultBuilder]: For program point L566-1(lines 565 584) no Hoare annotation was computed. [2023-11-21 22:21:51,279 INFO L899 garLoopResultBuilder]: For program point L628(lines 628 636) no Hoare annotation was computed. [2023-11-21 22:21:51,279 INFO L899 garLoopResultBuilder]: For program point L624(lines 624 641) no Hoare annotation was computed. [2023-11-21 22:21:51,279 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 562 585) the Hoare annotation is: (let ((.cse0 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1 (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1))) (or .cse0 .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= 2 ~waterLevel~0)) (not (= |old(~waterLevel~0)| 2))))) [2023-11-21 22:21:51,280 INFO L895 garLoopResultBuilder]: At program point L59(line 59) the Hoare annotation is: (let ((.cse3 (= ~pumpRunning~0 0)) (.cse9 (= |old(~waterLevel~0)| 2)) (.cse8 (= 1 ~systemActive~0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse7 (= ~methaneLevelCritical~0 1))) (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and (not .cse6) (not .cse7))) (.cse2 (not .cse8)) (.cse4 (not .cse9)) (.cse5 (and (= 2 ~waterLevel~0) (or .cse6 .cse7) .cse8 (or .cse3 .cse6) .cse9))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 .cse2 (and .cse3 (= ~waterLevel~0 1))) (or (and .cse3 (<= ~waterLevel~0 2) (<= 1 ~waterLevel~0)) .cse1 .cse2 .cse4 .cse5) (or .cse0 .cse1 .cse2 .cse4 .cse5)))) [2023-11-21 22:21:51,280 INFO L899 garLoopResultBuilder]: For program point L59-1(line 59) no Hoare annotation was computed. [2023-11-21 22:21:51,280 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 562 585) no Hoare annotation was computed. [2023-11-21 22:21:51,280 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 978) no Hoare annotation was computed. [2023-11-21 22:21:51,281 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 909 917) the Hoare annotation is: true [2023-11-21 22:21:51,281 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 909 917) no Hoare annotation was computed. [2023-11-21 22:21:51,281 INFO L895 garLoopResultBuilder]: At program point L543(lines 496 544) the Hoare annotation is: false [2023-11-21 22:21:51,281 INFO L899 garLoopResultBuilder]: For program point L498(lines 497 542) no Hoare annotation was computed. [2023-11-21 22:21:51,281 INFO L895 garLoopResultBuilder]: At program point L519(line 519) the Hoare annotation is: (let ((.cse0 (or (= ~methaneLevelCritical~0 0) (= ~methaneLevelCritical~0 1))) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 (= ~waterLevel~0 1)) (and (= 2 ~waterLevel~0) .cse0 .cse1 .cse2))) [2023-11-21 22:21:51,281 INFO L895 garLoopResultBuilder]: At program point L540(lines 497 542) the Hoare annotation is: (let ((.cse1 (= ~methaneLevelCritical~0 0))) (let ((.cse4 (= ~pumpRunning~0 0)) (.cse0 (= 2 ~waterLevel~0)) (.cse5 (or .cse1 (= ~methaneLevelCritical~0 1))) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse5 .cse2 .cse3 (= ~waterLevel~0 1)) (and .cse4 .cse0 .cse5 .cse2 .cse3)))) [2023-11-21 22:21:51,282 INFO L899 garLoopResultBuilder]: For program point L507(lines 507 513) no Hoare annotation was computed. [2023-11-21 22:21:51,282 INFO L899 garLoopResultBuilder]: For program point L507-1(lines 507 513) no Hoare annotation was computed. [2023-11-21 22:21:51,282 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-21 22:21:51,282 INFO L895 garLoopResultBuilder]: At program point L533-2(lines 527 538) the Hoare annotation is: (let ((.cse0 (or (= ~methaneLevelCritical~0 0) (= ~methaneLevelCritical~0 1))) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 (= ~waterLevel~0 1)) (and (= 2 ~waterLevel~0) .cse0 .cse1 .cse2))) [2023-11-21 22:21:51,282 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-21 22:21:51,282 INFO L899 garLoopResultBuilder]: For program point L517(lines 517 523) no Hoare annotation was computed. [2023-11-21 22:21:51,283 INFO L899 garLoopResultBuilder]: For program point L517-1(lines 517 523) no Hoare annotation was computed. [2023-11-21 22:21:51,283 INFO L899 garLoopResultBuilder]: For program point L546(lines 487 550) no Hoare annotation was computed. [2023-11-21 22:21:51,283 INFO L895 garLoopResultBuilder]: At program point L509(line 509) the Hoare annotation is: (let ((.cse1 (= ~methaneLevelCritical~0 0))) (let ((.cse4 (= ~pumpRunning~0 0)) (.cse0 (= 2 ~waterLevel~0)) (.cse5 (or .cse1 (= ~methaneLevelCritical~0 1))) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse5 .cse2 .cse3 (= ~waterLevel~0 1)) (and .cse4 .cse0 .cse5 .cse2 .cse3)))) [2023-11-21 22:21:51,283 INFO L899 garLoopResultBuilder]: For program point L856(lines 856 863) no Hoare annotation was computed. [2023-11-21 22:21:51,283 INFO L899 garLoopResultBuilder]: For program point L856-2(lines 856 863) no Hoare annotation was computed. [2023-11-21 22:21:51,284 INFO L895 garLoopResultBuilder]: At program point L684(line 684) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse2 (not (= 1 ~systemActive~0)))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2) (or .cse0 .cse1 .cse2 (not (= 2 ~waterLevel~0)) (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~5#1| 1))))) [2023-11-21 22:21:51,284 INFO L899 garLoopResultBuilder]: For program point L684-1(line 684) no Hoare annotation was computed. [2023-11-21 22:21:51,284 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 594 618) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse3 (not (= 1 ~systemActive~0)))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse1 .cse2 .cse3 (not (= 2 ~waterLevel~0))))) [2023-11-21 22:21:51,284 INFO L895 garLoopResultBuilder]: At program point L608(line 608) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2 (not (= 2 ~waterLevel~0))) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~5#1| 0))))) [2023-11-21 22:21:51,285 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 594 618) no Hoare annotation was computed. [2023-11-21 22:21:51,285 INFO L899 garLoopResultBuilder]: For program point L602(lines 602 610) no Hoare annotation was computed. [2023-11-21 22:21:51,285 INFO L899 garLoopResultBuilder]: For program point L598(lines 598 615) no Hoare annotation was computed. [2023-11-21 22:21:51,285 INFO L895 garLoopResultBuilder]: At program point L613(line 613) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2 (not (= 2 ~waterLevel~0))) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2))) [2023-11-21 22:21:51,285 INFO L899 garLoopResultBuilder]: For program point L613-1(lines 594 618) no Hoare annotation was computed. [2023-11-21 22:21:51,285 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 885 896) no Hoare annotation was computed. [2023-11-21 22:21:51,286 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 885 896) the Hoare annotation is: (let ((.cse6 (not (= ~methaneLevelCritical~0 0)))) (let ((.cse2 (= 2 ~waterLevel~0)) (.cse5 (not (= |old(~waterLevel~0)| 2))) (.cse0 (< |old(~waterLevel~0)| 1)) (.cse1 (not (= ~pumpRunning~0 0))) (.cse3 (and .cse6 (not (= ~methaneLevelCritical~0 1)))) (.cse4 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (or .cse2 .cse4 .cse6 .cse5) (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 1)) .cse3 .cse4 (= ~waterLevel~0 1))))) [2023-11-21 22:21:51,316 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:21:51,318 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-21 22:21:51,337 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.11 10:21:51 BoogieIcfgContainer [2023-11-21 22:21:51,337 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-21 22:21:51,338 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-21 22:21:51,338 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-21 22:21:51,339 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-21 22:21:51,340 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 10:21:35" (3/4) ... [2023-11-21 22:21:51,342 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-21 22:21:51,345 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-21 22:21:51,346 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-21 22:21:51,346 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-21 22:21:51,346 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-21 22:21:51,346 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2023-11-21 22:21:51,346 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 22:21:51,347 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-21 22:21:51,365 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 46 nodes and edges [2023-11-21 22:21:51,366 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2023-11-21 22:21:51,367 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-21 22:21:51,367 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-21 22:21:51,368 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-21 22:21:51,403 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1)))) || !((1 == systemActive))) || ((pumpRunning == 0) && (waterLevel == 1))) && ((((!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1))) || !((1 == systemActive))) || ((pumpRunning == \old(pumpRunning)) && (2 == waterLevel))) || !((\old(waterLevel) == 2)))) [2023-11-21 22:21:51,466 WARN L141 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1)))) || !((1 == systemActive))) || ((pumpRunning == 0) && (waterLevel == 1))) && ((((!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1))) || !((1 == systemActive))) || ((pumpRunning == \old(pumpRunning)) && (2 == waterLevel))) || !((\old(waterLevel) == 2)))) [2023-11-21 22:21:51,530 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/witness.graphml [2023-11-21 22:21:51,531 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/witness.yml [2023-11-21 22:21:51,531 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-21 22:21:51,532 INFO L158 Benchmark]: Toolchain (without parser) took 17296.76ms. Allocated memory was 195.0MB in the beginning and 346.0MB in the end (delta: 151.0MB). Free memory was 147.2MB in the beginning and 304.1MB in the end (delta: -156.9MB). There was no memory consumed. Max. memory is 16.1GB. [2023-11-21 22:21:51,532 INFO L158 Benchmark]: CDTParser took 0.36ms. Allocated memory is still 134.2MB. Free memory is still 77.4MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-21 22:21:51,533 INFO L158 Benchmark]: CACSL2BoogieTranslator took 567.30ms. Allocated memory is still 195.0MB. Free memory was 146.7MB in the beginning and 127.3MB in the end (delta: 19.4MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-21 22:21:51,533 INFO L158 Benchmark]: Boogie Procedure Inliner took 53.90ms. Allocated memory is still 195.0MB. Free memory was 127.3MB in the beginning and 125.2MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-21 22:21:51,533 INFO L158 Benchmark]: Boogie Preprocessor took 60.97ms. Allocated memory is still 195.0MB. Free memory was 125.2MB in the beginning and 122.6MB in the end (delta: 2.6MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2023-11-21 22:21:51,534 INFO L158 Benchmark]: RCFGBuilder took 761.55ms. Allocated memory is still 195.0MB. Free memory was 122.6MB in the beginning and 145.8MB in the end (delta: -23.2MB). Peak memory consumption was 16.1MB. Max. memory is 16.1GB. [2023-11-21 22:21:51,535 INFO L158 Benchmark]: TraceAbstraction took 15650.27ms. Allocated memory was 195.0MB in the beginning and 346.0MB in the end (delta: 151.0MB). Free memory was 144.8MB in the beginning and 312.5MB in the end (delta: -167.7MB). Peak memory consumption was 185.6MB. Max. memory is 16.1GB. [2023-11-21 22:21:51,536 INFO L158 Benchmark]: Witness Printer took 193.34ms. Allocated memory is still 346.0MB. Free memory was 312.5MB in the beginning and 304.1MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-21 22:21:51,538 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.36ms. Allocated memory is still 134.2MB. Free memory is still 77.4MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 567.30ms. Allocated memory is still 195.0MB. Free memory was 146.7MB in the beginning and 127.3MB in the end (delta: 19.4MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 53.90ms. Allocated memory is still 195.0MB. Free memory was 127.3MB in the beginning and 125.2MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 60.97ms. Allocated memory is still 195.0MB. Free memory was 125.2MB in the beginning and 122.6MB in the end (delta: 2.6MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * RCFGBuilder took 761.55ms. Allocated memory is still 195.0MB. Free memory was 122.6MB in the beginning and 145.8MB in the end (delta: -23.2MB). Peak memory consumption was 16.1MB. Max. memory is 16.1GB. * TraceAbstraction took 15650.27ms. Allocated memory was 195.0MB in the beginning and 346.0MB in the end (delta: 151.0MB). Free memory was 144.8MB in the beginning and 312.5MB in the end (delta: -167.7MB). Peak memory consumption was 185.6MB. Max. memory is 16.1GB. * Witness Printer took 193.34ms. Allocated memory is still 346.0MB. Free memory was 312.5MB in the beginning and 304.1MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification1_spec.i","") [49] - GenericResultAtLocation [Line: 78]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [78] - GenericResultAtLocation [Line: 116]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [116] - GenericResultAtLocation [Line: 482]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [482] - GenericResultAtLocation [Line: 551]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [551] - GenericResultAtLocation [Line: 773]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [773] - GenericResultAtLocation [Line: 869]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [869] - GenericResultAtLocation [Line: 973]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [973] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 978]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 57 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 15.6s, OverallIterations: 10, TraceHistogramMax: 6, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 5.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.4s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 2154 SdHoareTripleChecker+Valid, 2.6s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 2127 mSDsluCounter, 996 SdHoareTripleChecker+Invalid, 2.1s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 656 mSDsCounter, 1215 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 2374 IncrementalHoareTripleChecker+Invalid, 3589 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1215 mSolverCounterUnsat, 340 mSDtfsCounter, 2374 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 623 GetRequests, 419 SyntacticMatches, 7 SemanticMatches, 197 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2618 ImplicationChecksByTransitivity, 3.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=628occurred in iteration=9, InterpolantAutomatonStates: 143, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.4s AutomataMinimizationTime, 10 MinimizatonAttempts, 263 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 21 LocationsWithAnnotation, 555 PreInvPairs, 599 NumberOfFragments, 793 HoareAnnotationTreeSize, 555 FomulaSimplifications, 8471 FormulaSimplificationTreeSizeReduction, 0.3s HoareSimplificationTime, 21 FomulaSimplificationsInter, 8450 FormulaSimplificationTreeSizeReductionInter, 2.0s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 6.0s InterpolantComputationTime, 564 NumberOfCodeBlocks, 564 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 729 ConstructedInterpolants, 0 QuantifiedInterpolants, 2906 SizeOfPredicates, 18 NumberOfNonLiveVariables, 664 ConjunctsInSsa, 54 ConjunctsInUnsatCore, 14 InterpolantComputations, 8 PerfectInterpolantSequences, 333/510 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 497]: Loop Invariant Derived loop invariant: ((((((2 == waterLevel) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) || (((((pumpRunning == 0) && ((methaneLevelCritical == 0) || (methaneLevelCritical == 1))) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1))) || (((((pumpRunning == 0) && (2 == waterLevel)) && ((methaneLevelCritical == 0) || (methaneLevelCritical == 1))) && (1 == systemActive)) && (splverifierCounter == 0))) - InvariantResult [Line: 496]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 785]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 562]: Loop Invariant Derived loop invariant: (((((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || (!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1)))) || !((1 == systemActive))) || ((pumpRunning == 0) && (waterLevel == 1))) && ((((!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1))) || !((1 == systemActive))) || ((pumpRunning == \old(pumpRunning)) && (2 == waterLevel))) || !((\old(waterLevel) == 2)))) RESULT: Ultimate proved your program to be correct! [2023-11-21 22:21:51,590 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_526e47eb-a5d3-424e-8e29-74333faff42c/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE