./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 527bcce2 Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 592117a566b45deb7ab0407540eecbf2be0f732724f0529483f85e7a6864867a --- Real Ultimate output --- This is Ultimate 0.2.3-dev-527bcce [2023-11-21 22:08:26,378 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-21 22:08:26,508 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-21 22:08:26,517 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-21 22:08:26,518 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-21 22:08:26,559 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-21 22:08:26,561 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-21 22:08:26,562 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-21 22:08:26,562 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-21 22:08:26,567 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-21 22:08:26,568 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-21 22:08:26,568 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-21 22:08:26,569 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-21 22:08:26,571 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-21 22:08:26,572 INFO L153 SettingsManager]: * Use SBE=true [2023-11-21 22:08:26,572 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-21 22:08:26,573 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-21 22:08:26,573 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-21 22:08:26,573 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-21 22:08:26,574 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-21 22:08:26,574 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-21 22:08:26,575 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-21 22:08:26,575 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-21 22:08:26,576 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-21 22:08:26,576 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-21 22:08:26,577 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-21 22:08:26,577 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-21 22:08:26,578 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-21 22:08:26,578 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-21 22:08:26,579 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-21 22:08:26,580 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-21 22:08:26,581 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-21 22:08:26,581 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-21 22:08:26,581 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-21 22:08:26,581 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-21 22:08:26,582 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-21 22:08:26,582 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-21 22:08:26,582 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-21 22:08:26,582 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-21 22:08:26,583 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-21 22:08:26,583 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-21 22:08:26,583 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-21 22:08:26,583 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 592117a566b45deb7ab0407540eecbf2be0f732724f0529483f85e7a6864867a [2023-11-21 22:08:26,890 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-21 22:08:26,924 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-21 22:08:26,927 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-21 22:08:26,928 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-21 22:08:26,928 INFO L274 PluginConnector]: CDTParser initialized [2023-11-21 22:08:26,930 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/../../sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c [2023-11-21 22:08:30,269 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-21 22:08:30,576 INFO L384 CDTParser]: Found 1 translation units. [2023-11-21 22:08:30,577 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c [2023-11-21 22:08:30,591 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/data/32bfd5208/14c3b30c80a24b7ebefc917754248caf/FLAGf1a73322d [2023-11-21 22:08:30,607 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/data/32bfd5208/14c3b30c80a24b7ebefc917754248caf [2023-11-21 22:08:30,610 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-21 22:08:30,612 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-21 22:08:30,613 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-21 22:08:30,613 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-21 22:08:30,622 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-21 22:08:30,623 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 10:08:30" (1/1) ... [2023-11-21 22:08:30,624 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@61ec1f21 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:30, skipping insertion in model container [2023-11-21 22:08:30,625 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 10:08:30" (1/1) ... [2023-11-21 22:08:30,688 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-21 22:08:30,951 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c[19185,19198] [2023-11-21 22:08:30,956 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-21 22:08:30,968 INFO L202 MainTranslator]: Completed pre-run [2023-11-21 22:08:30,980 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [49] [2023-11-21 22:08:30,982 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [309] [2023-11-21 22:08:30,983 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [379] [2023-11-21 22:08:30,983 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [417] [2023-11-21 22:08:30,983 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [783] [2023-11-21 22:08:30,984 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [879] [2023-11-21 22:08:30,984 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification1_spec.i","") [983] [2023-11-21 22:08:30,984 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [1010] [2023-11-21 22:08:31,117 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/sv-benchmarks/c/product-lines/minepump_spec1_product62.cil.c[19185,19198] [2023-11-21 22:08:31,119 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-21 22:08:31,145 INFO L206 MainTranslator]: Completed translation [2023-11-21 22:08:31,146 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31 WrapperNode [2023-11-21 22:08:31,146 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-21 22:08:31,147 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-21 22:08:31,148 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-21 22:08:31,148 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-21 22:08:31,156 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,183 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,230 INFO L138 Inliner]: procedures = 58, calls = 105, calls flagged for inlining = 23, calls inlined = 20, statements flattened = 218 [2023-11-21 22:08:31,231 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-21 22:08:31,232 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-21 22:08:31,233 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-21 22:08:31,233 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-21 22:08:31,244 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,245 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,248 INFO L184 PluginConnector]: Executing the observer HeapSplitter from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,261 INFO L187 HeapSplitter]: Split 2 memory accesses to 1 slices as follows [2] [2023-11-21 22:08:31,262 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,262 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,268 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,273 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,275 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,277 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,281 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-21 22:08:31,282 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-21 22:08:31,282 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-21 22:08:31,282 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-21 22:08:31,283 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (1/1) ... [2023-11-21 22:08:31,306 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-21 22:08:31,326 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 22:08:31,342 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-21 22:08:31,376 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-21 22:08:31,388 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-21 22:08:31,389 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-21 22:08:31,389 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-21 22:08:31,389 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-21 22:08:31,389 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-21 22:08:31,389 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2023-11-21 22:08:31,390 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2023-11-21 22:08:31,390 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-21 22:08:31,390 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-21 22:08:31,390 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 22:08:31,391 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 22:08:31,391 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-21 22:08:31,392 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-21 22:08:31,392 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2023-11-21 22:08:31,392 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2023-11-21 22:08:31,393 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2023-11-21 22:08:31,394 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2023-11-21 22:08:31,395 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-21 22:08:31,395 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-21 22:08:31,395 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-21 22:08:31,396 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-21 22:08:31,396 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-21 22:08:31,397 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-21 22:08:31,397 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-21 22:08:31,478 INFO L240 CfgBuilder]: Building ICFG [2023-11-21 22:08:31,481 INFO L266 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-21 22:08:31,805 INFO L281 CfgBuilder]: Performing block encoding [2023-11-21 22:08:32,017 INFO L303 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-21 22:08:32,052 INFO L308 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-21 22:08:32,058 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 10:08:32 BoogieIcfgContainer [2023-11-21 22:08:32,058 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-21 22:08:32,061 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-21 22:08:32,061 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-21 22:08:32,064 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-21 22:08:32,066 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.11 10:08:30" (1/3) ... [2023-11-21 22:08:32,067 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@28cb14df and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 10:08:32, skipping insertion in model container [2023-11-21 22:08:32,067 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:08:31" (2/3) ... [2023-11-21 22:08:32,067 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@28cb14df and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 10:08:32, skipping insertion in model container [2023-11-21 22:08:32,069 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 10:08:32" (3/3) ... [2023-11-21 22:08:32,070 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product62.cil.c [2023-11-21 22:08:32,097 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-21 22:08:32,097 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-21 22:08:32,170 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-21 22:08:32,178 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@4b67808e, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-21 22:08:32,179 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-21 22:08:32,183 INFO L276 IsEmpty]: Start isEmpty. Operand has 74 states, 44 states have (on average 1.3863636363636365) internal successors, (61), 54 states have internal predecessors, (61), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) [2023-11-21 22:08:32,193 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2023-11-21 22:08:32,194 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:08:32,195 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:08:32,195 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:08:32,205 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:08:32,206 INFO L85 PathProgramCache]: Analyzing trace with hash 2004049415, now seen corresponding path program 1 times [2023-11-21 22:08:32,216 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:08:32,216 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [828024924] [2023-11-21 22:08:32,216 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:08:32,216 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:08:32,325 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:32,391 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-21 22:08:32,394 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:32,399 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:08:32,400 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:08:32,400 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [828024924] [2023-11-21 22:08:32,401 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [828024924] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:08:32,401 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:08:32,402 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-21 22:08:32,403 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2092037598] [2023-11-21 22:08:32,404 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:08:32,409 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-21 22:08:32,409 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:08:32,448 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-21 22:08:32,449 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-21 22:08:32,452 INFO L87 Difference]: Start difference. First operand has 74 states, 44 states have (on average 1.3863636363636365) internal successors, (61), 54 states have internal predecessors, (61), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:08:32,528 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:08:32,528 INFO L93 Difference]: Finished difference Result 146 states and 195 transitions. [2023-11-21 22:08:32,530 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-21 22:08:32,531 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2023-11-21 22:08:32,532 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:08:32,542 INFO L225 Difference]: With dead ends: 146 [2023-11-21 22:08:32,543 INFO L226 Difference]: Without dead ends: 69 [2023-11-21 22:08:32,547 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-21 22:08:32,551 INFO L413 NwaCegarLoop]: 76 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 76 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-21 22:08:32,553 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 76 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-21 22:08:32,572 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 69 states. [2023-11-21 22:08:32,596 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 69 to 69. [2023-11-21 22:08:32,598 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 69 states, 41 states have (on average 1.2926829268292683) internal successors, (53), 50 states have internal predecessors, (53), 18 states have call successors, (18), 10 states have call predecessors, (18), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) [2023-11-21 22:08:32,600 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 69 states to 69 states and 88 transitions. [2023-11-21 22:08:32,602 INFO L78 Accepts]: Start accepts. Automaton has 69 states and 88 transitions. Word has length 16 [2023-11-21 22:08:32,603 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:08:32,603 INFO L495 AbstractCegarLoop]: Abstraction has 69 states and 88 transitions. [2023-11-21 22:08:32,603 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:08:32,604 INFO L276 IsEmpty]: Start isEmpty. Operand 69 states and 88 transitions. [2023-11-21 22:08:32,606 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2023-11-21 22:08:32,606 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:08:32,606 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:08:32,607 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-21 22:08:32,607 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:08:32,608 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:08:32,608 INFO L85 PathProgramCache]: Analyzing trace with hash -1999456432, now seen corresponding path program 1 times [2023-11-21 22:08:32,608 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:08:32,609 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1995995463] [2023-11-21 22:08:32,609 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:08:32,609 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:08:32,628 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:32,705 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-21 22:08:32,707 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:32,710 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:08:32,710 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:08:32,710 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1995995463] [2023-11-21 22:08:32,711 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1995995463] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:08:32,711 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:08:32,711 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 22:08:32,711 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1816425541] [2023-11-21 22:08:32,712 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:08:32,713 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-21 22:08:32,713 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:08:32,714 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-21 22:08:32,715 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 22:08:32,715 INFO L87 Difference]: Start difference. First operand 69 states and 88 transitions. Second operand has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:08:32,762 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:08:32,763 INFO L93 Difference]: Finished difference Result 115 states and 147 transitions. [2023-11-21 22:08:32,763 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-21 22:08:32,764 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2023-11-21 22:08:32,764 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:08:32,765 INFO L225 Difference]: With dead ends: 115 [2023-11-21 22:08:32,766 INFO L226 Difference]: Without dead ends: 61 [2023-11-21 22:08:32,767 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 22:08:32,769 INFO L413 NwaCegarLoop]: 62 mSDtfsCounter, 7 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 115 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-21 22:08:32,770 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 115 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-21 22:08:32,771 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 61 states. [2023-11-21 22:08:32,779 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 61 to 61. [2023-11-21 22:08:32,780 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 61 states, 36 states have (on average 1.3055555555555556) internal successors, (47), 45 states have internal predecessors, (47), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2023-11-21 22:08:32,781 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 61 states to 61 states and 77 transitions. [2023-11-21 22:08:32,782 INFO L78 Accepts]: Start accepts. Automaton has 61 states and 77 transitions. Word has length 17 [2023-11-21 22:08:32,782 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:08:32,782 INFO L495 AbstractCegarLoop]: Abstraction has 61 states and 77 transitions. [2023-11-21 22:08:32,783 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.333333333333333) internal successors, (13), 3 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:08:32,783 INFO L276 IsEmpty]: Start isEmpty. Operand 61 states and 77 transitions. [2023-11-21 22:08:32,784 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2023-11-21 22:08:32,785 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:08:32,785 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:08:32,785 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-21 22:08:32,785 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:08:32,786 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:08:32,786 INFO L85 PathProgramCache]: Analyzing trace with hash -660525143, now seen corresponding path program 1 times [2023-11-21 22:08:32,787 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:08:32,787 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [71670172] [2023-11-21 22:08:32,787 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:08:32,787 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:08:32,811 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:33,097 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 22:08:33,100 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:33,103 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:08:33,105 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:08:33,106 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [71670172] [2023-11-21 22:08:33,107 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [71670172] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:08:33,107 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:08:33,108 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-11-21 22:08:33,108 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [133066581] [2023-11-21 22:08:33,108 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:08:33,109 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-21 22:08:33,110 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:08:33,111 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-21 22:08:33,111 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2023-11-21 22:08:33,112 INFO L87 Difference]: Start difference. First operand 61 states and 77 transitions. Second operand has 4 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:08:33,290 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:08:33,290 INFO L93 Difference]: Finished difference Result 120 states and 153 transitions. [2023-11-21 22:08:33,291 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-21 22:08:33,292 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 19 [2023-11-21 22:08:33,292 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:08:33,296 INFO L225 Difference]: With dead ends: 120 [2023-11-21 22:08:33,296 INFO L226 Difference]: Without dead ends: 61 [2023-11-21 22:08:33,306 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=6, Invalid=6, Unknown=0, NotChecked=0, Total=12 [2023-11-21 22:08:33,308 INFO L413 NwaCegarLoop]: 57 mSDtfsCounter, 72 mSDsluCounter, 24 mSDsCounter, 0 mSdLazyCounter, 58 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 75 SdHoareTripleChecker+Valid, 81 SdHoareTripleChecker+Invalid, 61 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 58 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-21 22:08:33,310 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [75 Valid, 81 Invalid, 61 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 58 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-21 22:08:33,313 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 61 states. [2023-11-21 22:08:33,325 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 61 to 61. [2023-11-21 22:08:33,331 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 61 states, 36 states have (on average 1.2777777777777777) internal successors, (46), 45 states have internal predecessors, (46), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2023-11-21 22:08:33,332 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 61 states to 61 states and 76 transitions. [2023-11-21 22:08:33,333 INFO L78 Accepts]: Start accepts. Automaton has 61 states and 76 transitions. Word has length 19 [2023-11-21 22:08:33,333 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:08:33,334 INFO L495 AbstractCegarLoop]: Abstraction has 61 states and 76 transitions. [2023-11-21 22:08:33,334 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.0) internal successors, (16), 4 states have internal predecessors, (16), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:08:33,334 INFO L276 IsEmpty]: Start isEmpty. Operand 61 states and 76 transitions. [2023-11-21 22:08:33,336 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2023-11-21 22:08:33,336 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:08:33,336 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:08:33,337 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-21 22:08:33,337 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:08:33,337 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:08:33,338 INFO L85 PathProgramCache]: Analyzing trace with hash -2044324204, now seen corresponding path program 1 times [2023-11-21 22:08:33,338 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:08:33,338 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1805688253] [2023-11-21 22:08:33,339 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:08:33,339 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:08:33,375 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:33,521 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 22:08:33,526 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:33,552 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:08:33,554 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:33,557 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2023-11-21 22:08:33,559 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:33,561 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:08:33,561 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:08:33,561 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1805688253] [2023-11-21 22:08:33,562 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1805688253] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:08:33,562 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:08:33,562 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-21 22:08:33,562 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1173713815] [2023-11-21 22:08:33,562 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:08:33,563 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-21 22:08:33,563 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:08:33,564 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-21 22:08:33,564 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-21 22:08:33,564 INFO L87 Difference]: Start difference. First operand 61 states and 76 transitions. Second operand has 5 states, 5 states have (on average 4.6) internal successors, (23), 5 states have internal predecessors, (23), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-21 22:08:33,880 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:08:33,880 INFO L93 Difference]: Finished difference Result 190 states and 234 transitions. [2023-11-21 22:08:33,881 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-21 22:08:33,881 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.6) internal successors, (23), 5 states have internal predecessors, (23), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 30 [2023-11-21 22:08:33,882 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:08:33,883 INFO L225 Difference]: With dead ends: 190 [2023-11-21 22:08:33,884 INFO L226 Difference]: Without dead ends: 131 [2023-11-21 22:08:33,885 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2023-11-21 22:08:33,886 INFO L413 NwaCegarLoop]: 69 mSDtfsCounter, 122 mSDsluCounter, 91 mSDsCounter, 0 mSdLazyCounter, 149 mSolverCounterSat, 75 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 124 SdHoareTripleChecker+Valid, 160 SdHoareTripleChecker+Invalid, 224 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 75 IncrementalHoareTripleChecker+Valid, 149 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-21 22:08:33,887 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [124 Valid, 160 Invalid, 224 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [75 Valid, 149 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-21 22:08:33,888 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 131 states. [2023-11-21 22:08:33,934 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 131 to 125. [2023-11-21 22:08:33,937 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 125 states, 79 states have (on average 1.2025316455696202) internal successors, (95), 87 states have internal predecessors, (95), 22 states have call successors, (22), 18 states have call predecessors, (22), 23 states have return successors, (29), 24 states have call predecessors, (29), 22 states have call successors, (29) [2023-11-21 22:08:33,939 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 125 states to 125 states and 146 transitions. [2023-11-21 22:08:33,939 INFO L78 Accepts]: Start accepts. Automaton has 125 states and 146 transitions. Word has length 30 [2023-11-21 22:08:33,939 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:08:33,940 INFO L495 AbstractCegarLoop]: Abstraction has 125 states and 146 transitions. [2023-11-21 22:08:33,940 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.6) internal successors, (23), 5 states have internal predecessors, (23), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-21 22:08:33,940 INFO L276 IsEmpty]: Start isEmpty. Operand 125 states and 146 transitions. [2023-11-21 22:08:33,942 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2023-11-21 22:08:33,942 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:08:33,942 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:08:33,943 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-21 22:08:33,943 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:08:33,945 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:08:33,945 INFO L85 PathProgramCache]: Analyzing trace with hash 321529314, now seen corresponding path program 1 times [2023-11-21 22:08:33,945 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:08:33,945 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [581856061] [2023-11-21 22:08:33,946 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:08:33,946 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:08:33,979 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,068 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 22:08:34,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,080 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:08:34,083 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,090 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:08:34,092 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,094 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2023-11-21 22:08:34,096 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,099 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:08:34,099 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:08:34,100 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [581856061] [2023-11-21 22:08:34,100 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [581856061] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:08:34,100 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:08:34,100 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-21 22:08:34,101 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [458094003] [2023-11-21 22:08:34,101 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:08:34,101 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-21 22:08:34,102 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:08:34,102 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-21 22:08:34,103 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-21 22:08:34,103 INFO L87 Difference]: Start difference. First operand 125 states and 146 transitions. Second operand has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-21 22:08:34,353 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:08:34,353 INFO L93 Difference]: Finished difference Result 133 states and 152 transitions. [2023-11-21 22:08:34,357 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-21 22:08:34,358 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 2 states have call successors, (4) Word has length 35 [2023-11-21 22:08:34,359 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:08:34,365 INFO L225 Difference]: With dead ends: 133 [2023-11-21 22:08:34,366 INFO L226 Difference]: Without dead ends: 131 [2023-11-21 22:08:34,366 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2023-11-21 22:08:34,369 INFO L413 NwaCegarLoop]: 48 mSDtfsCounter, 82 mSDsluCounter, 103 mSDsCounter, 0 mSdLazyCounter, 143 mSolverCounterSat, 37 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 88 SdHoareTripleChecker+Valid, 151 SdHoareTripleChecker+Invalid, 180 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 37 IncrementalHoareTripleChecker+Valid, 143 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-21 22:08:34,370 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [88 Valid, 151 Invalid, 180 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [37 Valid, 143 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-21 22:08:34,374 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 131 states. [2023-11-21 22:08:34,406 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 131 to 125. [2023-11-21 22:08:34,407 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 125 states, 79 states have (on average 1.1772151898734178) internal successors, (93), 87 states have internal predecessors, (93), 22 states have call successors, (22), 18 states have call predecessors, (22), 23 states have return successors, (29), 24 states have call predecessors, (29), 22 states have call successors, (29) [2023-11-21 22:08:34,409 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 125 states to 125 states and 144 transitions. [2023-11-21 22:08:34,409 INFO L78 Accepts]: Start accepts. Automaton has 125 states and 144 transitions. Word has length 35 [2023-11-21 22:08:34,410 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:08:34,410 INFO L495 AbstractCegarLoop]: Abstraction has 125 states and 144 transitions. [2023-11-21 22:08:34,410 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.2) internal successors, (26), 4 states have internal predecessors, (26), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-21 22:08:34,410 INFO L276 IsEmpty]: Start isEmpty. Operand 125 states and 144 transitions. [2023-11-21 22:08:34,415 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2023-11-21 22:08:34,415 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:08:34,415 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:08:34,415 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-21 22:08:34,416 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:08:34,416 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:08:34,416 INFO L85 PathProgramCache]: Analyzing trace with hash -1874191834, now seen corresponding path program 1 times [2023-11-21 22:08:34,416 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:08:34,417 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1739165185] [2023-11-21 22:08:34,417 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:08:34,417 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:08:34,439 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,742 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 22:08:34,751 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,827 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:08:34,834 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,924 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:08:34,932 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,962 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-21 22:08:34,963 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,965 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 33 [2023-11-21 22:08:34,966 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:34,968 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 22:08:34,968 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:08:34,968 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1739165185] [2023-11-21 22:08:34,968 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1739165185] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:08:34,968 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:08:34,969 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2023-11-21 22:08:34,969 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1793868042] [2023-11-21 22:08:34,969 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:08:34,969 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-21 22:08:34,970 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:08:34,970 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-21 22:08:34,970 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2023-11-21 22:08:34,971 INFO L87 Difference]: Start difference. First operand 125 states and 144 transitions. Second operand has 8 states, 8 states have (on average 3.5) internal successors, (28), 7 states have internal predecessors, (28), 5 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2023-11-21 22:08:35,374 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:08:35,374 INFO L93 Difference]: Finished difference Result 305 states and 355 transitions. [2023-11-21 22:08:35,374 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-21 22:08:35,375 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 3.5) internal successors, (28), 7 states have internal predecessors, (28), 5 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) Word has length 40 [2023-11-21 22:08:35,375 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:08:35,377 INFO L225 Difference]: With dead ends: 305 [2023-11-21 22:08:35,377 INFO L226 Difference]: Without dead ends: 182 [2023-11-21 22:08:35,377 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 14 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 10 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=40, Invalid=92, Unknown=0, NotChecked=0, Total=132 [2023-11-21 22:08:35,378 INFO L413 NwaCegarLoop]: 67 mSDtfsCounter, 138 mSDsluCounter, 154 mSDsCounter, 0 mSdLazyCounter, 224 mSolverCounterSat, 64 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 145 SdHoareTripleChecker+Valid, 221 SdHoareTripleChecker+Invalid, 288 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 64 IncrementalHoareTripleChecker+Valid, 224 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-21 22:08:35,379 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [145 Valid, 221 Invalid, 288 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [64 Valid, 224 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-21 22:08:35,380 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 182 states. [2023-11-21 22:08:35,402 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 182 to 164. [2023-11-21 22:08:35,403 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 164 states, 105 states have (on average 1.161904761904762) internal successors, (122), 114 states have internal predecessors, (122), 28 states have call successors, (28), 25 states have call predecessors, (28), 30 states have return successors, (35), 30 states have call predecessors, (35), 28 states have call successors, (35) [2023-11-21 22:08:35,404 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 164 states to 164 states and 185 transitions. [2023-11-21 22:08:35,405 INFO L78 Accepts]: Start accepts. Automaton has 164 states and 185 transitions. Word has length 40 [2023-11-21 22:08:35,405 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:08:35,405 INFO L495 AbstractCegarLoop]: Abstraction has 164 states and 185 transitions. [2023-11-21 22:08:35,405 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 3.5) internal successors, (28), 7 states have internal predecessors, (28), 5 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2023-11-21 22:08:35,405 INFO L276 IsEmpty]: Start isEmpty. Operand 164 states and 185 transitions. [2023-11-21 22:08:35,406 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2023-11-21 22:08:35,407 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:08:35,407 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:08:35,407 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-21 22:08:35,407 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:08:35,408 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:08:35,408 INFO L85 PathProgramCache]: Analyzing trace with hash -2139697997, now seen corresponding path program 1 times [2023-11-21 22:08:35,408 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:08:35,408 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1181931583] [2023-11-21 22:08:35,408 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:08:35,408 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:08:35,425 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:35,498 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 22:08:35,500 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:35,509 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 22:08:35,513 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:35,534 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:08:35,536 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:35,540 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:08:35,541 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:35,543 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-21 22:08:35,544 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:35,545 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2023-11-21 22:08:35,547 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:35,559 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-21 22:08:35,559 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:08:35,560 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1181931583] [2023-11-21 22:08:35,560 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1181931583] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:08:35,560 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:08:35,560 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2023-11-21 22:08:35,560 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [322066148] [2023-11-21 22:08:35,560 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:08:35,565 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-21 22:08:35,565 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:08:35,566 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-21 22:08:35,566 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2023-11-21 22:08:35,566 INFO L87 Difference]: Start difference. First operand 164 states and 185 transitions. Second operand has 8 states, 7 states have (on average 4.285714285714286) internal successors, (30), 5 states have internal predecessors, (30), 2 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 2 states have call successors, (6) [2023-11-21 22:08:36,067 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:08:36,067 INFO L93 Difference]: Finished difference Result 485 states and 556 transitions. [2023-11-21 22:08:36,068 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2023-11-21 22:08:36,068 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 7 states have (on average 4.285714285714286) internal successors, (30), 5 states have internal predecessors, (30), 2 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 2 states have call successors, (6) Word has length 43 [2023-11-21 22:08:36,070 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:08:36,073 INFO L225 Difference]: With dead ends: 485 [2023-11-21 22:08:36,073 INFO L226 Difference]: Without dead ends: 323 [2023-11-21 22:08:36,074 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 31 GetRequests, 14 SyntacticMatches, 0 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 52 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=77, Invalid=265, Unknown=0, NotChecked=0, Total=342 [2023-11-21 22:08:36,076 INFO L413 NwaCegarLoop]: 28 mSDtfsCounter, 146 mSDsluCounter, 124 mSDsCounter, 0 mSdLazyCounter, 303 mSolverCounterSat, 121 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 150 SdHoareTripleChecker+Valid, 152 SdHoareTripleChecker+Invalid, 424 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 121 IncrementalHoareTripleChecker+Valid, 303 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-21 22:08:36,076 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [150 Valid, 152 Invalid, 424 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [121 Valid, 303 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-21 22:08:36,078 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 323 states. [2023-11-21 22:08:36,138 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 323 to 310. [2023-11-21 22:08:36,140 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 310 states, 199 states have (on average 1.135678391959799) internal successors, (226), 213 states have internal predecessors, (226), 53 states have call successors, (53), 47 states have call predecessors, (53), 57 states have return successors, (67), 57 states have call predecessors, (67), 53 states have call successors, (67) [2023-11-21 22:08:36,143 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 310 states to 310 states and 346 transitions. [2023-11-21 22:08:36,144 INFO L78 Accepts]: Start accepts. Automaton has 310 states and 346 transitions. Word has length 43 [2023-11-21 22:08:36,144 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:08:36,144 INFO L495 AbstractCegarLoop]: Abstraction has 310 states and 346 transitions. [2023-11-21 22:08:36,145 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 7 states have (on average 4.285714285714286) internal successors, (30), 5 states have internal predecessors, (30), 2 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 2 states have call successors, (6) [2023-11-21 22:08:36,146 INFO L276 IsEmpty]: Start isEmpty. Operand 310 states and 346 transitions. [2023-11-21 22:08:36,149 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2023-11-21 22:08:36,149 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:08:36,150 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:08:36,150 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-21 22:08:36,150 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:08:36,150 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:08:36,151 INFO L85 PathProgramCache]: Analyzing trace with hash 1291406352, now seen corresponding path program 1 times [2023-11-21 22:08:36,151 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:08:36,151 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [849312801] [2023-11-21 22:08:36,151 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:08:36,153 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:08:36,172 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:36,483 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 22:08:36,484 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:36,493 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-21 22:08:36,495 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:36,528 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-21 22:08:36,534 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:36,585 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:08:36,589 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:36,634 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:08:36,637 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:36,668 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-21 22:08:36,669 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:36,687 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 39 [2023-11-21 22:08:36,688 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:36,697 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 22:08:36,698 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:08:36,698 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [849312801] [2023-11-21 22:08:36,698 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [849312801] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:08:36,698 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:08:36,698 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [17] imperfect sequences [] total 17 [2023-11-21 22:08:36,698 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2136680661] [2023-11-21 22:08:36,699 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:08:36,699 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 17 states [2023-11-21 22:08:36,699 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:08:36,700 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 17 interpolants. [2023-11-21 22:08:36,700 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=47, Invalid=225, Unknown=0, NotChecked=0, Total=272 [2023-11-21 22:08:36,700 INFO L87 Difference]: Start difference. First operand 310 states and 346 transitions. Second operand has 17 states, 14 states have (on average 2.142857142857143) internal successors, (30), 11 states have internal predecessors, (30), 4 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (7), 7 states have call predecessors, (7), 4 states have call successors, (7) [2023-11-21 22:08:38,187 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:08:38,187 INFO L93 Difference]: Finished difference Result 543 states and 628 transitions. [2023-11-21 22:08:38,188 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 39 states. [2023-11-21 22:08:38,188 INFO L78 Accepts]: Start accepts. Automaton has has 17 states, 14 states have (on average 2.142857142857143) internal successors, (30), 11 states have internal predecessors, (30), 4 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (7), 7 states have call predecessors, (7), 4 states have call successors, (7) Word has length 46 [2023-11-21 22:08:38,189 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:08:38,192 INFO L225 Difference]: With dead ends: 543 [2023-11-21 22:08:38,192 INFO L226 Difference]: Without dead ends: 418 [2023-11-21 22:08:38,194 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 70 GetRequests, 20 SyntacticMatches, 0 SemanticMatches, 50 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 767 ImplicationChecksByTransitivity, 0.8s TimeCoverageRelationStatistics Valid=615, Invalid=2037, Unknown=0, NotChecked=0, Total=2652 [2023-11-21 22:08:38,195 INFO L413 NwaCegarLoop]: 9 mSDtfsCounter, 437 mSDsluCounter, 75 mSDsCounter, 0 mSdLazyCounter, 721 mSolverCounterSat, 310 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 441 SdHoareTripleChecker+Valid, 84 SdHoareTripleChecker+Invalid, 1031 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 310 IncrementalHoareTripleChecker+Valid, 721 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2023-11-21 22:08:38,195 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [441 Valid, 84 Invalid, 1031 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [310 Valid, 721 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2023-11-21 22:08:38,197 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 418 states. [2023-11-21 22:08:38,253 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 418 to 367. [2023-11-21 22:08:38,254 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 367 states, 235 states have (on average 1.1404255319148937) internal successors, (268), 253 states have internal predecessors, (268), 65 states have call successors, (65), 54 states have call predecessors, (65), 66 states have return successors, (82), 68 states have call predecessors, (82), 65 states have call successors, (82) [2023-11-21 22:08:38,256 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 367 states to 367 states and 415 transitions. [2023-11-21 22:08:38,257 INFO L78 Accepts]: Start accepts. Automaton has 367 states and 415 transitions. Word has length 46 [2023-11-21 22:08:38,257 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:08:38,257 INFO L495 AbstractCegarLoop]: Abstraction has 367 states and 415 transitions. [2023-11-21 22:08:38,258 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 17 states, 14 states have (on average 2.142857142857143) internal successors, (30), 11 states have internal predecessors, (30), 4 states have call successors, (8), 5 states have call predecessors, (8), 5 states have return successors, (7), 7 states have call predecessors, (7), 4 states have call successors, (7) [2023-11-21 22:08:38,258 INFO L276 IsEmpty]: Start isEmpty. Operand 367 states and 415 transitions. [2023-11-21 22:08:38,260 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 89 [2023-11-21 22:08:38,261 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:08:38,261 INFO L195 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:08:38,261 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-21 22:08:38,262 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:08:38,262 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:08:38,262 INFO L85 PathProgramCache]: Analyzing trace with hash -1524101083, now seen corresponding path program 1 times [2023-11-21 22:08:38,262 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:08:38,262 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1647364003] [2023-11-21 22:08:38,263 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:08:38,263 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:08:38,287 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,421 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 22:08:38,422 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,433 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-21 22:08:38,436 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,449 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:08:38,452 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,456 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:08:38,465 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,468 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:08:38,470 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,473 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-21 22:08:38,474 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,476 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2023-11-21 22:08:38,477 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,486 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2023-11-21 22:08:38,487 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,488 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 56 [2023-11-21 22:08:38,489 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,515 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-21 22:08:38,517 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,531 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 65 [2023-11-21 22:08:38,535 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,540 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:08:38,542 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,543 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:08:38,544 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,547 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 81 [2023-11-21 22:08:38,548 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,554 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 11 proven. 1 refuted. 0 times theorem prover too weak. 27 trivial. 0 not checked. [2023-11-21 22:08:38,555 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:08:38,555 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1647364003] [2023-11-21 22:08:38,555 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1647364003] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 22:08:38,555 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2063164594] [2023-11-21 22:08:38,555 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:08:38,556 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 22:08:38,556 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 22:08:38,558 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 22:08:38,614 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-21 22:08:38,679 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:08:38,682 INFO L262 TraceCheckSpWp]: Trace formula consists of 316 conjuncts, 21 conjunts are in the unsatisfiable core [2023-11-21 22:08:38,691 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 22:08:39,139 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 27 proven. 10 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 22:08:39,139 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-21 22:08:39,819 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 10 proven. 3 refuted. 0 times theorem prover too weak. 26 trivial. 0 not checked. [2023-11-21 22:08:39,819 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2063164594] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-21 22:08:39,819 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-21 22:08:39,820 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 12, 13] total 32 [2023-11-21 22:08:39,820 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1821747099] [2023-11-21 22:08:39,820 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-21 22:08:39,823 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2023-11-21 22:08:39,823 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:08:39,824 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2023-11-21 22:08:39,825 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=128, Invalid=864, Unknown=0, NotChecked=0, Total=992 [2023-11-21 22:08:39,826 INFO L87 Difference]: Start difference. First operand 367 states and 415 transitions. Second operand has 32 states, 28 states have (on average 4.214285714285714) internal successors, (118), 23 states have internal predecessors, (118), 11 states have call successors, (37), 12 states have call predecessors, (37), 11 states have return successors, (34), 13 states have call predecessors, (34), 11 states have call successors, (34) [2023-11-21 22:08:50,003 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:08:50,003 INFO L93 Difference]: Finished difference Result 2436 states and 3551 transitions. [2023-11-21 22:08:50,004 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 218 states. [2023-11-21 22:08:50,004 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 28 states have (on average 4.214285714285714) internal successors, (118), 23 states have internal predecessors, (118), 11 states have call successors, (37), 12 states have call predecessors, (37), 11 states have return successors, (34), 13 states have call predecessors, (34), 11 states have call successors, (34) Word has length 88 [2023-11-21 22:08:50,005 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:08:50,006 INFO L225 Difference]: With dead ends: 2436 [2023-11-21 22:08:50,006 INFO L226 Difference]: Without dead ends: 0 [2023-11-21 22:08:50,044 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 447 GetRequests, 208 SyntacticMatches, 3 SemanticMatches, 236 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 22486 ImplicationChecksByTransitivity, 6.4s TimeCoverageRelationStatistics Valid=6210, Invalid=50196, Unknown=0, NotChecked=0, Total=56406 [2023-11-21 22:08:50,045 INFO L413 NwaCegarLoop]: 82 mSDtfsCounter, 1762 mSDsluCounter, 1016 mSDsCounter, 0 mSdLazyCounter, 4128 mSolverCounterSat, 1201 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1771 SdHoareTripleChecker+Valid, 1098 SdHoareTripleChecker+Invalid, 5329 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.1s SdHoareTripleChecker+Time, 1201 IncrementalHoareTripleChecker+Valid, 4128 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.5s IncrementalHoareTripleChecker+Time [2023-11-21 22:08:50,045 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1771 Valid, 1098 Invalid, 5329 Unknown, 0 Unchecked, 0.1s Time], IncrementalHoareTripleChecker [1201 Valid, 4128 Invalid, 0 Unknown, 0 Unchecked, 3.5s Time] [2023-11-21 22:08:50,045 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-21 22:08:50,046 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-21 22:08:50,046 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 22:08:50,046 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-21 22:08:50,047 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 88 [2023-11-21 22:08:50,047 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:08:50,047 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-21 22:08:50,048 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 28 states have (on average 4.214285714285714) internal successors, (118), 23 states have internal predecessors, (118), 11 states have call successors, (37), 12 states have call predecessors, (37), 11 states have return successors, (34), 13 states have call predecessors, (34), 11 states have call successors, (34) [2023-11-21 22:08:50,048 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-21 22:08:50,048 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-21 22:08:50,051 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-21 22:08:50,082 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-21 22:08:50,264 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 22:08:50,266 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-21 22:09:01,603 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 199 206) no Hoare annotation was computed. [2023-11-21 22:09:01,604 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 199 206) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1))) (= |old(~pumpRunning~0)| 0) (= 0 ~systemActive~0)) [2023-11-21 22:09:01,604 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 89 95) no Hoare annotation was computed. [2023-11-21 22:09:01,604 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 89 95) the Hoare annotation is: true [2023-11-21 22:09:01,605 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 123 147) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (= ~methaneLevelCritical~0 1)) .cse0) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= ~methaneLevelCritical~0 0)) .cse0))) [2023-11-21 22:09:01,605 INFO L895 garLoopResultBuilder]: At program point L137(line 137) the Hoare annotation is: (let ((.cse0 (not (= ~methaneLevelCritical~0 0))) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and .cse0 (not (= ~methaneLevelCritical~0 1))) .cse1) (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~waterLevel~0 0)) .cse1))) [2023-11-21 22:09:01,605 INFO L895 garLoopResultBuilder]: At program point L133(line 133) the Hoare annotation is: (let ((.cse0 (not (= ~methaneLevelCritical~0 0))) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and .cse0 (not (= ~methaneLevelCritical~0 1))) .cse1) (or .cse0 .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (or (< 0 |processEnvironment__wrappee__methaneQuery_~tmp~1#1|) (= ~waterLevel~0 0)))))) [2023-11-21 22:09:01,606 INFO L899 garLoopResultBuilder]: For program point L131(lines 131 139) no Hoare annotation was computed. [2023-11-21 22:09:01,606 INFO L899 garLoopResultBuilder]: For program point L127(lines 127 144) no Hoare annotation was computed. [2023-11-21 22:09:01,606 INFO L895 garLoopResultBuilder]: At program point L142(line 142) the Hoare annotation is: (let ((.cse0 (= |old(~pumpRunning~0)| 0)) (.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse2 (= 0 ~systemActive~0))) (and (or (not .cse0) (= ~pumpRunning~0 0) (and .cse1 (not (= ~methaneLevelCritical~0 1))) .cse2) (or .cse0 .cse1 .cse2))) [2023-11-21 22:09:01,606 INFO L899 garLoopResultBuilder]: For program point L142-1(lines 123 147) no Hoare annotation was computed. [2023-11-21 22:09:01,606 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 123 147) no Hoare annotation was computed. [2023-11-21 22:09:01,607 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 907 918) the Hoare annotation is: (or (and (not (= |old(~methaneLevelCritical~0)| 0)) (not (= |old(~methaneLevelCritical~0)| 1))) (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0) (= 0 ~systemActive~0)) [2023-11-21 22:09:01,607 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 907 918) no Hoare annotation was computed. [2023-11-21 22:09:01,607 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 785 814) no Hoare annotation was computed. [2023-11-21 22:09:01,607 INFO L899 garLoopResultBuilder]: For program point L799(lines 799 803) no Hoare annotation was computed. [2023-11-21 22:09:01,607 INFO L902 garLoopResultBuilder]: At program point L799-1(lines 799 803) the Hoare annotation is: true [2023-11-21 22:09:01,607 INFO L902 garLoopResultBuilder]: At program point L795-2(lines 795 809) the Hoare annotation is: true [2023-11-21 22:09:01,608 INFO L902 garLoopResultBuilder]: At program point L791(line 791) the Hoare annotation is: true [2023-11-21 22:09:01,608 INFO L899 garLoopResultBuilder]: For program point L791-1(line 791) no Hoare annotation was computed. [2023-11-21 22:09:01,608 INFO L899 garLoopResultBuilder]: For program point L810(lines 785 814) no Hoare annotation was computed. [2023-11-21 22:09:01,608 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 785 814) the Hoare annotation is: true [2023-11-21 22:09:01,608 INFO L899 garLoopResultBuilder]: For program point L806(line 806) no Hoare annotation was computed. [2023-11-21 22:09:01,608 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 919 927) the Hoare annotation is: true [2023-11-21 22:09:01,608 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 919 927) no Hoare annotation was computed. [2023-11-21 22:09:01,609 INFO L899 garLoopResultBuilder]: For program point L993(lines 993 1006) no Hoare annotation was computed. [2023-11-21 22:09:01,609 INFO L899 garLoopResultBuilder]: For program point L993-1(lines 985 1009) no Hoare annotation was computed. [2023-11-21 22:09:01,609 INFO L895 garLoopResultBuilder]: At program point L159(line 159) the Hoare annotation is: (let ((.cse3 (not (= ~methaneLevelCritical~0 0)))) (let ((.cse0 (and .cse3 (not (= ~methaneLevelCritical~0 1)))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= |old(~pumpRunning~0)| 0)) (= |timeShift_processEnvironment_~tmp~2#1| ~methaneLevelCritical~0) (let ((.cse1 (+ ~waterLevel~0 1))) (or (and (= |old(~waterLevel~0)| .cse1) (<= 0 ~waterLevel~0)) (< |old(~waterLevel~0)| .cse1)))) .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 0)) .cse2 (= ~waterLevel~0 0)) (or .cse3 .cse2)))) [2023-11-21 22:09:01,610 INFO L895 garLoopResultBuilder]: At program point L155(line 155) the Hoare annotation is: (let ((.cse0 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= |old(~pumpRunning~0)| 0)) (let ((.cse1 (+ ~waterLevel~0 1))) (or (and (= |old(~waterLevel~0)| .cse1) (<= 0 ~waterLevel~0)) (< |old(~waterLevel~0)| .cse1)))) .cse2) (or .cse0 (not (= |old(~waterLevel~0)| 0)) .cse2 (= ~waterLevel~0 0)))) [2023-11-21 22:09:01,610 INFO L899 garLoopResultBuilder]: For program point L155-1(line 155) no Hoare annotation was computed. [2023-11-21 22:09:01,610 INFO L895 garLoopResultBuilder]: At program point L168(line 168) the Hoare annotation is: (let ((.cse0 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (= |old(~pumpRunning~0)| 0) .cse1) (or (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0 .cse1))) [2023-11-21 22:09:01,610 INFO L899 garLoopResultBuilder]: For program point L168-1(lines 149 173) no Hoare annotation was computed. [2023-11-21 22:09:01,611 INFO L899 garLoopResultBuilder]: For program point L69-1(lines 68 87) no Hoare annotation was computed. [2023-11-21 22:09:01,611 INFO L899 garLoopResultBuilder]: For program point L1015(line 1015) no Hoare annotation was computed. [2023-11-21 22:09:01,611 INFO L895 garLoopResultBuilder]: At program point L991(line 991) the Hoare annotation is: (let ((.cse3 (= ~methaneLevelCritical~0 0))) (let ((.cse0 (and (not .cse3) (not (= ~methaneLevelCritical~0 1)))) (.cse1 (= 0 ~systemActive~0)) (.cse2 (= ~waterLevel~0 0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1) (or .cse0 (not (= |old(~waterLevel~0)| 0)) .cse1 .cse2) (or .cse0 (< |old(~waterLevel~0)| 2) (< 1 ~waterLevel~0) .cse1 (= ~waterLevel~0 1)) (or (= ~pumpRunning~0 0) .cse0 .cse1 (and .cse3 (<= 2 ~waterLevel~0) (<= |old(~waterLevel~0)| ~waterLevel~0)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse3 .cse2))))) [2023-11-21 22:09:01,611 INFO L899 garLoopResultBuilder]: For program point L991-1(line 991) no Hoare annotation was computed. [2023-11-21 22:09:01,611 INFO L899 garLoopResultBuilder]: For program point L157(lines 157 165) no Hoare annotation was computed. [2023-11-21 22:09:01,612 INFO L899 garLoopResultBuilder]: For program point L153(lines 153 170) no Hoare annotation was computed. [2023-11-21 22:09:01,612 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 65 88) the Hoare annotation is: (or (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1))) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |old(~waterLevel~0)| ~waterLevel~0)) (= 0 ~systemActive~0)) [2023-11-21 22:09:01,612 INFO L899 garLoopResultBuilder]: For program point L76-1(lines 76 82) no Hoare annotation was computed. [2023-11-21 22:09:01,612 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 65 88) no Hoare annotation was computed. [2023-11-21 22:09:01,612 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 1015) no Hoare annotation was computed. [2023-11-21 22:09:01,613 INFO L899 garLoopResultBuilder]: For program point L997(lines 997 1003) no Hoare annotation was computed. [2023-11-21 22:09:01,613 INFO L895 garLoopResultBuilder]: At program point L163(line 163) the Hoare annotation is: (let ((.cse2 (= ~methaneLevelCritical~0 0))) (let ((.cse0 (not .cse2)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2 (= |timeShift_processEnvironment_~tmp~2#1| 0) (let ((.cse3 (+ ~waterLevel~0 1))) (or (and (= |old(~waterLevel~0)| .cse3) (<= 0 ~waterLevel~0)) (< |old(~waterLevel~0)| .cse3)))) (and .cse0 (not (= ~methaneLevelCritical~0 1))) .cse1) (or .cse0 (not (= |old(~waterLevel~0)| 0)) .cse1 (= ~waterLevel~0 0))))) [2023-11-21 22:09:01,613 INFO L895 garLoopResultBuilder]: At program point L345(line 345) the Hoare annotation is: (and (or (= ~methaneLevelCritical~0 0) (= ~methaneLevelCritical~0 1)) (= 1 ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (= |ULTIMATE.start_main_~tmp~10#1| 1)) [2023-11-21 22:09:01,613 INFO L899 garLoopResultBuilder]: For program point L374(lines 313 378) no Hoare annotation was computed. [2023-11-21 22:09:01,614 INFO L899 garLoopResultBuilder]: For program point L333(lines 333 339) no Hoare annotation was computed. [2023-11-21 22:09:01,614 INFO L899 garLoopResultBuilder]: For program point L333-1(lines 333 339) no Hoare annotation was computed. [2023-11-21 22:09:01,614 INFO L899 garLoopResultBuilder]: For program point L866(lines 866 873) no Hoare annotation was computed. [2023-11-21 22:09:01,614 INFO L899 garLoopResultBuilder]: For program point L866-2(lines 866 873) no Hoare annotation was computed. [2023-11-21 22:09:01,614 INFO L895 garLoopResultBuilder]: At program point L371(lines 322 372) the Hoare annotation is: false [2023-11-21 22:09:01,614 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-21 22:09:01,615 INFO L899 garLoopResultBuilder]: For program point L343(lines 343 349) no Hoare annotation was computed. [2023-11-21 22:09:01,615 INFO L899 garLoopResultBuilder]: For program point L343-1(lines 343 349) no Hoare annotation was computed. [2023-11-21 22:09:01,615 INFO L895 garLoopResultBuilder]: At program point L368(lines 323 370) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~10#1| 1))) (or (and (= ~pumpRunning~0 0) .cse0 (= ~methaneLevelCritical~0 1) .cse1 .cse2) (and (= ~methaneLevelCritical~0 0) .cse0 .cse1 .cse2))) [2023-11-21 22:09:01,615 INFO L895 garLoopResultBuilder]: At program point L335(line 335) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~10#1| 1))) (or (and (= ~pumpRunning~0 0) .cse0 (= ~methaneLevelCritical~0 1) .cse1 .cse2) (and (= ~methaneLevelCritical~0 0) .cse0 .cse1 .cse2))) [2023-11-21 22:09:01,615 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-21 22:09:01,616 INFO L895 garLoopResultBuilder]: At program point L361-2(lines 353 366) the Hoare annotation is: (and (or (= ~methaneLevelCritical~0 0) (= ~methaneLevelCritical~0 1)) (= 1 ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (= |ULTIMATE.start_main_~tmp~10#1| 1)) [2023-11-21 22:09:01,616 INFO L899 garLoopResultBuilder]: For program point L324(lines 323 370) no Hoare annotation was computed. [2023-11-21 22:09:01,616 INFO L895 garLoopResultBuilder]: At program point L116(line 116) the Hoare annotation is: (let ((.cse0 (not (= ~methaneLevelCritical~0 0))) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and .cse0 (not (= ~methaneLevelCritical~0 1))) .cse1) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= ~waterLevel~0 0)) .cse0 .cse1))) [2023-11-21 22:09:01,621 INFO L899 garLoopResultBuilder]: For program point L116-1(lines 97 121) no Hoare annotation was computed. [2023-11-21 22:09:01,622 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 97 121) the Hoare annotation is: (let ((.cse0 (not (= ~methaneLevelCritical~0 0))) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (and .cse0 (not (= ~methaneLevelCritical~0 1))) .cse1) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= ~waterLevel~0 0)) .cse0 .cse1))) [2023-11-21 22:09:01,622 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 97 121) no Hoare annotation was computed. [2023-11-21 22:09:01,622 INFO L895 garLoopResultBuilder]: At program point L187(line 187) the Hoare annotation is: (let ((.cse0 (not (= ~methaneLevelCritical~0 0))) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and .cse0 (not (= ~methaneLevelCritical~0 1))) (and (= ~pumpRunning~0 0) (<= 2 ~waterLevel~0)) .cse1) (or (not (= ~waterLevel~0 0)) .cse0 .cse1))) [2023-11-21 22:09:01,622 INFO L899 garLoopResultBuilder]: For program point L187-1(line 187) no Hoare annotation was computed. [2023-11-21 22:09:01,623 INFO L895 garLoopResultBuilder]: At program point L111(line 111) the Hoare annotation is: (let ((.cse0 (= |old(~pumpRunning~0)| 0)) (.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse2 (= 0 ~systemActive~0))) (and (or (not .cse0) (and .cse1 (not (= ~methaneLevelCritical~0 1))) (and (= ~pumpRunning~0 0) (or (= |processEnvironment__wrappee__highWaterSensor_~tmp~0#1| 0) (< 1 ~waterLevel~0))) .cse2) (or (not (= ~waterLevel~0 0)) .cse0 .cse1 .cse2))) [2023-11-21 22:09:01,625 INFO L899 garLoopResultBuilder]: For program point L105(lines 105 113) no Hoare annotation was computed. [2023-11-21 22:09:01,625 INFO L899 garLoopResultBuilder]: For program point L101(lines 101 118) no Hoare annotation was computed. [2023-11-21 22:09:01,625 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 895 906) no Hoare annotation was computed. [2023-11-21 22:09:01,625 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 895 906) the Hoare annotation is: (let ((.cse0 (not (= ~methaneLevelCritical~0 0)))) (or (and (not (= ~pumpRunning~0 0)) .cse0) (and .cse0 (not (= ~methaneLevelCritical~0 1))) (= |old(~waterLevel~0)| ~waterLevel~0) (= 0 ~systemActive~0))) [2023-11-21 22:09:01,626 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 207 217) no Hoare annotation was computed. [2023-11-21 22:09:01,626 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 207 217) the Hoare annotation is: true [2023-11-21 22:09:01,626 INFO L902 garLoopResultBuilder]: At program point L212(line 212) the Hoare annotation is: true [2023-11-21 22:09:01,626 INFO L899 garLoopResultBuilder]: For program point L212-1(line 212) no Hoare annotation was computed. [2023-11-21 22:09:01,629 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:09:01,631 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-21 22:09:01,646 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.11 10:09:01 BoogieIcfgContainer [2023-11-21 22:09:01,646 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-21 22:09:01,650 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-21 22:09:01,651 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-21 22:09:01,651 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-21 22:09:01,651 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 10:08:32" (3/4) ... [2023-11-21 22:09:01,653 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-21 22:09:01,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-21 22:09:01,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-21 22:09:01,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-21 22:09:01,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-21 22:09:01,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2023-11-21 22:09:01,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-21 22:09:01,658 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 22:09:01,658 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-21 22:09:01,658 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2023-11-21 22:09:01,658 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2023-11-21 22:09:01,682 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 49 nodes and edges [2023-11-21 22:09:01,682 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2023-11-21 22:09:01,683 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-21 22:09:01,685 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-21 22:09:01,685 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-21 22:09:01,720 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1))) || ((pumpRunning == \old(pumpRunning)) && (\old(waterLevel) == waterLevel))) || (0 == systemActive)) [2023-11-21 22:09:01,786 WARN L141 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1))) || ((pumpRunning == \old(pumpRunning)) && (\old(waterLevel) == waterLevel))) || (0 == systemActive)) [2023-11-21 22:09:01,845 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/witness.graphml [2023-11-21 22:09:01,846 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/witness.yml [2023-11-21 22:09:01,847 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-21 22:09:01,847 INFO L158 Benchmark]: Toolchain (without parser) took 31236.01ms. Allocated memory was 159.4MB in the beginning and 662.7MB in the end (delta: 503.3MB). Free memory was 127.9MB in the beginning and 232.9MB in the end (delta: -104.9MB). Peak memory consumption was 400.1MB. Max. memory is 16.1GB. [2023-11-21 22:09:01,848 INFO L158 Benchmark]: CDTParser took 0.26ms. Allocated memory is still 121.6MB. Free memory is still 81.4MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-21 22:09:01,848 INFO L158 Benchmark]: CACSL2BoogieTranslator took 533.25ms. Allocated memory is still 159.4MB. Free memory was 127.6MB in the beginning and 108.0MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-21 22:09:01,849 INFO L158 Benchmark]: Boogie Procedure Inliner took 84.01ms. Allocated memory is still 159.4MB. Free memory was 108.0MB in the beginning and 105.6MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-21 22:09:01,849 INFO L158 Benchmark]: Boogie Preprocessor took 49.08ms. Allocated memory is still 159.4MB. Free memory was 105.6MB in the beginning and 103.1MB in the end (delta: 2.5MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2023-11-21 22:09:01,849 INFO L158 Benchmark]: RCFGBuilder took 776.09ms. Allocated memory is still 159.4MB. Free memory was 103.1MB in the beginning and 127.9MB in the end (delta: -24.8MB). Peak memory consumption was 32.7MB. Max. memory is 16.1GB. [2023-11-21 22:09:01,850 INFO L158 Benchmark]: TraceAbstraction took 29585.81ms. Allocated memory was 159.4MB in the beginning and 662.7MB in the end (delta: 503.3MB). Free memory was 127.4MB in the beginning and 240.2MB in the end (delta: -112.8MB). Peak memory consumption was 398.9MB. Max. memory is 16.1GB. [2023-11-21 22:09:01,851 INFO L158 Benchmark]: Witness Printer took 196.62ms. Allocated memory is still 662.7MB. Free memory was 240.2MB in the beginning and 232.9MB in the end (delta: 7.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-21 22:09:01,854 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.26ms. Allocated memory is still 121.6MB. Free memory is still 81.4MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 533.25ms. Allocated memory is still 159.4MB. Free memory was 127.6MB in the beginning and 108.0MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 84.01ms. Allocated memory is still 159.4MB. Free memory was 108.0MB in the beginning and 105.6MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 49.08ms. Allocated memory is still 159.4MB. Free memory was 105.6MB in the beginning and 103.1MB in the end (delta: 2.5MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * RCFGBuilder took 776.09ms. Allocated memory is still 159.4MB. Free memory was 103.1MB in the beginning and 127.9MB in the end (delta: -24.8MB). Peak memory consumption was 32.7MB. Max. memory is 16.1GB. * TraceAbstraction took 29585.81ms. Allocated memory was 159.4MB in the beginning and 662.7MB in the end (delta: 503.3MB). Free memory was 127.4MB in the beginning and 240.2MB in the end (delta: -112.8MB). Peak memory consumption was 398.9MB. Max. memory is 16.1GB. * Witness Printer took 196.62ms. Allocated memory is still 662.7MB. Free memory was 240.2MB in the beginning and 232.9MB in the end (delta: 7.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [49] - GenericResultAtLocation [Line: 309]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [309] - GenericResultAtLocation [Line: 379]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [379] - GenericResultAtLocation [Line: 417]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [417] - GenericResultAtLocation [Line: 783]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [783] - GenericResultAtLocation [Line: 879]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [879] - GenericResultAtLocation [Line: 983]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification1_spec.i","") [983] - GenericResultAtLocation [Line: 1010]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [1010] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 1015]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 11 procedures, 74 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 29.5s, OverallIterations: 9, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 13.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 11.3s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 2804 SdHoareTripleChecker+Valid, 5.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 2766 mSDsluCounter, 2138 SdHoareTripleChecker+Invalid, 4.5s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1640 mSDsCounter, 1812 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 5771 IncrementalHoareTripleChecker+Invalid, 7583 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1812 mSolverCounterUnsat, 498 mSDtfsCounter, 5771 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 623 GetRequests, 291 SyntacticMatches, 3 SemanticMatches, 329 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 23323 ImplicationChecksByTransitivity, 7.5s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=367occurred in iteration=8, InterpolantAutomatonStates: 308, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.3s AutomataMinimizationTime, 9 MinimizatonAttempts, 94 StatesRemovedByMinimization, 5 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 30 LocationsWithAnnotation, 1762 PreInvPairs, 2543 NumberOfFragments, 789 HoareAnnotationTreeSize, 1762 FomulaSimplifications, 47321 FormulaSimplificationTreeSizeReduction, 5.6s HoareSimplificationTime, 30 FomulaSimplificationsInter, 39963 FormulaSimplificationTreeSizeReductionInter, 5.5s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 3.3s InterpolantComputationTime, 422 NumberOfCodeBlocks, 422 NumberOfCodeBlocksAsserted, 10 NumberOfCheckSat, 499 ConstructedInterpolants, 0 QuantifiedInterpolants, 1379 SizeOfPredicates, 7 NumberOfNonLiveVariables, 316 ConjunctsInSsa, 21 ConjunctsInUnsatCore, 11 InterpolantComputations, 8 PerfectInterpolantSequences, 109/123 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 323]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (splverifierCounter == 0)) && (tmp == 1)) || ((((methaneLevelCritical == 0) && (1 == systemActive)) && (splverifierCounter == 0)) && (tmp == 1))) - InvariantResult [Line: 795]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 322]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 65]: Loop Invariant Derived loop invariant: (((!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1))) || ((pumpRunning == \old(pumpRunning)) && (\old(waterLevel) == waterLevel))) || (0 == systemActive)) RESULT: Ultimate proved your program to be correct! [2023-11-21 22:09:01,906 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_24f0711d-7c5f-4b4c-a394-4b7c6e63bafa/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE