./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 527bcce2 Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 80b4c453e300455caffbcb636daccd3af095acb6ed433fb3111a61f5db77a0b9 --- Real Ultimate output --- This is Ultimate 0.2.3-dev-527bcce [2023-11-21 20:58:16,084 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-21 20:58:16,209 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-21 20:58:16,218 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-21 20:58:16,219 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-21 20:58:16,257 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-21 20:58:16,258 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-21 20:58:16,259 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-21 20:58:16,260 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-21 20:58:16,265 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-21 20:58:16,265 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-21 20:58:16,266 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-21 20:58:16,267 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-21 20:58:16,268 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-21 20:58:16,269 INFO L153 SettingsManager]: * Use SBE=true [2023-11-21 20:58:16,269 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-21 20:58:16,270 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-21 20:58:16,270 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-21 20:58:16,270 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-21 20:58:16,271 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-21 20:58:16,272 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-21 20:58:16,273 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-21 20:58:16,273 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-21 20:58:16,274 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-21 20:58:16,274 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-21 20:58:16,275 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-21 20:58:16,275 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-21 20:58:16,276 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-21 20:58:16,276 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-21 20:58:16,277 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-21 20:58:16,278 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-21 20:58:16,278 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-21 20:58:16,279 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-21 20:58:16,279 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-21 20:58:16,279 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-21 20:58:16,279 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-21 20:58:16,279 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-21 20:58:16,280 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-21 20:58:16,280 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-21 20:58:16,280 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-21 20:58:16,280 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-21 20:58:16,281 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-21 20:58:16,281 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 80b4c453e300455caffbcb636daccd3af095acb6ed433fb3111a61f5db77a0b9 [2023-11-21 20:58:16,600 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-21 20:58:16,621 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-21 20:58:16,624 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-21 20:58:16,625 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-21 20:58:16,626 INFO L274 PluginConnector]: CDTParser initialized [2023-11-21 20:58:16,628 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c [2023-11-21 20:58:19,777 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-21 20:58:20,074 INFO L384 CDTParser]: Found 1 translation units. [2023-11-21 20:58:20,075 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c [2023-11-21 20:58:20,091 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/data/41b1acbc3/cd1f0b8e41d54f26a2a76d9b637efc4a/FLAG7001a4486 [2023-11-21 20:58:20,107 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/data/41b1acbc3/cd1f0b8e41d54f26a2a76d9b637efc4a [2023-11-21 20:58:20,117 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-21 20:58:20,118 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-21 20:58:20,120 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-21 20:58:20,120 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-21 20:58:20,129 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-21 20:58:20,130 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,131 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@30cb19c9 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20, skipping insertion in model container [2023-11-21 20:58:20,131 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,205 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-21 20:58:20,388 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c[1605,1618] [2023-11-21 20:58:20,544 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-21 20:58:20,563 INFO L202 MainTranslator]: Completed pre-run [2023-11-21 20:58:20,574 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2023-11-21 20:58:20,576 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] [2023-11-21 20:58:20,577 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [300] [2023-11-21 20:58:20,577 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [370] [2023-11-21 20:58:20,577 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [409] [2023-11-21 20:58:20,578 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [509] [2023-11-21 20:58:20,578 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [544] [2023-11-21 20:58:20,578 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [910] [2023-11-21 20:58:20,582 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c[1605,1618] [2023-11-21 20:58:20,641 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-21 20:58:20,663 INFO L206 MainTranslator]: Completed translation [2023-11-21 20:58:20,663 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20 WrapperNode [2023-11-21 20:58:20,663 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-21 20:58:20,665 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-21 20:58:20,665 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-21 20:58:20,665 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-21 20:58:20,672 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,700 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,734 INFO L138 Inliner]: procedures = 58, calls = 103, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 226 [2023-11-21 20:58:20,734 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-21 20:58:20,735 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-21 20:58:20,735 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-21 20:58:20,736 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-21 20:58:20,747 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,747 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,750 INFO L184 PluginConnector]: Executing the observer HeapSplitter from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,766 INFO L187 HeapSplitter]: Split 2 memory accesses to 1 slices as follows [2] [2023-11-21 20:58:20,766 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,766 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,772 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,788 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,793 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,795 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,798 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-21 20:58:20,799 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-21 20:58:20,799 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-21 20:58:20,799 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-21 20:58:20,800 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (1/1) ... [2023-11-21 20:58:20,810 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-21 20:58:20,822 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 20:58:20,865 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-21 20:58:20,946 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-21 20:58:20,990 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-21 20:58:20,991 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-21 20:58:20,991 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-21 20:58:20,991 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-21 20:58:20,991 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-21 20:58:20,991 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2023-11-21 20:58:20,991 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2023-11-21 20:58:20,992 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-21 20:58:20,992 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-21 20:58:20,992 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 20:58:20,992 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 20:58:20,993 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-21 20:58:20,993 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-21 20:58:20,993 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-21 20:58:20,993 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-21 20:58:20,994 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-21 20:58:20,994 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-21 20:58:20,995 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-21 20:58:20,995 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-21 20:58:20,995 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-21 20:58:21,119 INFO L240 CfgBuilder]: Building ICFG [2023-11-21 20:58:21,125 INFO L266 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-21 20:58:21,510 INFO L281 CfgBuilder]: Performing block encoding [2023-11-21 20:58:21,640 INFO L303 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-21 20:58:21,641 INFO L308 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-21 20:58:21,642 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 08:58:21 BoogieIcfgContainer [2023-11-21 20:58:21,642 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-21 20:58:21,645 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-21 20:58:21,645 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-21 20:58:21,648 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-21 20:58:21,648 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.11 08:58:20" (1/3) ... [2023-11-21 20:58:21,649 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@29746e42 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 08:58:21, skipping insertion in model container [2023-11-21 20:58:21,649 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 08:58:20" (2/3) ... [2023-11-21 20:58:21,649 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@29746e42 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 08:58:21, skipping insertion in model container [2023-11-21 20:58:21,650 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 08:58:21" (3/3) ... [2023-11-21 20:58:21,651 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product59.cil.c [2023-11-21 20:58:21,670 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-21 20:58:21,670 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-21 20:58:21,728 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-21 20:58:21,735 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@40eb2856, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-21 20:58:21,736 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-21 20:58:21,740 INFO L276 IsEmpty]: Start isEmpty. Operand has 66 states, 42 states have (on average 1.4523809523809523) internal successors, (61), 51 states have internal predecessors, (61), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) [2023-11-21 20:58:21,750 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2023-11-21 20:58:21,751 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:21,751 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:21,752 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:21,763 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:21,763 INFO L85 PathProgramCache]: Analyzing trace with hash -108520282, now seen corresponding path program 1 times [2023-11-21 20:58:21,772 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:21,773 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [986693895] [2023-11-21 20:58:21,773 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:21,774 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:21,908 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:22,006 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-21 20:58:22,008 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:22,012 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 20:58:22,013 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:22,013 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [986693895] [2023-11-21 20:58:22,014 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [986693895] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:22,014 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:22,014 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-21 20:58:22,016 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1645519607] [2023-11-21 20:58:22,017 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:22,021 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-21 20:58:22,021 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:22,061 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-21 20:58:22,062 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-21 20:58:22,065 INFO L87 Difference]: Start difference. First operand has 66 states, 42 states have (on average 1.4523809523809523) internal successors, (61), 51 states have internal predecessors, (61), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:22,139 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:22,140 INFO L93 Difference]: Finished difference Result 130 states and 179 transitions. [2023-11-21 20:58:22,141 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-21 20:58:22,142 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2023-11-21 20:58:22,143 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:22,152 INFO L225 Difference]: With dead ends: 130 [2023-11-21 20:58:22,152 INFO L226 Difference]: Without dead ends: 61 [2023-11-21 20:58:22,156 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-21 20:58:22,160 INFO L413 NwaCegarLoop]: 69 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 69 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:22,161 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 69 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-21 20:58:22,179 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 61 states. [2023-11-21 20:58:22,206 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 61 to 61. [2023-11-21 20:58:22,207 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 61 states, 39 states have (on average 1.358974358974359) internal successors, (53), 47 states have internal predecessors, (53), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2023-11-21 20:58:22,210 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 61 states to 61 states and 80 transitions. [2023-11-21 20:58:22,211 INFO L78 Accepts]: Start accepts. Automaton has 61 states and 80 transitions. Word has length 17 [2023-11-21 20:58:22,212 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:22,212 INFO L495 AbstractCegarLoop]: Abstraction has 61 states and 80 transitions. [2023-11-21 20:58:22,212 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:22,213 INFO L276 IsEmpty]: Start isEmpty. Operand 61 states and 80 transitions. [2023-11-21 20:58:22,215 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2023-11-21 20:58:22,215 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:22,215 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:22,216 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-21 20:58:22,216 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:22,217 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:22,217 INFO L85 PathProgramCache]: Analyzing trace with hash -41542237, now seen corresponding path program 1 times [2023-11-21 20:58:22,217 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:22,217 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1705672553] [2023-11-21 20:58:22,218 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:22,218 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:22,237 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:22,307 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-21 20:58:22,309 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:22,312 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 20:58:22,312 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:22,312 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1705672553] [2023-11-21 20:58:22,313 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1705672553] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:22,313 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:22,313 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 20:58:22,314 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1633935020] [2023-11-21 20:58:22,314 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:22,315 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-21 20:58:22,315 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:22,316 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-21 20:58:22,317 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 20:58:22,317 INFO L87 Difference]: Start difference. First operand 61 states and 80 transitions. Second operand has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:22,360 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:22,360 INFO L93 Difference]: Finished difference Result 94 states and 122 transitions. [2023-11-21 20:58:22,361 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-21 20:58:22,361 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 18 [2023-11-21 20:58:22,361 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:22,362 INFO L225 Difference]: With dead ends: 94 [2023-11-21 20:58:22,363 INFO L226 Difference]: Without dead ends: 53 [2023-11-21 20:58:22,364 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 20:58:22,365 INFO L413 NwaCegarLoop]: 55 mSDtfsCounter, 14 mSDsluCounter, 38 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 93 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:22,366 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 93 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-21 20:58:22,367 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2023-11-21 20:58:22,374 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2023-11-21 20:58:22,375 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 34 states have (on average 1.3823529411764706) internal successors, (47), 42 states have internal predecessors, (47), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 8 states have call predecessors, (11), 11 states have call successors, (11) [2023-11-21 20:58:22,376 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 69 transitions. [2023-11-21 20:58:22,376 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 69 transitions. Word has length 18 [2023-11-21 20:58:22,376 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:22,377 INFO L495 AbstractCegarLoop]: Abstraction has 53 states and 69 transitions. [2023-11-21 20:58:22,377 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:22,377 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 69 transitions. [2023-11-21 20:58:22,378 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2023-11-21 20:58:22,379 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:22,379 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:22,379 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-21 20:58:22,379 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:22,380 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:22,380 INFO L85 PathProgramCache]: Analyzing trace with hash 1953384932, now seen corresponding path program 1 times [2023-11-21 20:58:22,380 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:22,381 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1160642410] [2023-11-21 20:58:22,381 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:22,381 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:22,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:22,516 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-21 20:58:22,518 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:22,521 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 20:58:22,521 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:22,521 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1160642410] [2023-11-21 20:58:22,522 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1160642410] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:22,522 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:22,522 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 20:58:22,522 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [642400969] [2023-11-21 20:58:22,523 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:22,523 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-21 20:58:22,546 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:22,546 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-21 20:58:22,547 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 20:58:22,547 INFO L87 Difference]: Start difference. First operand 53 states and 69 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:22,622 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:22,622 INFO L93 Difference]: Finished difference Result 155 states and 204 transitions. [2023-11-21 20:58:22,624 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-21 20:58:22,624 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 21 [2023-11-21 20:58:22,625 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:22,626 INFO L225 Difference]: With dead ends: 155 [2023-11-21 20:58:22,627 INFO L226 Difference]: Without dead ends: 104 [2023-11-21 20:58:22,628 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 20:58:22,629 INFO L413 NwaCegarLoop]: 67 mSDtfsCounter, 56 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 32 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 56 SdHoareTripleChecker+Valid, 120 SdHoareTripleChecker+Invalid, 32 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 32 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:22,629 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [56 Valid, 120 Invalid, 32 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 32 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-21 20:58:22,630 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2023-11-21 20:58:22,663 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 101. [2023-11-21 20:58:22,664 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 64 states have (on average 1.390625) internal successors, (89), 79 states have internal predecessors, (89), 22 states have call successors, (22), 14 states have call predecessors, (22), 14 states have return successors, (22), 15 states have call predecessors, (22), 22 states have call successors, (22) [2023-11-21 20:58:22,675 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 133 transitions. [2023-11-21 20:58:22,675 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 133 transitions. Word has length 21 [2023-11-21 20:58:22,676 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:22,676 INFO L495 AbstractCegarLoop]: Abstraction has 101 states and 133 transitions. [2023-11-21 20:58:22,676 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:22,676 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 133 transitions. [2023-11-21 20:58:22,681 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2023-11-21 20:58:22,682 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:22,682 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:22,682 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-21 20:58:22,682 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:22,683 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:22,683 INFO L85 PathProgramCache]: Analyzing trace with hash 1141272397, now seen corresponding path program 1 times [2023-11-21 20:58:22,683 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:22,683 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [946468888] [2023-11-21 20:58:22,684 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:22,684 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:22,721 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:22,841 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-21 20:58:22,843 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:22,850 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 20:58:22,851 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:22,851 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [946468888] [2023-11-21 20:58:22,851 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [946468888] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:22,852 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:22,852 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 20:58:22,852 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [315868767] [2023-11-21 20:58:22,852 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:22,853 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-21 20:58:22,853 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:22,854 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-21 20:58:22,854 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 20:58:22,855 INFO L87 Difference]: Start difference. First operand 101 states and 133 transitions. Second operand has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:22,979 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:22,979 INFO L93 Difference]: Finished difference Result 200 states and 268 transitions. [2023-11-21 20:58:22,980 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-21 20:58:22,980 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2023-11-21 20:58:22,980 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:22,989 INFO L225 Difference]: With dead ends: 200 [2023-11-21 20:58:22,989 INFO L226 Difference]: Without dead ends: 198 [2023-11-21 20:58:22,992 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 20:58:23,001 INFO L413 NwaCegarLoop]: 54 mSDtfsCounter, 45 mSDsluCounter, 51 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 45 SdHoareTripleChecker+Valid, 105 SdHoareTripleChecker+Invalid, 34 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:23,001 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [45 Valid, 105 Invalid, 34 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-21 20:58:23,002 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 198 states. [2023-11-21 20:58:23,050 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 198 to 198. [2023-11-21 20:58:23,053 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 198 states, 125 states have (on average 1.384) internal successors, (173), 154 states have internal predecessors, (173), 44 states have call successors, (44), 28 states have call predecessors, (44), 28 states have return successors, (48), 30 states have call predecessors, (48), 44 states have call successors, (48) [2023-11-21 20:58:23,056 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 198 states to 198 states and 265 transitions. [2023-11-21 20:58:23,056 INFO L78 Accepts]: Start accepts. Automaton has 198 states and 265 transitions. Word has length 24 [2023-11-21 20:58:23,057 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:23,057 INFO L495 AbstractCegarLoop]: Abstraction has 198 states and 265 transitions. [2023-11-21 20:58:23,057 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 20:58:23,057 INFO L276 IsEmpty]: Start isEmpty. Operand 198 states and 265 transitions. [2023-11-21 20:58:23,062 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2023-11-21 20:58:23,062 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:23,063 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:23,063 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-21 20:58:23,064 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:23,064 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:23,064 INFO L85 PathProgramCache]: Analyzing trace with hash 1971796017, now seen corresponding path program 1 times [2023-11-21 20:58:23,065 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:23,065 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [967437352] [2023-11-21 20:58:23,065 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:23,065 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:23,107 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:23,273 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 20:58:23,280 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:23,329 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:23,331 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:23,334 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2023-11-21 20:58:23,335 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:23,337 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 16 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 20:58:23,338 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:23,338 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [967437352] [2023-11-21 20:58:23,338 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [967437352] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:23,338 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:23,339 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-21 20:58:23,339 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [381494722] [2023-11-21 20:58:23,339 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:23,340 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-21 20:58:23,340 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:23,341 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-21 20:58:23,341 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2023-11-21 20:58:23,342 INFO L87 Difference]: Start difference. First operand 198 states and 265 transitions. Second operand has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 6 states have internal predecessors, (36), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-21 20:58:23,823 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:23,825 INFO L93 Difference]: Finished difference Result 679 states and 938 transitions. [2023-11-21 20:58:23,826 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2023-11-21 20:58:23,826 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 6 states have internal predecessors, (36), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 44 [2023-11-21 20:58:23,826 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:23,831 INFO L225 Difference]: With dead ends: 679 [2023-11-21 20:58:23,848 INFO L226 Difference]: Without dead ends: 483 [2023-11-21 20:58:23,851 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 42 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=70, Invalid=202, Unknown=0, NotChecked=0, Total=272 [2023-11-21 20:58:23,852 INFO L413 NwaCegarLoop]: 49 mSDtfsCounter, 143 mSDsluCounter, 132 mSDsCounter, 0 mSdLazyCounter, 233 mSolverCounterSat, 81 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 145 SdHoareTripleChecker+Valid, 181 SdHoareTripleChecker+Invalid, 314 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 81 IncrementalHoareTripleChecker+Valid, 233 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:23,853 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [145 Valid, 181 Invalid, 314 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [81 Valid, 233 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-21 20:58:23,855 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 483 states. [2023-11-21 20:58:24,003 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 483 to 418. [2023-11-21 20:58:24,007 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 418 states, 281 states have (on average 1.291814946619217) internal successors, (363), 310 states have internal predecessors, (363), 68 states have call successors, (68), 58 states have call predecessors, (68), 68 states have return successors, (104), 68 states have call predecessors, (104), 68 states have call successors, (104) [2023-11-21 20:58:24,014 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 418 states to 418 states and 535 transitions. [2023-11-21 20:58:24,015 INFO L78 Accepts]: Start accepts. Automaton has 418 states and 535 transitions. Word has length 44 [2023-11-21 20:58:24,015 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:24,016 INFO L495 AbstractCegarLoop]: Abstraction has 418 states and 535 transitions. [2023-11-21 20:58:24,016 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 6 states have internal predecessors, (36), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-21 20:58:24,017 INFO L276 IsEmpty]: Start isEmpty. Operand 418 states and 535 transitions. [2023-11-21 20:58:24,021 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2023-11-21 20:58:24,022 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:24,026 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:24,027 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-21 20:58:24,028 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:24,028 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:24,028 INFO L85 PathProgramCache]: Analyzing trace with hash 2091080877, now seen corresponding path program 1 times [2023-11-21 20:58:24,029 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:24,029 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1005262404] [2023-11-21 20:58:24,029 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:24,029 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:24,057 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,119 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 20:58:24,127 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,155 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:24,160 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,166 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:24,167 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,169 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 20:58:24,172 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,177 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2023-11-21 20:58:24,178 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,180 INFO L134 CoverageAnalysis]: Checked inductivity of 22 backedges. 16 proven. 0 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2023-11-21 20:58:24,181 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:24,181 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1005262404] [2023-11-21 20:58:24,181 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1005262404] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:24,181 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 20:58:24,181 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-21 20:58:24,181 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [292402502] [2023-11-21 20:58:24,182 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:24,182 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-21 20:58:24,182 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:24,183 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-21 20:58:24,183 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2023-11-21 20:58:24,183 INFO L87 Difference]: Start difference. First operand 418 states and 535 transitions. Second operand has 6 states, 5 states have (on average 8.6) internal successors, (43), 4 states have internal predecessors, (43), 4 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2023-11-21 20:58:24,468 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:24,468 INFO L93 Difference]: Finished difference Result 469 states and 600 transitions. [2023-11-21 20:58:24,469 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-11-21 20:58:24,469 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 8.6) internal successors, (43), 4 states have internal predecessors, (43), 4 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) Word has length 56 [2023-11-21 20:58:24,469 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:24,471 INFO L225 Difference]: With dead ends: 469 [2023-11-21 20:58:24,472 INFO L226 Difference]: Without dead ends: 205 [2023-11-21 20:58:24,473 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 14 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=30, Invalid=60, Unknown=0, NotChecked=0, Total=90 [2023-11-21 20:58:24,474 INFO L413 NwaCegarLoop]: 66 mSDtfsCounter, 122 mSDsluCounter, 88 mSDsCounter, 0 mSdLazyCounter, 153 mSolverCounterSat, 54 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 127 SdHoareTripleChecker+Valid, 154 SdHoareTripleChecker+Invalid, 207 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 54 IncrementalHoareTripleChecker+Valid, 153 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:24,474 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [127 Valid, 154 Invalid, 207 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [54 Valid, 153 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-21 20:58:24,475 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 205 states. [2023-11-21 20:58:24,500 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 205 to 203. [2023-11-21 20:58:24,501 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 203 states, 137 states have (on average 1.2481751824817517) internal successors, (171), 150 states have internal predecessors, (171), 32 states have call successors, (32), 28 states have call predecessors, (32), 33 states have return successors, (50), 33 states have call predecessors, (50), 32 states have call successors, (50) [2023-11-21 20:58:24,503 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 203 states to 203 states and 253 transitions. [2023-11-21 20:58:24,503 INFO L78 Accepts]: Start accepts. Automaton has 203 states and 253 transitions. Word has length 56 [2023-11-21 20:58:24,503 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:24,503 INFO L495 AbstractCegarLoop]: Abstraction has 203 states and 253 transitions. [2023-11-21 20:58:24,504 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 8.6) internal successors, (43), 4 states have internal predecessors, (43), 4 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2023-11-21 20:58:24,504 INFO L276 IsEmpty]: Start isEmpty. Operand 203 states and 253 transitions. [2023-11-21 20:58:24,505 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2023-11-21 20:58:24,505 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:24,505 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:24,506 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-21 20:58:24,506 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:24,506 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:24,506 INFO L85 PathProgramCache]: Analyzing trace with hash -1207718963, now seen corresponding path program 1 times [2023-11-21 20:58:24,507 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:24,507 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2048832243] [2023-11-21 20:58:24,507 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:24,507 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:24,529 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,632 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-21 20:58:24,636 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,649 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:24,651 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,655 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:24,656 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,657 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 20:58:24,658 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,659 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2023-11-21 20:58:24,660 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,664 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 51 [2023-11-21 20:58:24,665 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,667 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 7 proven. 1 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2023-11-21 20:58:24,668 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:24,668 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2048832243] [2023-11-21 20:58:24,668 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2048832243] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 20:58:24,668 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [51537965] [2023-11-21 20:58:24,668 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:24,669 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 20:58:24,669 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 20:58:24,672 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 20:58:24,692 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-21 20:58:24,784 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:24,787 INFO L262 TraceCheckSpWp]: Trace formula consists of 270 conjuncts, 14 conjunts are in the unsatisfiable core [2023-11-21 20:58:24,797 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 20:58:25,439 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 22 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 20:58:25,440 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-21 20:58:25,440 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [51537965] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:25,440 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-21 20:58:25,441 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [6] total 13 [2023-11-21 20:58:25,441 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1899284779] [2023-11-21 20:58:25,441 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:25,442 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2023-11-21 20:58:25,442 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:25,443 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2023-11-21 20:58:25,443 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=33, Invalid=123, Unknown=0, NotChecked=0, Total=156 [2023-11-21 20:58:25,444 INFO L87 Difference]: Start difference. First operand 203 states and 253 transitions. Second operand has 9 states, 9 states have (on average 5.0) internal successors, (45), 8 states have internal predecessors, (45), 5 states have call successors, (7), 4 states have call predecessors, (7), 3 states have return successors, (6), 3 states have call predecessors, (6), 5 states have call successors, (6) [2023-11-21 20:58:26,051 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:26,051 INFO L93 Difference]: Finished difference Result 469 states and 593 transitions. [2023-11-21 20:58:26,052 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2023-11-21 20:58:26,052 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 5.0) internal successors, (45), 8 states have internal predecessors, (45), 5 states have call successors, (7), 4 states have call predecessors, (7), 3 states have return successors, (6), 3 states have call predecessors, (6), 5 states have call successors, (6) Word has length 59 [2023-11-21 20:58:26,053 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:26,055 INFO L225 Difference]: With dead ends: 469 [2023-11-21 20:58:26,055 INFO L226 Difference]: Without dead ends: 268 [2023-11-21 20:58:26,057 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 81 GetRequests, 61 SyntacticMatches, 2 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 39 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=86, Invalid=294, Unknown=0, NotChecked=0, Total=380 [2023-11-21 20:58:26,058 INFO L413 NwaCegarLoop]: 52 mSDtfsCounter, 197 mSDsluCounter, 160 mSDsCounter, 0 mSdLazyCounter, 279 mSolverCounterSat, 78 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 207 SdHoareTripleChecker+Valid, 212 SdHoareTripleChecker+Invalid, 357 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 78 IncrementalHoareTripleChecker+Valid, 279 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:26,058 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [207 Valid, 212 Invalid, 357 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [78 Valid, 279 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-21 20:58:26,060 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 268 states. [2023-11-21 20:58:26,104 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 268 to 225. [2023-11-21 20:58:26,105 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 225 states, 153 states have (on average 1.2418300653594772) internal successors, (190), 166 states have internal predecessors, (190), 34 states have call successors, (34), 34 states have call predecessors, (34), 37 states have return successors, (52), 34 states have call predecessors, (52), 34 states have call successors, (52) [2023-11-21 20:58:26,107 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 225 states to 225 states and 276 transitions. [2023-11-21 20:58:26,107 INFO L78 Accepts]: Start accepts. Automaton has 225 states and 276 transitions. Word has length 59 [2023-11-21 20:58:26,108 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:26,109 INFO L495 AbstractCegarLoop]: Abstraction has 225 states and 276 transitions. [2023-11-21 20:58:26,109 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 5.0) internal successors, (45), 8 states have internal predecessors, (45), 5 states have call successors, (7), 4 states have call predecessors, (7), 3 states have return successors, (6), 3 states have call predecessors, (6), 5 states have call successors, (6) [2023-11-21 20:58:26,113 INFO L276 IsEmpty]: Start isEmpty. Operand 225 states and 276 transitions. [2023-11-21 20:58:26,116 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 63 [2023-11-21 20:58:26,116 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:26,116 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:26,148 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-21 20:58:26,332 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2023-11-21 20:58:26,333 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:26,333 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:26,333 INFO L85 PathProgramCache]: Analyzing trace with hash 1787643580, now seen corresponding path program 1 times [2023-11-21 20:58:26,333 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:26,333 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [337187481] [2023-11-21 20:58:26,334 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:26,334 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:26,358 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:26,440 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 20:58:26,442 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:26,455 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 20:58:26,459 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:26,474 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:26,477 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:26,481 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:26,483 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:26,484 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 20:58:26,486 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:26,488 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 49 [2023-11-21 20:58:26,489 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:26,493 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 54 [2023-11-21 20:58:26,495 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:26,498 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 7 proven. 1 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2023-11-21 20:58:26,498 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:26,498 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [337187481] [2023-11-21 20:58:26,498 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [337187481] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 20:58:26,499 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [442942407] [2023-11-21 20:58:26,499 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:26,499 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 20:58:26,499 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 20:58:26,501 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 20:58:26,520 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-21 20:58:26,605 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:26,607 INFO L262 TraceCheckSpWp]: Trace formula consists of 276 conjuncts, 7 conjunts are in the unsatisfiable core [2023-11-21 20:58:26,613 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 20:58:26,637 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2023-11-21 20:58:26,637 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-21 20:58:26,637 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [442942407] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 20:58:26,637 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-21 20:58:26,637 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [7] total 7 [2023-11-21 20:58:26,638 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [882529054] [2023-11-21 20:58:26,638 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:26,640 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-21 20:58:26,640 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:26,640 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-21 20:58:26,640 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2023-11-21 20:58:26,641 INFO L87 Difference]: Start difference. First operand 225 states and 276 transitions. Second operand has 4 states, 4 states have (on average 9.5) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (7), 2 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-21 20:58:26,718 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:26,718 INFO L93 Difference]: Finished difference Result 430 states and 526 transitions. [2023-11-21 20:58:26,718 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-21 20:58:26,719 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.5) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (7), 2 states have call predecessors, (7), 2 states have call successors, (7) Word has length 62 [2023-11-21 20:58:26,719 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:26,721 INFO L225 Difference]: With dead ends: 430 [2023-11-21 20:58:26,721 INFO L226 Difference]: Without dead ends: 207 [2023-11-21 20:58:26,722 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 81 GetRequests, 75 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2023-11-21 20:58:26,724 INFO L413 NwaCegarLoop]: 47 mSDtfsCounter, 41 mSDsluCounter, 84 mSDsCounter, 0 mSdLazyCounter, 44 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 41 SdHoareTripleChecker+Valid, 131 SdHoareTripleChecker+Invalid, 47 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 44 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:26,725 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [41 Valid, 131 Invalid, 47 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 44 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-21 20:58:26,726 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 207 states. [2023-11-21 20:58:26,762 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 207 to 192. [2023-11-21 20:58:26,763 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 192 states, 130 states have (on average 1.2307692307692308) internal successors, (160), 141 states have internal predecessors, (160), 29 states have call successors, (29), 29 states have call predecessors, (29), 32 states have return successors, (43), 29 states have call predecessors, (43), 29 states have call successors, (43) [2023-11-21 20:58:26,765 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 192 states to 192 states and 232 transitions. [2023-11-21 20:58:26,765 INFO L78 Accepts]: Start accepts. Automaton has 192 states and 232 transitions. Word has length 62 [2023-11-21 20:58:26,766 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:26,767 INFO L495 AbstractCegarLoop]: Abstraction has 192 states and 232 transitions. [2023-11-21 20:58:26,767 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.5) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (7), 2 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-21 20:58:26,767 INFO L276 IsEmpty]: Start isEmpty. Operand 192 states and 232 transitions. [2023-11-21 20:58:26,768 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 68 [2023-11-21 20:58:26,768 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:26,769 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:26,795 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-11-21 20:58:26,990 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 20:58:26,991 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:26,991 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:26,991 INFO L85 PathProgramCache]: Analyzing trace with hash -300146610, now seen corresponding path program 1 times [2023-11-21 20:58:26,991 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:26,991 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1862789174] [2023-11-21 20:58:26,991 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:26,992 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:27,036 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:27,356 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 20:58:27,357 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:27,391 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 20:58:27,397 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:27,451 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:27,454 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:27,497 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:27,498 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:27,530 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 20:58:27,532 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:27,534 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 49 [2023-11-21 20:58:27,535 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:27,536 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 20:58:27,537 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:27,538 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 59 [2023-11-21 20:58:27,539 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:27,541 INFO L134 CoverageAnalysis]: Checked inductivity of 28 backedges. 9 proven. 6 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2023-11-21 20:58:27,541 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:27,541 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1862789174] [2023-11-21 20:58:27,542 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1862789174] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 20:58:27,542 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1055786766] [2023-11-21 20:58:27,542 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:27,542 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 20:58:27,542 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 20:58:27,545 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 20:58:27,568 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-11-21 20:58:27,651 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:27,653 INFO L262 TraceCheckSpWp]: Trace formula consists of 283 conjuncts, 21 conjunts are in the unsatisfiable core [2023-11-21 20:58:27,658 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 20:58:27,930 INFO L134 CoverageAnalysis]: Checked inductivity of 28 backedges. 15 proven. 11 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-21 20:58:27,930 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-21 20:58:28,284 INFO L134 CoverageAnalysis]: Checked inductivity of 28 backedges. 10 proven. 3 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2023-11-21 20:58:28,284 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1055786766] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-21 20:58:28,285 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-21 20:58:28,285 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 11, 11] total 23 [2023-11-21 20:58:28,285 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [616372408] [2023-11-21 20:58:28,285 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-21 20:58:28,286 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2023-11-21 20:58:28,286 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:28,287 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2023-11-21 20:58:28,287 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=108, Invalid=398, Unknown=0, NotChecked=0, Total=506 [2023-11-21 20:58:28,288 INFO L87 Difference]: Start difference. First operand 192 states and 232 transitions. Second operand has 23 states, 20 states have (on average 4.45) internal successors, (89), 18 states have internal predecessors, (89), 8 states have call successors, (22), 10 states have call predecessors, (22), 8 states have return successors, (20), 6 states have call predecessors, (20), 8 states have call successors, (20) [2023-11-21 20:58:29,089 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:29,089 INFO L93 Difference]: Finished difference Result 425 states and 523 transitions. [2023-11-21 20:58:29,090 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2023-11-21 20:58:29,090 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 20 states have (on average 4.45) internal successors, (89), 18 states have internal predecessors, (89), 8 states have call successors, (22), 10 states have call predecessors, (22), 8 states have return successors, (20), 6 states have call predecessors, (20), 8 states have call successors, (20) Word has length 67 [2023-11-21 20:58:29,090 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:29,092 INFO L225 Difference]: With dead ends: 425 [2023-11-21 20:58:29,092 INFO L226 Difference]: Without dead ends: 235 [2023-11-21 20:58:29,094 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 184 GetRequests, 138 SyntacticMatches, 5 SemanticMatches, 41 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 384 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=466, Invalid=1340, Unknown=0, NotChecked=0, Total=1806 [2023-11-21 20:58:29,095 INFO L413 NwaCegarLoop]: 48 mSDtfsCounter, 245 mSDsluCounter, 295 mSDsCounter, 0 mSdLazyCounter, 412 mSolverCounterSat, 138 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 249 SdHoareTripleChecker+Valid, 343 SdHoareTripleChecker+Invalid, 550 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 138 IncrementalHoareTripleChecker+Valid, 412 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:29,095 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [249 Valid, 343 Invalid, 550 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [138 Valid, 412 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-21 20:58:29,096 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 235 states. [2023-11-21 20:58:29,121 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 235 to 203. [2023-11-21 20:58:29,121 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 203 states, 141 states have (on average 1.2127659574468086) internal successors, (171), 151 states have internal predecessors, (171), 31 states have call successors, (31), 31 states have call predecessors, (31), 30 states have return successors, (44), 29 states have call predecessors, (44), 31 states have call successors, (44) [2023-11-21 20:58:29,123 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 203 states to 203 states and 246 transitions. [2023-11-21 20:58:29,123 INFO L78 Accepts]: Start accepts. Automaton has 203 states and 246 transitions. Word has length 67 [2023-11-21 20:58:29,124 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:29,124 INFO L495 AbstractCegarLoop]: Abstraction has 203 states and 246 transitions. [2023-11-21 20:58:29,124 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 20 states have (on average 4.45) internal successors, (89), 18 states have internal predecessors, (89), 8 states have call successors, (22), 10 states have call predecessors, (22), 8 states have return successors, (20), 6 states have call predecessors, (20), 8 states have call successors, (20) [2023-11-21 20:58:29,124 INFO L276 IsEmpty]: Start isEmpty. Operand 203 states and 246 transitions. [2023-11-21 20:58:29,125 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 69 [2023-11-21 20:58:29,125 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:29,126 INFO L195 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:29,148 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2023-11-21 20:58:29,344 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 20:58:29,344 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:29,344 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:29,345 INFO L85 PathProgramCache]: Analyzing trace with hash -68450577, now seen corresponding path program 1 times [2023-11-21 20:58:29,345 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:29,345 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2112466529] [2023-11-21 20:58:29,345 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:29,345 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:29,359 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:29,422 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 20:58:29,423 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:29,431 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 20:58:29,437 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:29,470 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:29,472 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:29,475 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:29,476 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:29,477 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 20:58:29,477 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:29,479 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2023-11-21 20:58:29,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:29,484 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:29,485 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:29,486 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 60 [2023-11-21 20:58:29,487 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:29,488 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 18 proven. 1 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2023-11-21 20:58:29,488 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:29,488 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2112466529] [2023-11-21 20:58:29,489 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2112466529] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 20:58:29,489 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1218733633] [2023-11-21 20:58:29,489 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:29,489 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 20:58:29,489 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 20:58:29,490 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 20:58:29,512 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2023-11-21 20:58:29,590 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:29,591 INFO L262 TraceCheckSpWp]: Trace formula consists of 294 conjuncts, 11 conjunts are in the unsatisfiable core [2023-11-21 20:58:29,595 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 20:58:29,728 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 5 proven. 2 refuted. 0 times theorem prover too weak. 31 trivial. 0 not checked. [2023-11-21 20:58:29,729 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-21 20:58:29,847 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2023-11-21 20:58:29,847 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1218733633] provided 1 perfect and 1 imperfect interpolant sequences [2023-11-21 20:58:29,847 INFO L185 FreeRefinementEngine]: Found 1 perfect and 2 imperfect interpolant sequences. [2023-11-21 20:58:29,847 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [7, 5] total 12 [2023-11-21 20:58:29,848 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [494779902] [2023-11-21 20:58:29,848 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 20:58:29,848 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-21 20:58:29,849 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:29,849 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-21 20:58:29,849 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=25, Invalid=107, Unknown=0, NotChecked=0, Total=132 [2023-11-21 20:58:29,850 INFO L87 Difference]: Start difference. First operand 203 states and 246 transitions. Second operand has 6 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-21 20:58:30,067 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:30,067 INFO L93 Difference]: Finished difference Result 558 states and 685 transitions. [2023-11-21 20:58:30,068 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-11-21 20:58:30,068 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) Word has length 68 [2023-11-21 20:58:30,068 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:30,071 INFO L225 Difference]: With dead ends: 558 [2023-11-21 20:58:30,071 INFO L226 Difference]: Without dead ends: 357 [2023-11-21 20:58:30,072 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 160 GetRequests, 147 SyntacticMatches, 1 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 19 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=33, Invalid=149, Unknown=0, NotChecked=0, Total=182 [2023-11-21 20:58:30,073 INFO L413 NwaCegarLoop]: 41 mSDtfsCounter, 28 mSDsluCounter, 144 mSDsCounter, 0 mSdLazyCounter, 91 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 30 SdHoareTripleChecker+Valid, 185 SdHoareTripleChecker+Invalid, 93 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 91 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:30,073 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [30 Valid, 185 Invalid, 93 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 91 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-21 20:58:30,074 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 357 states. [2023-11-21 20:58:30,117 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 357 to 338. [2023-11-21 20:58:30,118 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 338 states, 240 states have (on average 1.1958333333333333) internal successors, (287), 251 states have internal predecessors, (287), 50 states have call successors, (50), 50 states have call predecessors, (50), 47 states have return successors, (69), 46 states have call predecessors, (69), 50 states have call successors, (69) [2023-11-21 20:58:30,121 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 338 states to 338 states and 406 transitions. [2023-11-21 20:58:30,121 INFO L78 Accepts]: Start accepts. Automaton has 338 states and 406 transitions. Word has length 68 [2023-11-21 20:58:30,121 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:30,122 INFO L495 AbstractCegarLoop]: Abstraction has 338 states and 406 transitions. [2023-11-21 20:58:30,122 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-21 20:58:30,122 INFO L276 IsEmpty]: Start isEmpty. Operand 338 states and 406 transitions. [2023-11-21 20:58:30,124 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 72 [2023-11-21 20:58:30,124 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 20:58:30,124 INFO L195 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:30,149 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2023-11-21 20:58:30,340 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-21 20:58:30,340 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 20:58:30,341 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 20:58:30,341 INFO L85 PathProgramCache]: Analyzing trace with hash -2014518698, now seen corresponding path program 1 times [2023-11-21 20:58:30,341 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 20:58:30,341 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [748163705] [2023-11-21 20:58:30,341 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:30,341 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 20:58:30,358 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,420 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 20:58:30,421 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,427 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-21 20:58:30,428 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,437 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 20:58:30,443 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,480 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:30,483 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,486 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:30,487 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,488 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 20:58:30,489 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,491 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 51 [2023-11-21 20:58:30,494 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,497 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 20:58:30,498 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,499 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 63 [2023-11-21 20:58:30,500 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,502 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 18 proven. 1 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2023-11-21 20:58:30,502 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 20:58:30,502 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [748163705] [2023-11-21 20:58:30,502 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [748163705] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 20:58:30,503 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [380416631] [2023-11-21 20:58:30,503 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 20:58:30,503 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 20:58:30,503 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 20:58:30,504 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 20:58:30,532 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2023-11-21 20:58:30,614 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 20:58:30,616 INFO L262 TraceCheckSpWp]: Trace formula consists of 300 conjuncts, 26 conjunts are in the unsatisfiable core [2023-11-21 20:58:30,620 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 20:58:31,161 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 22 proven. 5 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2023-11-21 20:58:31,162 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-21 20:58:31,502 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 16 proven. 1 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2023-11-21 20:58:31,502 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [380416631] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-21 20:58:31,502 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-21 20:58:31,503 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 11, 9] total 23 [2023-11-21 20:58:31,503 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [474253728] [2023-11-21 20:58:31,503 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-21 20:58:31,504 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2023-11-21 20:58:31,504 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 20:58:31,505 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2023-11-21 20:58:31,505 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=75, Invalid=431, Unknown=0, NotChecked=0, Total=506 [2023-11-21 20:58:31,506 INFO L87 Difference]: Start difference. First operand 338 states and 406 transitions. Second operand has 23 states, 19 states have (on average 5.2105263157894735) internal successors, (99), 15 states have internal predecessors, (99), 7 states have call successors, (21), 9 states have call predecessors, (21), 9 states have return successors, (20), 10 states have call predecessors, (20), 6 states have call successors, (20) [2023-11-21 20:58:33,771 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 20:58:33,772 INFO L93 Difference]: Finished difference Result 817 states and 1041 transitions. [2023-11-21 20:58:33,772 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 46 states. [2023-11-21 20:58:33,772 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 19 states have (on average 5.2105263157894735) internal successors, (99), 15 states have internal predecessors, (99), 7 states have call successors, (21), 9 states have call predecessors, (21), 9 states have return successors, (20), 10 states have call predecessors, (20), 6 states have call successors, (20) Word has length 71 [2023-11-21 20:58:33,773 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 20:58:33,773 INFO L225 Difference]: With dead ends: 817 [2023-11-21 20:58:33,773 INFO L226 Difference]: Without dead ends: 0 [2023-11-21 20:58:33,777 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 224 GetRequests, 160 SyntacticMatches, 0 SemanticMatches, 64 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1012 ImplicationChecksByTransitivity, 1.4s TimeCoverageRelationStatistics Valid=765, Invalid=3525, Unknown=0, NotChecked=0, Total=4290 [2023-11-21 20:58:33,778 INFO L413 NwaCegarLoop]: 52 mSDtfsCounter, 332 mSDsluCounter, 510 mSDsCounter, 0 mSdLazyCounter, 1290 mSolverCounterSat, 186 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 333 SdHoareTripleChecker+Valid, 562 SdHoareTripleChecker+Invalid, 1476 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 186 IncrementalHoareTripleChecker+Valid, 1290 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2023-11-21 20:58:33,778 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [333 Valid, 562 Invalid, 1476 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [186 Valid, 1290 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2023-11-21 20:58:33,779 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-21 20:58:33,779 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-21 20:58:33,779 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 20:58:33,779 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-21 20:58:33,780 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 71 [2023-11-21 20:58:33,780 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 20:58:33,780 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-21 20:58:33,780 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 19 states have (on average 5.2105263157894735) internal successors, (99), 15 states have internal predecessors, (99), 7 states have call successors, (21), 9 states have call predecessors, (21), 9 states have return successors, (20), 10 states have call predecessors, (20), 6 states have call successors, (20) [2023-11-21 20:58:33,780 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-21 20:58:33,780 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-21 20:58:33,783 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-21 20:58:33,810 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2023-11-21 20:58:34,004 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 20:58:34,006 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-21 20:58:37,388 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 183 190) no Hoare annotation was computed. [2023-11-21 20:58:37,389 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 183 190) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= 0 ~systemActive~0)) [2023-11-21 20:58:37,389 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 98 104) no Hoare annotation was computed. [2023-11-21 20:58:37,389 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 98 104) the Hoare annotation is: true [2023-11-21 20:58:37,389 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 938 949) the Hoare annotation is: (let ((.cse1 (not (= |old(~methaneLevelCritical~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse2 (not (= ~methAndRunningLastTime~0 0)))) (and (or (not (= ~pumpRunning~0 0)) (< ~waterLevel~0 1) .cse0 (and .cse1 (not (= |old(~methaneLevelCritical~0)| 1))) (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0) .cse2) (or .cse1 (= ~methaneLevelCritical~0 0) .cse0 (not (= ~pumpRunning~0 1)) (< ~waterLevel~0 2) .cse2))) [2023-11-21 20:58:37,389 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 938 949) no Hoare annotation was computed. [2023-11-21 20:58:37,390 INFO L902 garLoopResultBuilder]: At program point L417(line 417) the Hoare annotation is: true [2023-11-21 20:58:37,390 INFO L899 garLoopResultBuilder]: For program point L417-1(line 417) no Hoare annotation was computed. [2023-11-21 20:58:37,390 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 411 440) no Hoare annotation was computed. [2023-11-21 20:58:37,390 INFO L899 garLoopResultBuilder]: For program point L436(lines 411 440) no Hoare annotation was computed. [2023-11-21 20:58:37,390 INFO L899 garLoopResultBuilder]: For program point L432(line 432) no Hoare annotation was computed. [2023-11-21 20:58:37,390 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 411 440) the Hoare annotation is: true [2023-11-21 20:58:37,390 INFO L899 garLoopResultBuilder]: For program point L425(lines 425 429) no Hoare annotation was computed. [2023-11-21 20:58:37,390 INFO L902 garLoopResultBuilder]: At program point L425-1(lines 425 429) the Hoare annotation is: true [2023-11-21 20:58:37,390 INFO L902 garLoopResultBuilder]: At program point L421-2(lines 421 435) the Hoare annotation is: true [2023-11-21 20:58:37,390 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 950 958) the Hoare annotation is: true [2023-11-21 20:58:37,391 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 950 958) no Hoare annotation was computed. [2023-11-21 20:58:37,391 INFO L899 garLoopResultBuilder]: For program point L386-1(line 386) no Hoare annotation was computed. [2023-11-21 20:58:37,391 INFO L895 garLoopResultBuilder]: At program point L151(line 151) the Hoare annotation is: (let ((.cse4 (= |old(~pumpRunning~0)| 0))) (let ((.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse3 (not (= 1 ~systemActive~0))) (.cse0 (not .cse4))) (and (or .cse0 .cse1 (< |old(~waterLevel~0)| 1) .cse2 .cse3 (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse1 .cse2 .cse3 (< |old(~waterLevel~0)| 2) .cse4) (or .cse0 (not (= 0 ~systemActive~0)))))) [2023-11-21 20:58:37,391 INFO L899 garLoopResultBuilder]: For program point L151-1(lines 132 156) no Hoare annotation was computed. [2023-11-21 20:58:37,391 INFO L899 garLoopResultBuilder]: For program point L85-1(lines 85 91) no Hoare annotation was computed. [2023-11-21 20:58:37,391 INFO L899 garLoopResultBuilder]: For program point L78-1(lines 77 96) no Hoare annotation was computed. [2023-11-21 20:58:37,391 INFO L899 garLoopResultBuilder]: For program point L140(lines 140 148) no Hoare annotation was computed. [2023-11-21 20:58:37,392 INFO L899 garLoopResultBuilder]: For program point L136(lines 136 153) no Hoare annotation was computed. [2023-11-21 20:58:37,392 INFO L899 garLoopResultBuilder]: For program point L392(lines 392 402) no Hoare annotation was computed. [2023-11-21 20:58:37,392 INFO L899 garLoopResultBuilder]: For program point L388(lines 388 405) no Hoare annotation was computed. [2023-11-21 20:58:37,392 INFO L899 garLoopResultBuilder]: For program point L388-1(lines 380 408) no Hoare annotation was computed. [2023-11-21 20:58:37,392 INFO L899 garLoopResultBuilder]: For program point L54(line 54) no Hoare annotation was computed. [2023-11-21 20:58:37,392 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 74 97) the Hoare annotation is: (let ((.cse5 (= ~methAndRunningLastTime~0 0)) (.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse3 (not (= 1 ~systemActive~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (= ~pumpRunning~0 0)) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or .cse0 .cse1 (< |old(~waterLevel~0)| 1) .cse2 .cse3 (and .cse4 .cse5 .cse6)) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse5 .cse6) .cse1 .cse2 .cse3 (< |old(~waterLevel~0)| 2)) (or .cse0 (and .cse4 .cse6 (= |old(~methAndRunningLastTime~0)| ~methAndRunningLastTime~0)) (not (= 0 ~systemActive~0))))) [2023-11-21 20:58:37,392 INFO L899 garLoopResultBuilder]: For program point L393(lines 393 399) no Hoare annotation was computed. [2023-11-21 20:58:37,393 INFO L895 garLoopResultBuilder]: At program point L146(line 146) the Hoare annotation is: (let ((.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse3 (not (= 1 ~systemActive~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 .cse1 (< |old(~waterLevel~0)| 1) .cse2 .cse3) (or .cse1 .cse2 .cse3 (< |old(~waterLevel~0)| 2)) (or .cse0 (not (= 0 ~systemActive~0))))) [2023-11-21 20:58:37,393 INFO L895 garLoopResultBuilder]: At program point L142(line 142) the Hoare annotation is: (let ((.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse3 (not (= 1 ~systemActive~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 .cse1 (< |old(~waterLevel~0)| 1) .cse2 .cse3) (or .cse1 .cse2 .cse3 (< |old(~waterLevel~0)| 2) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) (<= 1 |timeShift_processEnvironment_~tmp~1#1|))) (or .cse0 (not (= 0 ~systemActive~0))))) [2023-11-21 20:58:37,393 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 74 97) no Hoare annotation was computed. [2023-11-21 20:58:37,393 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 54) no Hoare annotation was computed. [2023-11-21 20:58:37,394 INFO L895 garLoopResultBuilder]: At program point L386(line 386) the Hoare annotation is: (let ((.cse9 (= ~methaneLevelCritical~0 0))) (let ((.cse8 (not .cse9)) (.cse10 (= |old(~pumpRunning~0)| 0))) (let ((.cse2 (not (= 0 ~systemActive~0))) (.cse0 (not .cse10)) (.cse4 (= ~methAndRunningLastTime~0 0)) (.cse3 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse7 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse5 (and .cse8 (not (= ~methaneLevelCritical~0 1)))) (.cse6 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2) (or .cse0 .cse3 .cse4 .cse2) (or .cse0 .cse3 (< |old(~waterLevel~0)| 1) .cse5 .cse6 (and .cse4 (<= 2 ~waterLevel~0) .cse7 (or (and .cse1 .cse8) (and .cse9 (= ~pumpRunning~0 1)))) (and .cse1 (<= ~waterLevel~0 1) .cse7 (= |old(~methAndRunningLastTime~0)| ~methAndRunningLastTime~0))) (or .cse3 (and .cse1 (<= 1 ~waterLevel~0) (or (< ~waterLevel~0 |old(~waterLevel~0)|) .cse7)) .cse5 .cse6 (< |old(~waterLevel~0)| 2) .cse10))))) [2023-11-21 20:58:37,394 INFO L895 garLoopResultBuilder]: At program point L362(lines 313 363) the Hoare annotation is: false [2023-11-21 20:58:37,394 INFO L899 garLoopResultBuilder]: For program point L350(lines 350 356) no Hoare annotation was computed. [2023-11-21 20:58:37,394 INFO L895 garLoopResultBuilder]: At program point L350-2(lines 344 357) the Hoare annotation is: (let ((.cse0 (= ~methAndRunningLastTime~0 0)) (.cse1 (or (= ~methaneLevelCritical~0 0) (= ~methaneLevelCritical~0 1))) (.cse2 (= 1 ~systemActive~0)) (.cse4 (= ~pumpRunning~0 0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse4 .cse0 .cse1 .cse2 .cse3 (<= 1 ~waterLevel~0)) (and .cse4 .cse3 (= 0 ~systemActive~0)))) [2023-11-21 20:58:37,394 INFO L899 garLoopResultBuilder]: For program point L334(lines 334 340) no Hoare annotation was computed. [2023-11-21 20:58:37,394 INFO L899 garLoopResultBuilder]: For program point L334-1(lines 334 340) no Hoare annotation was computed. [2023-11-21 20:58:37,395 INFO L895 garLoopResultBuilder]: At program point L359(lines 314 361) the Hoare annotation is: (let ((.cse1 (= ~methaneLevelCritical~0 0)) (.cse2 (= 1 ~systemActive~0)) (.cse4 (= ~pumpRunning~0 0)) (.cse0 (= ~methAndRunningLastTime~0 0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3 (= ~pumpRunning~0 1)) (and .cse4 .cse0 (or .cse1 (= ~methaneLevelCritical~0 1)) .cse2 .cse3 (<= 1 ~waterLevel~0)) (and .cse4 .cse0 .cse3 (= 0 ~systemActive~0)))) [2023-11-21 20:58:37,395 INFO L895 garLoopResultBuilder]: At program point L326(line 326) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 0)) (.cse2 (<= 2 ~waterLevel~0)) (.cse0 (= ~methAndRunningLastTime~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~methaneLevelCritical~0 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~pumpRunning~0 1)) (and .cse5 .cse0 .cse4 (= 0 ~systemActive~0)) (and .cse5 (or (and .cse0 .cse2 .cse3 .cse4) (and .cse0 .cse3 .cse4 (= ~waterLevel~0 1))) (or .cse1 (= ~methaneLevelCritical~0 1))))) [2023-11-21 20:58:37,395 INFO L899 garLoopResultBuilder]: For program point L289(lines 289 295) no Hoare annotation was computed. [2023-11-21 20:58:37,395 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-21 20:58:37,395 INFO L899 garLoopResultBuilder]: For program point L289-1(lines 289 295) no Hoare annotation was computed. [2023-11-21 20:58:37,395 INFO L899 garLoopResultBuilder]: For program point L496(lines 496 503) no Hoare annotation was computed. [2023-11-21 20:58:37,396 INFO L899 garLoopResultBuilder]: For program point L496-2(lines 496 503) no Hoare annotation was computed. [2023-11-21 20:58:37,396 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-21 20:58:37,396 INFO L899 garLoopResultBuilder]: For program point L315(lines 314 361) no Hoare annotation was computed. [2023-11-21 20:58:37,396 INFO L899 garLoopResultBuilder]: For program point L344(lines 344 357) no Hoare annotation was computed. [2023-11-21 20:58:37,396 INFO L895 garLoopResultBuilder]: At program point L336(line 336) the Hoare annotation is: (let ((.cse5 (= ~methaneLevelCritical~0 0))) (let ((.cse2 (or .cse5 (= ~methaneLevelCritical~0 1))) (.cse6 (<= 2 ~waterLevel~0)) (.cse3 (= 1 ~systemActive~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse1 (= ~methAndRunningLastTime~0 0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~waterLevel~0 1)) (and .cse1 .cse5 .cse6 .cse3 .cse4 (= ~pumpRunning~0 1)) (and .cse0 .cse1 .cse2 .cse6 .cse3 .cse4) (and .cse0 .cse1 .cse4 (= 0 ~systemActive~0))))) [2023-11-21 20:58:37,396 INFO L899 garLoopResultBuilder]: For program point L365(lines 304 369) no Hoare annotation was computed. [2023-11-21 20:58:37,396 INFO L899 garLoopResultBuilder]: For program point L324(lines 324 330) no Hoare annotation was computed. [2023-11-21 20:58:37,396 INFO L899 garLoopResultBuilder]: For program point L324-1(lines 324 330) no Hoare annotation was computed. [2023-11-21 20:58:37,397 INFO L895 garLoopResultBuilder]: At program point L291(line 291) the Hoare annotation is: (and (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (not (= 0 ~systemActive~0))) [2023-11-21 20:58:37,397 INFO L895 garLoopResultBuilder]: At program point L120(line 120) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1)))) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (not (= ~methAndRunningLastTime~0 0)))) (and (or .cse0 .cse1 .cse2 (< ~waterLevel~0 2) .cse3) (or .cse0 .cse1 .cse2 (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~0#1| 0)) .cse3))) [2023-11-21 20:58:37,397 INFO L899 garLoopResultBuilder]: For program point L114(lines 114 122) no Hoare annotation was computed. [2023-11-21 20:58:37,397 INFO L899 garLoopResultBuilder]: For program point L110(lines 110 127) no Hoare annotation was computed. [2023-11-21 20:58:37,397 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 106 130) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1))) (not (= 1 ~systemActive~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-21 20:58:37,397 INFO L895 garLoopResultBuilder]: At program point L125(line 125) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1))) (not (= 1 ~systemActive~0)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-21 20:58:37,397 INFO L899 garLoopResultBuilder]: For program point L125-1(lines 106 130) no Hoare annotation was computed. [2023-11-21 20:58:37,398 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 106 130) no Hoare annotation was computed. [2023-11-21 20:58:37,398 INFO L895 garLoopResultBuilder]: At program point L196(line 196) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (and (not (= ~methaneLevelCritical~0 0)) (not (= ~methaneLevelCritical~0 1))) (not (= 1 ~systemActive~0)) (and (= ~pumpRunning~0 0) (<= 2 ~waterLevel~0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~0#1| 1)) (not (= ~methAndRunningLastTime~0 0))) [2023-11-21 20:58:37,398 INFO L899 garLoopResultBuilder]: For program point L196-1(line 196) no Hoare annotation was computed. [2023-11-21 20:58:37,398 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 926 937) no Hoare annotation was computed. [2023-11-21 20:58:37,398 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 926 937) the Hoare annotation is: (let ((.cse5 (not (= ~pumpRunning~0 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (< |old(~waterLevel~0)| 2)) (.cse4 (not (= ~methAndRunningLastTime~0 0)))) (let ((.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (and (or .cse5 (not (= |old(~waterLevel~0)| 1)) .cse0 .cse4) (or .cse5 .cse0 .cse1 .cse4)))) (and (or .cse0 .cse1 .cse2 (not (= ~pumpRunning~0 1)) .cse3 .cse4) (or .cse5 .cse3 .cse4 (not (= 0 ~systemActive~0))) (or (not (= ~methaneLevelCritical~0 1)) .cse3 .cse6) (or .cse2 .cse3 .cse6)))) [2023-11-21 20:58:37,401 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 20:58:37,403 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-21 20:58:37,421 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.11 08:58:37 BoogieIcfgContainer [2023-11-21 20:58:37,421 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-21 20:58:37,422 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-21 20:58:37,422 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-21 20:58:37,422 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-21 20:58:37,424 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 08:58:21" (3/4) ... [2023-11-21 20:58:37,426 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-21 20:58:37,429 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-21 20:58:37,429 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-21 20:58:37,429 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-21 20:58:37,429 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-21 20:58:37,429 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2023-11-21 20:58:37,430 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-21 20:58:37,430 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 20:58:37,430 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-21 20:58:37,440 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 46 nodes and edges [2023-11-21 20:58:37,441 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2023-11-21 20:58:37,442 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-21 20:58:37,443 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-21 20:58:37,444 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-21 20:58:37,474 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || (!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1)))) || !((1 == systemActive))) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel))) && (((((((pumpRunning == \old(pumpRunning)) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel)) || !((\old(methAndRunningLastTime) == 0))) || (!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1)))) || !((1 == systemActive))) || (\old(waterLevel) < 2))) && ((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (\old(waterLevel) == waterLevel)) && (\old(methAndRunningLastTime) == methAndRunningLastTime))) || !((0 == systemActive)))) [2023-11-21 20:58:37,512 WARN L141 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || (!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1)))) || !((1 == systemActive))) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel))) && (((((((pumpRunning == \old(pumpRunning)) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel)) || !((\old(methAndRunningLastTime) == 0))) || (!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1)))) || !((1 == systemActive))) || (\old(waterLevel) < 2))) && ((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (\old(waterLevel) == waterLevel)) && (\old(methAndRunningLastTime) == methAndRunningLastTime))) || !((0 == systemActive)))) [2023-11-21 20:58:37,565 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/witness.graphml [2023-11-21 20:58:37,565 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/witness.yml [2023-11-21 20:58:37,565 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-21 20:58:37,566 INFO L158 Benchmark]: Toolchain (without parser) took 17447.80ms. Allocated memory was 148.9MB in the beginning and 323.0MB in the end (delta: 174.1MB). Free memory was 106.2MB in the beginning and 225.7MB in the end (delta: -119.5MB). Peak memory consumption was 55.7MB. Max. memory is 16.1GB. [2023-11-21 20:58:37,566 INFO L158 Benchmark]: CDTParser took 0.37ms. Allocated memory is still 109.1MB. Free memory is still 58.8MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-21 20:58:37,567 INFO L158 Benchmark]: CACSL2BoogieTranslator took 543.90ms. Allocated memory is still 148.9MB. Free memory was 106.2MB in the beginning and 86.4MB in the end (delta: 19.8MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-21 20:58:37,567 INFO L158 Benchmark]: Boogie Procedure Inliner took 69.81ms. Allocated memory is still 148.9MB. Free memory was 86.4MB in the beginning and 83.9MB in the end (delta: 2.5MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2023-11-21 20:58:37,567 INFO L158 Benchmark]: Boogie Preprocessor took 62.62ms. Allocated memory is still 148.9MB. Free memory was 83.9MB in the beginning and 81.4MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-21 20:58:37,568 INFO L158 Benchmark]: RCFGBuilder took 843.85ms. Allocated memory is still 148.9MB. Free memory was 81.4MB in the beginning and 94.6MB in the end (delta: -13.2MB). Peak memory consumption was 4.8MB. Max. memory is 16.1GB. [2023-11-21 20:58:37,568 INFO L158 Benchmark]: TraceAbstraction took 15776.45ms. Allocated memory was 148.9MB in the beginning and 323.0MB in the end (delta: 174.1MB). Free memory was 93.3MB in the beginning and 234.1MB in the end (delta: -140.7MB). Peak memory consumption was 128.6MB. Max. memory is 16.1GB. [2023-11-21 20:58:37,569 INFO L158 Benchmark]: Witness Printer took 143.90ms. Allocated memory is still 323.0MB. Free memory was 233.0MB in the beginning and 225.7MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2023-11-21 20:58:37,571 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.37ms. Allocated memory is still 109.1MB. Free memory is still 58.8MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 543.90ms. Allocated memory is still 148.9MB. Free memory was 106.2MB in the beginning and 86.4MB in the end (delta: 19.8MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 69.81ms. Allocated memory is still 148.9MB. Free memory was 86.4MB in the beginning and 83.9MB in the end (delta: 2.5MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Boogie Preprocessor took 62.62ms. Allocated memory is still 148.9MB. Free memory was 83.9MB in the beginning and 81.4MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 843.85ms. Allocated memory is still 148.9MB. Free memory was 81.4MB in the beginning and 94.6MB in the end (delta: -13.2MB). Peak memory consumption was 4.8MB. Max. memory is 16.1GB. * TraceAbstraction took 15776.45ms. Allocated memory was 148.9MB in the beginning and 323.0MB in the end (delta: 174.1MB). Free memory was 93.3MB in the beginning and 234.1MB in the end (delta: -140.7MB). Peak memory consumption was 128.6MB. Max. memory is 16.1GB. * Witness Printer took 143.90ms. Allocated memory is still 323.0MB. Free memory was 233.0MB in the beginning and 225.7MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] - GenericResultAtLocation [Line: 300]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [300] - GenericResultAtLocation [Line: 370]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [370] - GenericResultAtLocation [Line: 409]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [409] - GenericResultAtLocation [Line: 509]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [509] - GenericResultAtLocation [Line: 544]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [544] - GenericResultAtLocation [Line: 910]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [910] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 66 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 15.7s, OverallIterations: 11, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 5.2s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 3.4s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1251 SdHoareTripleChecker+Valid, 2.5s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1223 mSDsluCounter, 2155 SdHoareTripleChecker+Invalid, 2.1s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1555 mSDsCounter, 548 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 2605 IncrementalHoareTripleChecker+Invalid, 3153 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 548 mSolverCounterUnsat, 600 mSDtfsCounter, 2605 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 793 GetRequests, 618 SyntacticMatches, 8 SemanticMatches, 167 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1504 ImplicationChecksByTransitivity, 2.7s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=418occurred in iteration=5, InterpolantAutomatonStates: 135, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 11 MinimizatonAttempts, 179 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 24 LocationsWithAnnotation, 834 PreInvPairs, 937 NumberOfFragments, 1002 HoareAnnotationTreeSize, 834 FomulaSimplifications, 12374 FormulaSimplificationTreeSizeReduction, 0.6s HoareSimplificationTime, 24 FomulaSimplificationsInter, 9823 FormulaSimplificationTreeSizeReductionInter, 2.7s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 4.3s InterpolantComputationTime, 834 NumberOfCodeBlocks, 834 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 1021 ConstructedInterpolants, 0 QuantifiedInterpolants, 2844 SizeOfPredicates, 23 NumberOfNonLiveVariables, 1423 ConjunctsInSsa, 79 ConjunctsInUnsatCore, 19 InterpolantComputations, 9 PerfectInterpolantSequences, 416/448 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 313]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 314]: Loop Invariant Derived loop invariant: ((((((((methAndRunningLastTime == 0) && (methaneLevelCritical == 0)) && (2 <= waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0)) && (pumpRunning == 1)) || ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && ((methaneLevelCritical == 0) || (methaneLevelCritical == 1))) && (1 == systemActive)) && (splverifierCounter == 0)) && (1 <= waterLevel))) || ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (splverifierCounter == 0)) && (0 == systemActive))) - InvariantResult [Line: 74]: Loop Invariant Derived loop invariant: (((((((!((\old(pumpRunning) == 0)) || !((\old(methAndRunningLastTime) == 0))) || (\old(waterLevel) < 1)) || (!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1)))) || !((1 == systemActive))) || (((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel))) && (((((((pumpRunning == \old(pumpRunning)) && (methAndRunningLastTime == 0)) && (\old(waterLevel) == waterLevel)) || !((\old(methAndRunningLastTime) == 0))) || (!((methaneLevelCritical == 0)) && !((methaneLevelCritical == 1)))) || !((1 == systemActive))) || (\old(waterLevel) < 2))) && ((!((\old(pumpRunning) == 0)) || (((pumpRunning == 0) && (\old(waterLevel) == waterLevel)) && (\old(methAndRunningLastTime) == methAndRunningLastTime))) || !((0 == systemActive)))) RESULT: Ultimate proved your program to be correct! [2023-11-21 20:58:37,611 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_352e15c2-6594-4e41-9611-8abd9df58117/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE