./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 527bcce2 Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash e91d5c860cfea17112af53939b2fffb1e4c536355098377ab18c754994d1bc2b --- Real Ultimate output --- This is Ultimate 0.2.3-dev-527bcce [2023-11-21 22:27:53,874 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-21 22:27:54,000 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-21 22:27:54,009 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-21 22:27:54,012 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-21 22:27:54,048 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-21 22:27:54,049 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-21 22:27:54,049 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-21 22:27:54,050 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-21 22:27:54,051 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-21 22:27:54,052 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-21 22:27:54,053 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-21 22:27:54,054 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-21 22:27:54,055 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-21 22:27:54,055 INFO L153 SettingsManager]: * Use SBE=true [2023-11-21 22:27:54,056 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-21 22:27:54,057 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-21 22:27:54,057 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-21 22:27:54,058 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-21 22:27:54,058 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-21 22:27:54,059 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-21 22:27:54,060 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-21 22:27:54,060 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-21 22:27:54,061 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-21 22:27:54,062 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-21 22:27:54,062 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-21 22:27:54,063 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-21 22:27:54,064 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-21 22:27:54,064 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-21 22:27:54,065 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-21 22:27:54,065 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-21 22:27:54,086 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-21 22:27:54,087 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-21 22:27:54,087 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-21 22:27:54,088 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-21 22:27:54,089 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-21 22:27:54,089 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-21 22:27:54,090 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-21 22:27:54,090 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-21 22:27:54,091 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-21 22:27:54,091 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-21 22:27:54,092 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-21 22:27:54,092 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> e91d5c860cfea17112af53939b2fffb1e4c536355098377ab18c754994d1bc2b [2023-11-21 22:27:54,383 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-21 22:27:54,419 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-21 22:27:54,422 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-21 22:27:54,424 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-21 22:27:54,424 INFO L274 PluginConnector]: CDTParser initialized [2023-11-21 22:27:54,426 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/../../sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c [2023-11-21 22:27:57,563 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-21 22:27:57,798 INFO L384 CDTParser]: Found 1 translation units. [2023-11-21 22:27:57,806 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c [2023-11-21 22:27:57,822 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/data/50337766d/d26464b09fe947279d754e8205e37e53/FLAG958a8dd7c [2023-11-21 22:27:57,837 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/data/50337766d/d26464b09fe947279d754e8205e37e53 [2023-11-21 22:27:57,840 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-21 22:27:57,842 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-21 22:27:57,843 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-21 22:27:57,844 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-21 22:27:57,849 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-21 22:27:57,850 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 10:27:57" (1/1) ... [2023-11-21 22:27:57,852 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@63b34b8d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:57, skipping insertion in model container [2023-11-21 22:27:57,852 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.11 10:27:57" (1/1) ... [2023-11-21 22:27:57,924 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-21 22:27:58,217 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c[15987,16000] [2023-11-21 22:27:58,258 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-21 22:27:58,270 INFO L202 MainTranslator]: Completed pre-run [2023-11-21 22:27:58,284 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [49] [2023-11-21 22:27:58,286 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [415] [2023-11-21 22:27:58,287 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [484] [2023-11-21 22:27:58,287 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [717] [2023-11-21 22:27:58,287 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [755] [2023-11-21 22:27:58,288 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [764] [2023-11-21 22:27:58,288 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [868] [2023-11-21 22:27:58,293 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [894] [2023-11-21 22:27:58,346 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/sv-benchmarks/c/product-lines/minepump_spec4_product53.cil.c[15987,16000] [2023-11-21 22:27:58,355 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-21 22:27:58,376 INFO L206 MainTranslator]: Completed translation [2023-11-21 22:27:58,377 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58 WrapperNode [2023-11-21 22:27:58,377 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-21 22:27:58,379 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-21 22:27:58,379 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-21 22:27:58,379 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-21 22:27:58,387 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,402 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,448 INFO L138 Inliner]: procedures = 56, calls = 102, calls flagged for inlining = 24, calls inlined = 21, statements flattened = 228 [2023-11-21 22:27:58,448 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-21 22:27:58,449 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-21 22:27:58,449 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-21 22:27:58,450 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-21 22:27:58,460 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,460 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,463 INFO L184 PluginConnector]: Executing the observer HeapSplitter from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,477 INFO L187 HeapSplitter]: Split 2 memory accesses to 1 slices as follows [2] [2023-11-21 22:27:58,478 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,478 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,484 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,490 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,492 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,494 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,497 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-21 22:27:58,498 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-21 22:27:58,499 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-21 22:27:58,499 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-21 22:27:58,500 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (1/1) ... [2023-11-21 22:27:58,538 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2023-11-21 22:27:58,557 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 22:27:58,570 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2023-11-21 22:27:58,599 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2023-11-21 22:27:58,629 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-21 22:27:58,629 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-21 22:27:58,629 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-21 22:27:58,630 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-21 22:27:58,630 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-21 22:27:58,630 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-21 22:27:58,630 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-21 22:27:58,630 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 22:27:58,630 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 22:27:58,630 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-21 22:27:58,631 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-21 22:27:58,631 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__lowWaterSensor [2023-11-21 22:27:58,631 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__lowWaterSensor [2023-11-21 22:27:58,631 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-21 22:27:58,631 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-21 22:27:58,631 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-21 22:27:58,631 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-21 22:27:58,632 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-21 22:27:58,632 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-21 22:27:58,632 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-21 22:27:58,714 INFO L240 CfgBuilder]: Building ICFG [2023-11-21 22:27:58,716 INFO L266 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-21 22:27:59,064 INFO L281 CfgBuilder]: Performing block encoding [2023-11-21 22:27:59,258 INFO L303 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-21 22:27:59,258 INFO L308 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-21 22:27:59,260 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 10:27:59 BoogieIcfgContainer [2023-11-21 22:27:59,260 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-21 22:27:59,264 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-21 22:27:59,264 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-21 22:27:59,267 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-21 22:27:59,268 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.11 10:27:57" (1/3) ... [2023-11-21 22:27:59,269 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@38e0df11 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 10:27:59, skipping insertion in model container [2023-11-21 22:27:59,269 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.11 10:27:58" (2/3) ... [2023-11-21 22:27:59,269 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@38e0df11 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.11 10:27:59, skipping insertion in model container [2023-11-21 22:27:59,270 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 10:27:59" (3/3) ... [2023-11-21 22:27:59,271 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product53.cil.c [2023-11-21 22:27:59,293 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-21 22:27:59,293 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-21 22:27:59,349 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-21 22:27:59,356 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@fd2c502, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-21 22:27:59,356 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-21 22:27:59,361 INFO L276 IsEmpty]: Start isEmpty. Operand has 62 states, 38 states have (on average 1.4473684210526316) internal successors, (55), 48 states have internal predecessors, (55), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 9 states have call predecessors, (14), 14 states have call successors, (14) [2023-11-21 22:27:59,368 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2023-11-21 22:27:59,369 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:27:59,369 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:27:59,370 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:27:59,375 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:27:59,375 INFO L85 PathProgramCache]: Analyzing trace with hash -1061095491, now seen corresponding path program 1 times [2023-11-21 22:27:59,383 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:27:59,383 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1026800384] [2023-11-21 22:27:59,383 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:27:59,384 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:27:59,479 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:27:59,543 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:27:59,543 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:27:59,544 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1026800384] [2023-11-21 22:27:59,544 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1026800384] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:27:59,545 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:27:59,545 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-21 22:27:59,547 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [866608542] [2023-11-21 22:27:59,548 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:27:59,552 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-21 22:27:59,552 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:27:59,597 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-21 22:27:59,598 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-21 22:27:59,601 INFO L87 Difference]: Start difference. First operand has 62 states, 38 states have (on average 1.4473684210526316) internal successors, (55), 48 states have internal predecessors, (55), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 9 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 22:27:59,673 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:27:59,673 INFO L93 Difference]: Finished difference Result 122 states and 167 transitions. [2023-11-21 22:27:59,674 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-21 22:27:59,676 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 12 [2023-11-21 22:27:59,676 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:27:59,686 INFO L225 Difference]: With dead ends: 122 [2023-11-21 22:27:59,686 INFO L226 Difference]: Without dead ends: 57 [2023-11-21 22:27:59,690 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-21 22:27:59,694 INFO L413 NwaCegarLoop]: 62 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 62 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-21 22:27:59,695 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 62 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-21 22:27:59,714 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 57 states. [2023-11-21 22:27:59,736 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 57 to 57. [2023-11-21 22:27:59,738 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 57 states, 35 states have (on average 1.3428571428571427) internal successors, (47), 44 states have internal predecessors, (47), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 8 states have call predecessors, (13), 13 states have call successors, (13) [2023-11-21 22:27:59,741 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 57 states to 57 states and 74 transitions. [2023-11-21 22:27:59,742 INFO L78 Accepts]: Start accepts. Automaton has 57 states and 74 transitions. Word has length 12 [2023-11-21 22:27:59,743 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:27:59,743 INFO L495 AbstractCegarLoop]: Abstraction has 57 states and 74 transitions. [2023-11-21 22:27:59,743 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 22:27:59,744 INFO L276 IsEmpty]: Start isEmpty. Operand 57 states and 74 transitions. [2023-11-21 22:27:59,745 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 14 [2023-11-21 22:27:59,746 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:27:59,746 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:27:59,746 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-21 22:27:59,747 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:27:59,747 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:27:59,748 INFO L85 PathProgramCache]: Analyzing trace with hash -532686779, now seen corresponding path program 1 times [2023-11-21 22:27:59,748 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:27:59,748 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [597734050] [2023-11-21 22:27:59,748 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:27:59,749 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:27:59,768 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:27:59,890 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:27:59,891 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:27:59,891 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [597734050] [2023-11-21 22:27:59,891 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [597734050] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:27:59,892 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:27:59,892 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 22:27:59,892 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1713571056] [2023-11-21 22:27:59,893 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:27:59,895 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-21 22:27:59,895 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:27:59,896 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-21 22:27:59,902 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 22:27:59,902 INFO L87 Difference]: Start difference. First operand 57 states and 74 transitions. Second operand has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 22:27:59,985 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:27:59,985 INFO L93 Difference]: Finished difference Result 91 states and 119 transitions. [2023-11-21 22:27:59,986 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-21 22:27:59,986 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 13 [2023-11-21 22:27:59,987 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:27:59,988 INFO L225 Difference]: With dead ends: 91 [2023-11-21 22:27:59,988 INFO L226 Difference]: Without dead ends: 49 [2023-11-21 22:27:59,989 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-21 22:27:59,991 INFO L413 NwaCegarLoop]: 48 mSDtfsCounter, 7 mSDsluCounter, 39 mSDsCounter, 0 mSdLazyCounter, 27 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 87 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 27 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-21 22:27:59,991 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 87 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 27 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-21 22:27:59,993 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 49 states. [2023-11-21 22:28:00,000 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 49 to 49. [2023-11-21 22:28:00,001 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 49 states, 30 states have (on average 1.3666666666666667) internal successors, (41), 39 states have internal predecessors, (41), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 6 states have call predecessors, (11), 11 states have call successors, (11) [2023-11-21 22:28:00,002 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 49 states to 49 states and 63 transitions. [2023-11-21 22:28:00,003 INFO L78 Accepts]: Start accepts. Automaton has 49 states and 63 transitions. Word has length 13 [2023-11-21 22:28:00,003 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:28:00,003 INFO L495 AbstractCegarLoop]: Abstraction has 49 states and 63 transitions. [2023-11-21 22:28:00,003 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 22:28:00,004 INFO L276 IsEmpty]: Start isEmpty. Operand 49 states and 63 transitions. [2023-11-21 22:28:00,005 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 16 [2023-11-21 22:28:00,005 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:28:00,005 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:28:00,005 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-21 22:28:00,006 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:28:00,006 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:28:00,006 INFO L85 PathProgramCache]: Analyzing trace with hash -1939044968, now seen corresponding path program 1 times [2023-11-21 22:28:00,007 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:28:00,007 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [467600497] [2023-11-21 22:28:00,007 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:00,008 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:28:00,058 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:00,211 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:28:00,211 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:28:00,212 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [467600497] [2023-11-21 22:28:00,212 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [467600497] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:28:00,212 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:28:00,212 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-21 22:28:00,213 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1366116909] [2023-11-21 22:28:00,213 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:28:00,213 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-21 22:28:00,213 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:28:00,214 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-21 22:28:00,214 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-21 22:28:00,215 INFO L87 Difference]: Start difference. First operand 49 states and 63 transitions. Second operand has 4 states, 4 states have (on average 3.5) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 22:28:00,359 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:28:00,360 INFO L93 Difference]: Finished difference Result 96 states and 125 transitions. [2023-11-21 22:28:00,361 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-21 22:28:00,361 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 3.5) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 15 [2023-11-21 22:28:00,362 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:28:00,364 INFO L225 Difference]: With dead ends: 96 [2023-11-21 22:28:00,366 INFO L226 Difference]: Without dead ends: 49 [2023-11-21 22:28:00,367 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-11-21 22:28:00,371 INFO L413 NwaCegarLoop]: 43 mSDtfsCounter, 59 mSDsluCounter, 18 mSDsCounter, 0 mSdLazyCounter, 50 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 59 SdHoareTripleChecker+Valid, 61 SdHoareTripleChecker+Invalid, 56 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 50 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-21 22:28:00,376 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [59 Valid, 61 Invalid, 56 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 50 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-21 22:28:00,377 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 49 states. [2023-11-21 22:28:00,385 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 49 to 49. [2023-11-21 22:28:00,388 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 49 states, 30 states have (on average 1.3333333333333333) internal successors, (40), 39 states have internal predecessors, (40), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 6 states have call predecessors, (11), 11 states have call successors, (11) [2023-11-21 22:28:00,391 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 49 states to 49 states and 62 transitions. [2023-11-21 22:28:00,391 INFO L78 Accepts]: Start accepts. Automaton has 49 states and 62 transitions. Word has length 15 [2023-11-21 22:28:00,391 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:28:00,392 INFO L495 AbstractCegarLoop]: Abstraction has 49 states and 62 transitions. [2023-11-21 22:28:00,392 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 3.5) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 22:28:00,392 INFO L276 IsEmpty]: Start isEmpty. Operand 49 states and 62 transitions. [2023-11-21 22:28:00,393 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2023-11-21 22:28:00,394 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:28:00,395 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:28:00,395 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-21 22:28:00,395 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:28:00,401 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:28:00,402 INFO L85 PathProgramCache]: Analyzing trace with hash 1007454223, now seen corresponding path program 1 times [2023-11-21 22:28:00,402 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:28:00,402 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [799808985] [2023-11-21 22:28:00,402 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:00,403 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:28:00,422 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:00,494 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-21 22:28:00,496 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:00,498 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:28:00,498 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:28:00,498 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [799808985] [2023-11-21 22:28:00,498 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [799808985] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:28:00,499 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:28:00,499 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-21 22:28:00,499 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1220367104] [2023-11-21 22:28:00,499 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:28:00,500 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-21 22:28:00,500 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:28:00,501 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-21 22:28:00,501 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-21 22:28:00,501 INFO L87 Difference]: Start difference. First operand 49 states and 62 transitions. Second operand has 5 states, 5 states have (on average 3.6) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:28:00,791 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:28:00,791 INFO L93 Difference]: Finished difference Result 169 states and 215 transitions. [2023-11-21 22:28:00,792 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-21 22:28:00,792 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 3.6) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 21 [2023-11-21 22:28:00,793 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:28:00,801 INFO L225 Difference]: With dead ends: 169 [2023-11-21 22:28:00,801 INFO L226 Difference]: Without dead ends: 122 [2023-11-21 22:28:00,803 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2023-11-21 22:28:00,813 INFO L413 NwaCegarLoop]: 50 mSDtfsCounter, 92 mSDsluCounter, 110 mSDsCounter, 0 mSdLazyCounter, 127 mSolverCounterSat, 46 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 95 SdHoareTripleChecker+Valid, 160 SdHoareTripleChecker+Invalid, 173 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 46 IncrementalHoareTripleChecker+Valid, 127 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-21 22:28:00,814 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [95 Valid, 160 Invalid, 173 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [46 Valid, 127 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-21 22:28:00,816 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 122 states. [2023-11-21 22:28:00,859 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 122 to 90. [2023-11-21 22:28:00,862 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 90 states, 56 states have (on average 1.3392857142857142) internal successors, (75), 71 states have internal predecessors, (75), 20 states have call successors, (20), 13 states have call predecessors, (20), 13 states have return successors, (20), 11 states have call predecessors, (20), 20 states have call successors, (20) [2023-11-21 22:28:00,869 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 90 states to 90 states and 115 transitions. [2023-11-21 22:28:00,869 INFO L78 Accepts]: Start accepts. Automaton has 90 states and 115 transitions. Word has length 21 [2023-11-21 22:28:00,870 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:28:00,870 INFO L495 AbstractCegarLoop]: Abstraction has 90 states and 115 transitions. [2023-11-21 22:28:00,870 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 3.6) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-21 22:28:00,870 INFO L276 IsEmpty]: Start isEmpty. Operand 90 states and 115 transitions. [2023-11-21 22:28:00,878 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2023-11-21 22:28:00,878 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:28:00,879 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:28:00,879 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-21 22:28:00,879 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:28:00,880 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:28:00,880 INFO L85 PathProgramCache]: Analyzing trace with hash -1325413766, now seen corresponding path program 1 times [2023-11-21 22:28:00,880 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:28:00,880 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1162564539] [2023-11-21 22:28:00,881 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:00,881 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:28:00,921 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:01,033 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-21 22:28:01,035 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:01,042 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-21 22:28:01,043 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:01,048 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:28:01,048 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:28:01,048 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1162564539] [2023-11-21 22:28:01,048 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1162564539] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:28:01,049 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:28:01,049 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-21 22:28:01,049 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1687112636] [2023-11-21 22:28:01,049 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:28:01,049 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-21 22:28:01,050 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:28:01,050 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-21 22:28:01,050 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-21 22:28:01,051 INFO L87 Difference]: Start difference. First operand 90 states and 115 transitions. Second operand has 6 states, 6 states have (on average 3.1666666666666665) internal successors, (19), 4 states have internal predecessors, (19), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-21 22:28:01,421 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:28:01,422 INFO L93 Difference]: Finished difference Result 285 states and 372 transitions. [2023-11-21 22:28:01,422 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2023-11-21 22:28:01,423 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.1666666666666665) internal successors, (19), 4 states have internal predecessors, (19), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 24 [2023-11-21 22:28:01,423 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:28:01,429 INFO L225 Difference]: With dead ends: 285 [2023-11-21 22:28:01,430 INFO L226 Difference]: Without dead ends: 197 [2023-11-21 22:28:01,454 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 24 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=60, Invalid=122, Unknown=0, NotChecked=0, Total=182 [2023-11-21 22:28:01,455 INFO L413 NwaCegarLoop]: 10 mSDtfsCounter, 118 mSDsluCounter, 30 mSDsCounter, 0 mSdLazyCounter, 236 mSolverCounterSat, 61 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 120 SdHoareTripleChecker+Valid, 40 SdHoareTripleChecker+Invalid, 297 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 61 IncrementalHoareTripleChecker+Valid, 236 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-21 22:28:01,456 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [120 Valid, 40 Invalid, 297 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [61 Valid, 236 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-21 22:28:01,457 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 197 states. [2023-11-21 22:28:01,485 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 197 to 187. [2023-11-21 22:28:01,486 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 187 states, 127 states have (on average 1.2440944881889764) internal successors, (158), 139 states have internal predecessors, (158), 25 states have call successors, (25), 24 states have call predecessors, (25), 34 states have return successors, (47), 30 states have call predecessors, (47), 25 states have call successors, (47) [2023-11-21 22:28:01,488 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 187 states to 187 states and 230 transitions. [2023-11-21 22:28:01,488 INFO L78 Accepts]: Start accepts. Automaton has 187 states and 230 transitions. Word has length 24 [2023-11-21 22:28:01,488 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:28:01,488 INFO L495 AbstractCegarLoop]: Abstraction has 187 states and 230 transitions. [2023-11-21 22:28:01,489 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.1666666666666665) internal successors, (19), 4 states have internal predecessors, (19), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-21 22:28:01,489 INFO L276 IsEmpty]: Start isEmpty. Operand 187 states and 230 transitions. [2023-11-21 22:28:01,490 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2023-11-21 22:28:01,490 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:28:01,490 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:28:01,490 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-21 22:28:01,490 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:28:01,491 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:28:01,491 INFO L85 PathProgramCache]: Analyzing trace with hash 1100949140, now seen corresponding path program 1 times [2023-11-21 22:28:01,491 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:28:01,491 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [643246806] [2023-11-21 22:28:01,491 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:01,492 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:28:01,509 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:01,735 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-21 22:28:01,741 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:01,778 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:28:01,781 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:01,823 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:28:01,824 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:28:01,824 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [643246806] [2023-11-21 22:28:01,825 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [643246806] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:28:01,825 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:28:01,825 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-21 22:28:01,825 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [878109096] [2023-11-21 22:28:01,826 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:28:01,826 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-21 22:28:01,826 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:28:01,827 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-21 22:28:01,827 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2023-11-21 22:28:01,828 INFO L87 Difference]: Start difference. First operand 187 states and 230 transitions. Second operand has 7 states, 7 states have (on average 3.2857142857142856) internal successors, (23), 6 states have internal predecessors, (23), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-21 22:28:02,220 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:28:02,220 INFO L93 Difference]: Finished difference Result 498 states and 631 transitions. [2023-11-21 22:28:02,221 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2023-11-21 22:28:02,221 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 3.2857142857142856) internal successors, (23), 6 states have internal predecessors, (23), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 28 [2023-11-21 22:28:02,221 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:28:02,224 INFO L225 Difference]: With dead ends: 498 [2023-11-21 22:28:02,225 INFO L226 Difference]: Without dead ends: 313 [2023-11-21 22:28:02,226 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 9 SyntacticMatches, 1 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 22 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=57, Invalid=125, Unknown=0, NotChecked=0, Total=182 [2023-11-21 22:28:02,228 INFO L413 NwaCegarLoop]: 64 mSDtfsCounter, 162 mSDsluCounter, 102 mSDsCounter, 0 mSdLazyCounter, 207 mSolverCounterSat, 85 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 165 SdHoareTripleChecker+Valid, 166 SdHoareTripleChecker+Invalid, 292 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 85 IncrementalHoareTripleChecker+Valid, 207 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-21 22:28:02,228 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [165 Valid, 166 Invalid, 292 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [85 Valid, 207 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-21 22:28:02,230 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 313 states. [2023-11-21 22:28:02,288 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 313 to 279. [2023-11-21 22:28:02,289 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 279 states, 193 states have (on average 1.2227979274611398) internal successors, (236), 205 states have internal predecessors, (236), 39 states have call successors, (39), 38 states have call predecessors, (39), 46 states have return successors, (63), 44 states have call predecessors, (63), 39 states have call successors, (63) [2023-11-21 22:28:02,291 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 279 states to 279 states and 338 transitions. [2023-11-21 22:28:02,291 INFO L78 Accepts]: Start accepts. Automaton has 279 states and 338 transitions. Word has length 28 [2023-11-21 22:28:02,292 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:28:02,292 INFO L495 AbstractCegarLoop]: Abstraction has 279 states and 338 transitions. [2023-11-21 22:28:02,292 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 3.2857142857142856) internal successors, (23), 6 states have internal predecessors, (23), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-21 22:28:02,292 INFO L276 IsEmpty]: Start isEmpty. Operand 279 states and 338 transitions. [2023-11-21 22:28:02,293 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2023-11-21 22:28:02,293 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:28:02,294 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:28:02,294 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-21 22:28:02,294 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:28:02,294 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:28:02,295 INFO L85 PathProgramCache]: Analyzing trace with hash 1674195004, now seen corresponding path program 1 times [2023-11-21 22:28:02,295 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:28:02,295 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [65576282] [2023-11-21 22:28:02,295 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:02,295 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:28:02,308 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:02,457 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 22:28:02,459 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:02,500 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-21 22:28:02,505 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:02,510 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:28:02,519 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:02,522 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-21 22:28:02,522 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:28:02,522 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [65576282] [2023-11-21 22:28:02,522 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [65576282] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-21 22:28:02,522 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-21 22:28:02,523 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2023-11-21 22:28:02,523 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [650649300] [2023-11-21 22:28:02,523 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-21 22:28:02,523 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2023-11-21 22:28:02,523 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:28:02,524 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2023-11-21 22:28:02,524 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=55, Unknown=0, NotChecked=0, Total=72 [2023-11-21 22:28:02,524 INFO L87 Difference]: Start difference. First operand 279 states and 338 transitions. Second operand has 9 states, 8 states have (on average 3.0) internal successors, (24), 7 states have internal predecessors, (24), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-21 22:28:03,121 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:28:03,121 INFO L93 Difference]: Finished difference Result 781 states and 955 transitions. [2023-11-21 22:28:03,122 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2023-11-21 22:28:03,122 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 8 states have (on average 3.0) internal successors, (24), 7 states have internal predecessors, (24), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 31 [2023-11-21 22:28:03,123 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:28:03,127 INFO L225 Difference]: With dead ends: 781 [2023-11-21 22:28:03,127 INFO L226 Difference]: Without dead ends: 504 [2023-11-21 22:28:03,128 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 28 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 19 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 71 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=103, Invalid=317, Unknown=0, NotChecked=0, Total=420 [2023-11-21 22:28:03,129 INFO L413 NwaCegarLoop]: 42 mSDtfsCounter, 141 mSDsluCounter, 188 mSDsCounter, 0 mSdLazyCounter, 489 mSolverCounterSat, 87 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 144 SdHoareTripleChecker+Valid, 230 SdHoareTripleChecker+Invalid, 576 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 87 IncrementalHoareTripleChecker+Valid, 489 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-21 22:28:03,130 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [144 Valid, 230 Invalid, 576 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [87 Valid, 489 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-21 22:28:03,131 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 504 states. [2023-11-21 22:28:03,209 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 504 to 486. [2023-11-21 22:28:03,211 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 486 states, 339 states have (on average 1.1976401179941003) internal successors, (406), 360 states have internal predecessors, (406), 67 states have call successors, (67), 63 states have call predecessors, (67), 79 states have return successors, (105), 77 states have call predecessors, (105), 67 states have call successors, (105) [2023-11-21 22:28:03,237 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 486 states to 486 states and 578 transitions. [2023-11-21 22:28:03,237 INFO L78 Accepts]: Start accepts. Automaton has 486 states and 578 transitions. Word has length 31 [2023-11-21 22:28:03,237 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:28:03,238 INFO L495 AbstractCegarLoop]: Abstraction has 486 states and 578 transitions. [2023-11-21 22:28:03,238 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 8 states have (on average 3.0) internal successors, (24), 7 states have internal predecessors, (24), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-21 22:28:03,238 INFO L276 IsEmpty]: Start isEmpty. Operand 486 states and 578 transitions. [2023-11-21 22:28:03,242 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 61 [2023-11-21 22:28:03,242 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:28:03,242 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:28:03,243 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-21 22:28:03,243 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:28:03,243 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:28:03,244 INFO L85 PathProgramCache]: Analyzing trace with hash -1014105744, now seen corresponding path program 1 times [2023-11-21 22:28:03,244 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:28:03,244 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [405379940] [2023-11-21 22:28:03,244 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:03,244 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:28:03,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:03,595 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-21 22:28:03,608 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:03,714 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:28:03,719 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:03,742 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:28:03,746 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:03,751 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:28:03,755 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:03,768 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-11-21 22:28:03,772 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:03,819 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2023-11-21 22:28:03,825 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:03,829 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:28:03,831 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:03,836 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 3 proven. 16 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2023-11-21 22:28:03,836 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:28:03,837 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [405379940] [2023-11-21 22:28:03,837 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [405379940] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 22:28:03,837 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [861167092] [2023-11-21 22:28:03,838 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:03,838 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 22:28:03,839 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 22:28:03,840 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 22:28:03,876 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-21 22:28:03,956 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:03,959 INFO L262 TraceCheckSpWp]: Trace formula consists of 247 conjuncts, 22 conjunts are in the unsatisfiable core [2023-11-21 22:28:03,967 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 22:28:04,380 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 10 proven. 11 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-21 22:28:04,385 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-21 22:28:04,806 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 10 proven. 1 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2023-11-21 22:28:04,806 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [861167092] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-21 22:28:04,807 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-21 22:28:04,807 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 10, 9] total 26 [2023-11-21 22:28:04,807 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2066133051] [2023-11-21 22:28:04,807 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-21 22:28:04,809 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 26 states [2023-11-21 22:28:04,809 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:28:04,811 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 26 interpolants. [2023-11-21 22:28:04,811 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=134, Invalid=516, Unknown=0, NotChecked=0, Total=650 [2023-11-21 22:28:04,812 INFO L87 Difference]: Start difference. First operand 486 states and 578 transitions. Second operand has 26 states, 22 states have (on average 4.2272727272727275) internal successors, (93), 24 states have internal predecessors, (93), 12 states have call successors, (20), 8 states have call predecessors, (20), 9 states have return successors, (17), 12 states have call predecessors, (17), 10 states have call successors, (17) [2023-11-21 22:28:06,744 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:28:06,744 INFO L93 Difference]: Finished difference Result 1748 states and 2096 transitions. [2023-11-21 22:28:06,745 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 43 states. [2023-11-21 22:28:06,745 INFO L78 Accepts]: Start accepts. Automaton has has 26 states, 22 states have (on average 4.2272727272727275) internal successors, (93), 24 states have internal predecessors, (93), 12 states have call successors, (20), 8 states have call predecessors, (20), 9 states have return successors, (17), 12 states have call predecessors, (17), 10 states have call successors, (17) Word has length 60 [2023-11-21 22:28:06,747 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:28:06,755 INFO L225 Difference]: With dead ends: 1748 [2023-11-21 22:28:06,756 INFO L226 Difference]: Without dead ends: 1267 [2023-11-21 22:28:06,759 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 192 GetRequests, 132 SyntacticMatches, 0 SemanticMatches, 60 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1016 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=910, Invalid=2872, Unknown=0, NotChecked=0, Total=3782 [2023-11-21 22:28:06,761 INFO L413 NwaCegarLoop]: 41 mSDtfsCounter, 969 mSDsluCounter, 330 mSDsCounter, 0 mSdLazyCounter, 847 mSolverCounterSat, 653 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 974 SdHoareTripleChecker+Valid, 371 SdHoareTripleChecker+Invalid, 1500 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 653 IncrementalHoareTripleChecker+Valid, 847 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2023-11-21 22:28:06,761 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [974 Valid, 371 Invalid, 1500 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [653 Valid, 847 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2023-11-21 22:28:06,763 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1267 states. [2023-11-21 22:28:06,924 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1267 to 1226. [2023-11-21 22:28:06,927 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1226 states, 845 states have (on average 1.162130177514793) internal successors, (982), 904 states have internal predecessors, (982), 171 states have call successors, (171), 157 states have call predecessors, (171), 209 states have return successors, (275), 203 states have call predecessors, (275), 171 states have call successors, (275) [2023-11-21 22:28:06,937 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1226 states to 1226 states and 1428 transitions. [2023-11-21 22:28:06,938 INFO L78 Accepts]: Start accepts. Automaton has 1226 states and 1428 transitions. Word has length 60 [2023-11-21 22:28:06,939 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:28:06,939 INFO L495 AbstractCegarLoop]: Abstraction has 1226 states and 1428 transitions. [2023-11-21 22:28:06,940 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 26 states, 22 states have (on average 4.2272727272727275) internal successors, (93), 24 states have internal predecessors, (93), 12 states have call successors, (20), 8 states have call predecessors, (20), 9 states have return successors, (17), 12 states have call predecessors, (17), 10 states have call successors, (17) [2023-11-21 22:28:06,940 INFO L276 IsEmpty]: Start isEmpty. Operand 1226 states and 1428 transitions. [2023-11-21 22:28:06,945 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 92 [2023-11-21 22:28:06,946 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:28:06,946 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:28:06,972 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-21 22:28:07,160 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable7 [2023-11-21 22:28:07,161 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:28:07,161 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:28:07,162 INFO L85 PathProgramCache]: Analyzing trace with hash -1532002568, now seen corresponding path program 1 times [2023-11-21 22:28:07,162 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:28:07,162 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [796638779] [2023-11-21 22:28:07,162 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:07,162 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:28:07,212 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:07,740 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 22:28:07,742 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:07,772 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-21 22:28:07,777 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:07,853 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:28:07,856 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:07,874 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:28:07,876 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:07,882 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2023-11-21 22:28:07,887 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:08,058 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 4 [2023-11-21 22:28:08,061 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:08,119 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:28:08,121 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:08,123 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:28:08,124 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:08,125 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 72 [2023-11-21 22:28:08,128 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:08,131 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:28:08,132 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:08,134 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:28:08,135 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:08,136 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 32 proven. 22 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2023-11-21 22:28:08,137 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:28:08,137 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [796638779] [2023-11-21 22:28:08,137 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [796638779] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 22:28:08,137 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1968812566] [2023-11-21 22:28:08,137 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:08,138 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 22:28:08,138 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 22:28:08,139 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 22:28:08,170 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-21 22:28:08,264 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:08,266 INFO L262 TraceCheckSpWp]: Trace formula consists of 340 conjuncts, 21 conjunts are in the unsatisfiable core [2023-11-21 22:28:08,274 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 22:28:08,708 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 55 proven. 12 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2023-11-21 22:28:08,708 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-21 22:28:09,318 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 38 proven. 7 refuted. 0 times theorem prover too weak. 27 trivial. 0 not checked. [2023-11-21 22:28:09,318 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1968812566] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-21 22:28:09,318 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-21 22:28:09,319 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 13, 14] total 36 [2023-11-21 22:28:09,319 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [501799713] [2023-11-21 22:28:09,319 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-21 22:28:09,320 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 36 states [2023-11-21 22:28:09,320 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:28:09,321 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 36 interpolants. [2023-11-21 22:28:09,322 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=242, Invalid=1018, Unknown=0, NotChecked=0, Total=1260 [2023-11-21 22:28:09,323 INFO L87 Difference]: Start difference. First operand 1226 states and 1428 transitions. Second operand has 36 states, 32 states have (on average 3.75) internal successors, (120), 31 states have internal predecessors, (120), 14 states have call successors, (29), 10 states have call predecessors, (29), 13 states have return successors, (27), 13 states have call predecessors, (27), 14 states have call successors, (27) [2023-11-21 22:28:11,636 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:28:11,636 INFO L93 Difference]: Finished difference Result 2586 states and 3090 transitions. [2023-11-21 22:28:11,637 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 60 states. [2023-11-21 22:28:11,637 INFO L78 Accepts]: Start accepts. Automaton has has 36 states, 32 states have (on average 3.75) internal successors, (120), 31 states have internal predecessors, (120), 14 states have call successors, (29), 10 states have call predecessors, (29), 13 states have return successors, (27), 13 states have call predecessors, (27), 14 states have call successors, (27) Word has length 91 [2023-11-21 22:28:11,637 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:28:11,647 INFO L225 Difference]: With dead ends: 2586 [2023-11-21 22:28:11,648 INFO L226 Difference]: Without dead ends: 1534 [2023-11-21 22:28:11,654 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 276 GetRequests, 192 SyntacticMatches, 2 SemanticMatches, 82 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1982 ImplicationChecksByTransitivity, 1.3s TimeCoverageRelationStatistics Valid=1404, Invalid=5568, Unknown=0, NotChecked=0, Total=6972 [2023-11-21 22:28:11,656 INFO L413 NwaCegarLoop]: 88 mSDtfsCounter, 821 mSDsluCounter, 654 mSDsCounter, 0 mSdLazyCounter, 1625 mSolverCounterSat, 564 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 828 SdHoareTripleChecker+Valid, 742 SdHoareTripleChecker+Invalid, 2189 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 564 IncrementalHoareTripleChecker+Valid, 1625 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.2s IncrementalHoareTripleChecker+Time [2023-11-21 22:28:11,657 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [828 Valid, 742 Invalid, 2189 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [564 Valid, 1625 Invalid, 0 Unknown, 0 Unchecked, 1.2s Time] [2023-11-21 22:28:11,659 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1534 states. [2023-11-21 22:28:11,812 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1534 to 1119. [2023-11-21 22:28:11,815 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1119 states, 778 states have (on average 1.154241645244216) internal successors, (898), 830 states have internal predecessors, (898), 153 states have call successors, (153), 137 states have call predecessors, (153), 187 states have return successors, (221), 181 states have call predecessors, (221), 153 states have call successors, (221) [2023-11-21 22:28:11,821 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1119 states to 1119 states and 1272 transitions. [2023-11-21 22:28:11,822 INFO L78 Accepts]: Start accepts. Automaton has 1119 states and 1272 transitions. Word has length 91 [2023-11-21 22:28:11,824 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:28:11,825 INFO L495 AbstractCegarLoop]: Abstraction has 1119 states and 1272 transitions. [2023-11-21 22:28:11,825 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 36 states, 32 states have (on average 3.75) internal successors, (120), 31 states have internal predecessors, (120), 14 states have call successors, (29), 10 states have call predecessors, (29), 13 states have return successors, (27), 13 states have call predecessors, (27), 14 states have call successors, (27) [2023-11-21 22:28:11,825 INFO L276 IsEmpty]: Start isEmpty. Operand 1119 states and 1272 transitions. [2023-11-21 22:28:11,828 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 110 [2023-11-21 22:28:11,828 INFO L187 NwaCegarLoop]: Found error trace [2023-11-21 22:28:11,828 INFO L195 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:28:11,859 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2023-11-21 22:28:12,044 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 22:28:12,045 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-21 22:28:12,045 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-21 22:28:12,045 INFO L85 PathProgramCache]: Analyzing trace with hash 525819482, now seen corresponding path program 1 times [2023-11-21 22:28:12,046 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-21 22:28:12,046 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1197002296] [2023-11-21 22:28:12,046 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:12,046 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-21 22:28:12,067 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,261 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-21 22:28:12,263 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,272 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-21 22:28:12,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,288 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:28:12,289 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,292 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:28:12,293 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,302 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2023-11-21 22:28:12,303 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,321 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 40 [2023-11-21 22:28:12,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,329 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 4 [2023-11-21 22:28:12,330 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,331 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 59 [2023-11-21 22:28:12,335 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,340 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:28:12,342 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,345 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:28:12,346 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,350 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 90 [2023-11-21 22:28:12,352 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,354 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-21 22:28:12,356 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,357 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-21 22:28:12,358 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,359 INFO L134 CoverageAnalysis]: Checked inductivity of 112 backedges. 16 proven. 29 refuted. 0 times theorem prover too weak. 67 trivial. 0 not checked. [2023-11-21 22:28:12,360 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-21 22:28:12,360 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1197002296] [2023-11-21 22:28:12,360 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1197002296] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-21 22:28:12,360 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [37284760] [2023-11-21 22:28:12,360 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-21 22:28:12,361 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-21 22:28:12,361 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 [2023-11-21 22:28:12,362 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-21 22:28:12,383 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-11-21 22:28:12,487 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-21 22:28:12,490 INFO L262 TraceCheckSpWp]: Trace formula consists of 388 conjuncts, 34 conjunts are in the unsatisfiable core [2023-11-21 22:28:12,504 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-21 22:28:13,072 INFO L134 CoverageAnalysis]: Checked inductivity of 112 backedges. 61 proven. 36 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2023-11-21 22:28:13,073 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-21 22:28:13,863 INFO L134 CoverageAnalysis]: Checked inductivity of 112 backedges. 64 proven. 23 refuted. 0 times theorem prover too weak. 25 trivial. 0 not checked. [2023-11-21 22:28:13,863 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [37284760] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-21 22:28:13,864 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-21 22:28:13,864 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 13, 13] total 31 [2023-11-21 22:28:13,864 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [891174695] [2023-11-21 22:28:13,864 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-21 22:28:13,865 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2023-11-21 22:28:13,865 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-21 22:28:13,866 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2023-11-21 22:28:13,867 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=140, Invalid=790, Unknown=0, NotChecked=0, Total=930 [2023-11-21 22:28:13,867 INFO L87 Difference]: Start difference. First operand 1119 states and 1272 transitions. Second operand has 31 states, 29 states have (on average 5.275862068965517) internal successors, (153), 28 states have internal predecessors, (153), 14 states have call successors, (32), 11 states have call predecessors, (32), 12 states have return successors, (30), 15 states have call predecessors, (30), 14 states have call successors, (30) [2023-11-21 22:28:16,217 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-21 22:28:16,217 INFO L93 Difference]: Finished difference Result 1418 states and 1620 transitions. [2023-11-21 22:28:16,218 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 45 states. [2023-11-21 22:28:16,218 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 29 states have (on average 5.275862068965517) internal successors, (153), 28 states have internal predecessors, (153), 14 states have call successors, (32), 11 states have call predecessors, (32), 12 states have return successors, (30), 15 states have call predecessors, (30), 14 states have call successors, (30) Word has length 109 [2023-11-21 22:28:16,220 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-21 22:28:16,221 INFO L225 Difference]: With dead ends: 1418 [2023-11-21 22:28:16,221 INFO L226 Difference]: Without dead ends: 0 [2023-11-21 22:28:16,226 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 302 GetRequests, 227 SyntacticMatches, 3 SemanticMatches, 72 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1129 ImplicationChecksByTransitivity, 1.6s TimeCoverageRelationStatistics Valid=945, Invalid=4457, Unknown=0, NotChecked=0, Total=5402 [2023-11-21 22:28:16,227 INFO L413 NwaCegarLoop]: 36 mSDtfsCounter, 650 mSDsluCounter, 312 mSDsCounter, 0 mSdLazyCounter, 1553 mSolverCounterSat, 448 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 650 SdHoareTripleChecker+Valid, 348 SdHoareTripleChecker+Invalid, 2001 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 448 IncrementalHoareTripleChecker+Valid, 1553 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2023-11-21 22:28:16,228 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [650 Valid, 348 Invalid, 2001 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [448 Valid, 1553 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2023-11-21 22:28:16,229 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-21 22:28:16,229 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-21 22:28:16,229 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-21 22:28:16,229 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-21 22:28:16,230 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 109 [2023-11-21 22:28:16,230 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-21 22:28:16,230 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-21 22:28:16,231 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 29 states have (on average 5.275862068965517) internal successors, (153), 28 states have internal predecessors, (153), 14 states have call successors, (32), 11 states have call predecessors, (32), 12 states have return successors, (30), 15 states have call predecessors, (30), 14 states have call successors, (30) [2023-11-21 22:28:16,231 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-21 22:28:16,231 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-21 22:28:16,234 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-21 22:28:16,260 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2023-11-21 22:28:16,453 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-21 22:28:16,455 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-21 22:28:19,979 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 615 622) no Hoare annotation was computed. [2023-11-21 22:28:19,980 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 615 622) the Hoare annotation is: (or (< 2 ~waterLevel~0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (and (not (= ~waterLevel~0 1)) (<= ~waterLevel~0 1)) (< |old(~pumpRunning~0)| 1) (= 0 ~systemActive~0)) [2023-11-21 22:28:19,980 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 522 528) no Hoare annotation was computed. [2023-11-21 22:28:19,980 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 522 528) the Hoare annotation is: true [2023-11-21 22:28:19,980 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 792 803) the Hoare annotation is: (let ((.cse1 (not (= 2 ~waterLevel~0))) (.cse0 (not (= ~pumpRunning~0 0))) (.cse2 (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0)) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3) (or (< ~pumpRunning~0 1) .cse1 .cse2 .cse3) (or (not (= ~waterLevel~0 1)) .cse0 .cse2 .cse3))) [2023-11-21 22:28:19,981 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 792 803) no Hoare annotation was computed. [2023-11-21 22:28:19,981 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 896 925) no Hoare annotation was computed. [2023-11-21 22:28:19,981 INFO L899 garLoopResultBuilder]: For program point L921(lines 896 925) no Hoare annotation was computed. [2023-11-21 22:28:19,981 INFO L899 garLoopResultBuilder]: For program point L917(line 917) no Hoare annotation was computed. [2023-11-21 22:28:19,981 INFO L899 garLoopResultBuilder]: For program point L910(lines 910 914) no Hoare annotation was computed. [2023-11-21 22:28:19,981 INFO L902 garLoopResultBuilder]: At program point L910-1(lines 910 914) the Hoare annotation is: true [2023-11-21 22:28:19,981 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 896 925) the Hoare annotation is: true [2023-11-21 22:28:19,982 INFO L902 garLoopResultBuilder]: At program point L906-2(lines 906 920) the Hoare annotation is: true [2023-11-21 22:28:19,982 INFO L902 garLoopResultBuilder]: At program point L902(line 902) the Hoare annotation is: true [2023-11-21 22:28:19,982 INFO L899 garLoopResultBuilder]: For program point L902-1(line 902) no Hoare annotation was computed. [2023-11-21 22:28:19,982 INFO L895 garLoopResultBuilder]: At program point L601(line 601) the Hoare annotation is: (let ((.cse0 (not (= |old(~waterLevel~0)| 2))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (< |old(~pumpRunning~0)| 1) .cse1) (or .cse2 (and .cse3 (= 2 ~waterLevel~0)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 (= ~waterLevel~0 1)) .cse1))) [2023-11-21 22:28:19,982 INFO L899 garLoopResultBuilder]: For program point L601-1(lines 582 606) no Hoare annotation was computed. [2023-11-21 22:28:19,983 INFO L899 garLoopResultBuilder]: For program point L502-1(lines 501 520) no Hoare annotation was computed. [2023-11-21 22:28:19,983 INFO L899 garLoopResultBuilder]: For program point L590(lines 590 598) no Hoare annotation was computed. [2023-11-21 22:28:19,983 INFO L899 garLoopResultBuilder]: For program point L586(lines 586 603) no Hoare annotation was computed. [2023-11-21 22:28:19,983 INFO L899 garLoopResultBuilder]: For program point L760(line 760) no Hoare annotation was computed. [2023-11-21 22:28:19,983 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 498 521) the Hoare annotation is: (let ((.cse0 (= 2 ~waterLevel~0)) (.cse1 (not (= |old(~waterLevel~0)| 2))) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0) .cse1 (< |old(~pumpRunning~0)| 1) .cse2) (or .cse3 (and .cse4 .cse0) .cse1 .cse2) (or .cse3 (not (= |old(~waterLevel~0)| 1)) (and .cse4 (= ~waterLevel~0 1)) .cse2))) [2023-11-21 22:28:19,984 INFO L899 garLoopResultBuilder]: For program point L509-1(lines 509 515) no Hoare annotation was computed. [2023-11-21 22:28:19,984 INFO L895 garLoopResultBuilder]: At program point L596(line 596) the Hoare annotation is: (let ((.cse0 (not (= |old(~waterLevel~0)| 2))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (< |old(~pumpRunning~0)| 1) .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) (= ~methaneLevelCritical~0 0) (= |timeShift_processEnvironment_~tmp~6#1| 0))) (or .cse2 .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) .cse1))) [2023-11-21 22:28:19,984 INFO L899 garLoopResultBuilder]: For program point L881(lines 881 887) no Hoare annotation was computed. [2023-11-21 22:28:19,984 INFO L895 garLoopResultBuilder]: At program point L592(line 592) the Hoare annotation is: (let ((.cse0 (not (= |old(~waterLevel~0)| 2))) (.cse1 (< |old(~pumpRunning~0)| 1)) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0))) (and (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |old(~waterLevel~0)| (+ ~waterLevel~0 1)) (not (= |timeShift_processEnvironment_~tmp~6#1| 0))) .cse0 .cse1 .cse2) (or .cse3 .cse0 .cse2) (or (not (= ~methaneLevelCritical~0 0)) .cse0 .cse1 .cse2) (or .cse3 (not (= |old(~waterLevel~0)| 1)) .cse2))) [2023-11-21 22:28:19,985 INFO L899 garLoopResultBuilder]: For program point L877(lines 877 890) no Hoare annotation was computed. [2023-11-21 22:28:19,985 INFO L899 garLoopResultBuilder]: For program point L877-1(lines 869 893) no Hoare annotation was computed. [2023-11-21 22:28:19,985 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 498 521) no Hoare annotation was computed. [2023-11-21 22:28:19,985 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 760) no Hoare annotation was computed. [2023-11-21 22:28:19,985 INFO L895 garLoopResultBuilder]: At program point L473(lines 430 475) the Hoare annotation is: (let ((.cse3 (or (not (= |old(~methaneLevelCritical~0)| 0)) (< 0 ~methaneLevelCritical~0))) (.cse0 (= ~pumpRunning~0 0)) (.cse4 (= ~waterLevel~0 1)) (.cse6 (<= 1 ~pumpRunning~0)) (.cse7 (= 2 ~waterLevel~0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse1 (= |ULTIMATE.start_main_~tmp~10#1| ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse6 .cse7 .cse1 .cse2 .cse3 .cse5) (and .cse0 .cse8 .cse1 .cse2 .cse4 .cse5) (and .cse6 .cse7 .cse8 .cse1 .cse2 .cse5))) [2023-11-21 22:28:19,986 INFO L899 garLoopResultBuilder]: For program point L440(lines 440 446) no Hoare annotation was computed. [2023-11-21 22:28:19,986 INFO L899 garLoopResultBuilder]: For program point L440-1(lines 440 446) no Hoare annotation was computed. [2023-11-21 22:28:19,986 INFO L899 garLoopResultBuilder]: For program point L977(lines 977 984) no Hoare annotation was computed. [2023-11-21 22:28:19,986 INFO L899 garLoopResultBuilder]: For program point L977-2(lines 977 984) no Hoare annotation was computed. [2023-11-21 22:28:19,986 INFO L895 garLoopResultBuilder]: At program point L466-2(lines 460 471) the Hoare annotation is: (let ((.cse3 (or (not (= |old(~methaneLevelCritical~0)| 0)) (< 0 ~methaneLevelCritical~0))) (.cse4 (= ~waterLevel~0 1)) (.cse7 (<= 1 ~pumpRunning~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse6 (= 2 ~waterLevel~0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse1 (= |ULTIMATE.start_main_~tmp~10#1| ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse6 .cse1 .cse2 .cse3 .cse5) (and .cse7 .cse6 .cse1 .cse2 .cse3 .cse5) (and .cse0 .cse8 .cse1 .cse2 .cse4 .cse5) (and .cse7 .cse6 .cse8 .cse1 .cse2 .cse5) (and .cse0 .cse6 .cse8 .cse1 .cse2 .cse5))) [2023-11-21 22:28:19,986 INFO L899 garLoopResultBuilder]: For program point L450(lines 450 456) no Hoare annotation was computed. [2023-11-21 22:28:19,987 INFO L899 garLoopResultBuilder]: For program point L450-1(lines 450 456) no Hoare annotation was computed. [2023-11-21 22:28:19,987 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-21 22:28:19,987 INFO L899 garLoopResultBuilder]: For program point L479(lines 420 483) no Hoare annotation was computed. [2023-11-21 22:28:19,987 INFO L895 garLoopResultBuilder]: At program point L442(line 442) the Hoare annotation is: (let ((.cse3 (or (not (= |old(~methaneLevelCritical~0)| 0)) (< 0 ~methaneLevelCritical~0))) (.cse0 (= ~pumpRunning~0 0)) (.cse4 (= ~waterLevel~0 1)) (.cse6 (<= 1 ~pumpRunning~0)) (.cse7 (= 2 ~waterLevel~0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse1 (= |ULTIMATE.start_main_~tmp~10#1| ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse6 .cse7 .cse1 .cse2 .cse3 .cse5) (and .cse0 .cse8 .cse1 .cse2 .cse4 .cse5) (and .cse6 .cse7 .cse8 .cse1 .cse2 .cse5))) [2023-11-21 22:28:19,987 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-21 22:28:19,987 INFO L895 garLoopResultBuilder]: At program point L476(lines 429 477) the Hoare annotation is: false [2023-11-21 22:28:19,988 INFO L899 garLoopResultBuilder]: For program point L431(lines 430 475) no Hoare annotation was computed. [2023-11-21 22:28:19,988 INFO L895 garLoopResultBuilder]: At program point L452(line 452) the Hoare annotation is: (let ((.cse3 (or (not (= |old(~methaneLevelCritical~0)| 0)) (< 0 ~methaneLevelCritical~0))) (.cse4 (= ~waterLevel~0 1)) (.cse7 (<= 1 ~pumpRunning~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse6 (= 2 ~waterLevel~0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse1 (= |ULTIMATE.start_main_~tmp~10#1| ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse6 .cse1 .cse2 .cse3 .cse5) (and .cse7 .cse6 .cse1 .cse2 .cse3 .cse5) (and .cse0 .cse8 .cse1 .cse2 .cse4 .cse5) (and .cse7 .cse6 .cse8 .cse1 .cse2 .cse5) (and .cse0 .cse6 .cse8 .cse1 .cse2 .cse5))) [2023-11-21 22:28:19,988 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 530 554) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= 2 ~waterLevel~0)) .cse2) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2))) [2023-11-21 22:28:19,988 INFO L895 garLoopResultBuilder]: At program point L544(line 544) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (< ~waterLevel~0 1) (< 1 ~waterLevel~0) (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~4#1| 0)) .cse1) (or .cse0 (not (= 2 ~waterLevel~0)) .cse1))) [2023-11-21 22:28:19,989 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 530 554) no Hoare annotation was computed. [2023-11-21 22:28:19,989 INFO L899 garLoopResultBuilder]: For program point L538(lines 538 546) no Hoare annotation was computed. [2023-11-21 22:28:19,989 INFO L899 garLoopResultBuilder]: For program point L534(lines 534 551) no Hoare annotation was computed. [2023-11-21 22:28:19,989 INFO L895 garLoopResultBuilder]: At program point L549(line 549) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (not (= 2 ~waterLevel~0)) .cse1) (or (not (= ~waterLevel~0 1)) .cse0 .cse1))) [2023-11-21 22:28:19,989 INFO L899 garLoopResultBuilder]: For program point L549-1(lines 530 554) no Hoare annotation was computed. [2023-11-21 22:28:19,989 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 780 791) no Hoare annotation was computed. [2023-11-21 22:28:19,990 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 780 791) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (< ~pumpRunning~0 1) (= 2 ~waterLevel~0) (not (= |old(~waterLevel~0)| 2)) .cse0) (or (not (= ~pumpRunning~0 0)) (not (= |old(~waterLevel~0)| 1)) .cse0 (= ~waterLevel~0 1)))) [2023-11-21 22:28:19,990 INFO L895 garLoopResultBuilder]: At program point L570(line 570) the Hoare annotation is: (let ((.cse0 (not (= ~waterLevel~0 1))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or (< 2 ~waterLevel~0) (and .cse0 (<= ~waterLevel~0 1)) (not (= ~methaneLevelCritical~0 0)) (< |old(~pumpRunning~0)| 1) .cse1) (or .cse2 (not (= 2 ~waterLevel~0)) .cse1) (or .cse0 .cse2 .cse1))) [2023-11-21 22:28:19,990 INFO L895 garLoopResultBuilder]: At program point L566(line 566) the Hoare annotation is: (let ((.cse0 (not (= ~waterLevel~0 1))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or (< 2 ~waterLevel~0) (and .cse0 (<= ~waterLevel~0 1)) (not (= ~methaneLevelCritical~0 0)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_~tmp~5#1|)) (< |old(~pumpRunning~0)| 1) .cse1) (or .cse2 (not (= 2 ~waterLevel~0)) .cse1) (or .cse0 .cse2 .cse1))) [2023-11-21 22:28:19,990 INFO L899 garLoopResultBuilder]: For program point L564(lines 564 572) no Hoare annotation was computed. [2023-11-21 22:28:19,990 INFO L899 garLoopResultBuilder]: For program point L560(lines 560 577) no Hoare annotation was computed. [2023-11-21 22:28:19,991 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 556 580) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (not (= ~waterLevel~0 1))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= 2 ~waterLevel~0)) .cse2) (or .cse3 .cse0 .cse1 .cse2) (or (< 2 ~waterLevel~0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (and .cse3 (<= ~waterLevel~0 1)) (not (= ~methaneLevelCritical~0 0)) (< |old(~pumpRunning~0)| 1) .cse2))) [2023-11-21 22:28:19,991 INFO L895 garLoopResultBuilder]: At program point L575(line 575) the Hoare annotation is: (let ((.cse3 (not (= ~waterLevel~0 1))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= 2 ~waterLevel~0)) .cse2) (or (< 2 ~waterLevel~0) (and .cse3 (<= ~waterLevel~0 1)) (not (= ~methaneLevelCritical~0 0)) (< |old(~pumpRunning~0)| 1) .cse2) (or .cse3 .cse0 .cse1 .cse2))) [2023-11-21 22:28:19,991 INFO L899 garLoopResultBuilder]: For program point L575-1(lines 556 580) no Hoare annotation was computed. [2023-11-21 22:28:19,991 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__lowWaterSensorEXIT(lines 556 580) no Hoare annotation was computed. [2023-11-21 22:28:19,994 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-21 22:28:19,996 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-21 22:28:20,010 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.11 10:28:20 BoogieIcfgContainer [2023-11-21 22:28:20,010 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-21 22:28:20,011 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-21 22:28:20,011 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-21 22:28:20,011 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-21 22:28:20,012 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.11 10:27:59" (3/4) ... [2023-11-21 22:28:20,014 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-21 22:28:20,017 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-21 22:28:20,017 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-21 22:28:20,017 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-21 22:28:20,018 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-21 22:28:20,018 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-21 22:28:20,018 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-21 22:28:20,018 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-21 22:28:20,018 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__lowWaterSensor [2023-11-21 22:28:20,027 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 47 nodes and edges [2023-11-21 22:28:20,028 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 12 nodes and edges [2023-11-21 22:28:20,029 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-21 22:28:20,030 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-21 22:28:20,030 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-21 22:28:20,056 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((pumpRunning == 0) && (tmp == systemActive)) && (splverifierCounter == 0)) && (!((\old(methaneLevelCritical) == 0)) || (0 < methaneLevelCritical))) && (waterLevel == 1)) && !((0 == systemActive))) || ((((((1 <= pumpRunning) && (2 == waterLevel)) && (tmp == systemActive)) && (splverifierCounter == 0)) && (!((\old(methaneLevelCritical) == 0)) || (0 < methaneLevelCritical))) && !((0 == systemActive)))) || ((((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (tmp == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1)) && !((0 == systemActive)))) || ((((((1 <= pumpRunning) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (tmp == systemActive)) && (splverifierCounter == 0)) && !((0 == systemActive)))) [2023-11-21 22:28:20,056 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((pumpRunning == \old(pumpRunning)) && (2 == waterLevel)) || !((\old(waterLevel) == 2))) || (\old(pumpRunning) < 1)) || (0 == systemActive)) && (((!((\old(pumpRunning) == 0)) || ((pumpRunning == 0) && (2 == waterLevel))) || !((\old(waterLevel) == 2))) || (0 == systemActive))) && (((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((pumpRunning == 0) && (waterLevel == 1))) || (0 == systemActive))) [2023-11-21 22:28:20,093 WARN L141 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((pumpRunning == 0) && (tmp == systemActive)) && (splverifierCounter == 0)) && (!((\old(methaneLevelCritical) == 0)) || (0 < methaneLevelCritical))) && (waterLevel == 1)) && !((0 == systemActive))) || ((((((1 <= pumpRunning) && (2 == waterLevel)) && (tmp == systemActive)) && (splverifierCounter == 0)) && (!((\old(methaneLevelCritical) == 0)) || (0 < methaneLevelCritical))) && !((0 == systemActive)))) || ((((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (tmp == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1)) && !((0 == systemActive)))) || ((((((1 <= pumpRunning) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (tmp == systemActive)) && (splverifierCounter == 0)) && !((0 == systemActive)))) [2023-11-21 22:28:20,095 WARN L141 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((pumpRunning == \old(pumpRunning)) && (2 == waterLevel)) || !((\old(waterLevel) == 2))) || (\old(pumpRunning) < 1)) || (0 == systemActive)) && (((!((\old(pumpRunning) == 0)) || ((pumpRunning == 0) && (2 == waterLevel))) || !((\old(waterLevel) == 2))) || (0 == systemActive))) && (((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((pumpRunning == 0) && (waterLevel == 1))) || (0 == systemActive))) [2023-11-21 22:28:20,144 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/witness.graphml [2023-11-21 22:28:20,145 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/witness.yml [2023-11-21 22:28:20,145 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-21 22:28:20,146 INFO L158 Benchmark]: Toolchain (without parser) took 22304.45ms. Allocated memory was 115.3MB in the beginning and 310.4MB in the end (delta: 195.0MB). Free memory was 70.7MB in the beginning and 217.1MB in the end (delta: -146.4MB). Peak memory consumption was 50.0MB. Max. memory is 16.1GB. [2023-11-21 22:28:20,146 INFO L158 Benchmark]: CDTParser took 0.33ms. Allocated memory is still 115.3MB. Free memory is still 85.2MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-21 22:28:20,147 INFO L158 Benchmark]: CACSL2BoogieTranslator took 534.52ms. Allocated memory is still 115.3MB. Free memory was 70.4MB in the beginning and 50.8MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-21 22:28:20,147 INFO L158 Benchmark]: Boogie Procedure Inliner took 69.83ms. Allocated memory is still 115.3MB. Free memory was 50.8MB in the beginning and 48.3MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-21 22:28:20,148 INFO L158 Benchmark]: Boogie Preprocessor took 48.50ms. Allocated memory is still 115.3MB. Free memory was 48.3MB in the beginning and 45.9MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-21 22:28:20,148 INFO L158 Benchmark]: RCFGBuilder took 762.10ms. Allocated memory was 115.3MB in the beginning and 178.3MB in the end (delta: 62.9MB). Free memory was 45.9MB in the beginning and 123.0MB in the end (delta: -77.1MB). Peak memory consumption was 10.1MB. Max. memory is 16.1GB. [2023-11-21 22:28:20,149 INFO L158 Benchmark]: TraceAbstraction took 20746.58ms. Allocated memory was 178.3MB in the beginning and 310.4MB in the end (delta: 132.1MB). Free memory was 123.0MB in the beginning and 225.5MB in the end (delta: -102.6MB). Peak memory consumption was 159.9MB. Max. memory is 16.1GB. [2023-11-21 22:28:20,149 INFO L158 Benchmark]: Witness Printer took 134.51ms. Allocated memory is still 310.4MB. Free memory was 225.5MB in the beginning and 217.1MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-21 22:28:20,151 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.33ms. Allocated memory is still 115.3MB. Free memory is still 85.2MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 534.52ms. Allocated memory is still 115.3MB. Free memory was 70.4MB in the beginning and 50.8MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 69.83ms. Allocated memory is still 115.3MB. Free memory was 50.8MB in the beginning and 48.3MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 48.50ms. Allocated memory is still 115.3MB. Free memory was 48.3MB in the beginning and 45.9MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 762.10ms. Allocated memory was 115.3MB in the beginning and 178.3MB in the end (delta: 62.9MB). Free memory was 45.9MB in the beginning and 123.0MB in the end (delta: -77.1MB). Peak memory consumption was 10.1MB. Max. memory is 16.1GB. * TraceAbstraction took 20746.58ms. Allocated memory was 178.3MB in the beginning and 310.4MB in the end (delta: 132.1MB). Free memory was 123.0MB in the beginning and 225.5MB in the end (delta: -102.6MB). Peak memory consumption was 159.9MB. Max. memory is 16.1GB. * Witness Printer took 134.51ms. Allocated memory is still 310.4MB. Free memory was 225.5MB in the beginning and 217.1MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [49] - GenericResultAtLocation [Line: 415]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [415] - GenericResultAtLocation [Line: 484]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [484] - GenericResultAtLocation [Line: 717]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [717] - GenericResultAtLocation [Line: 755]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [755] - GenericResultAtLocation [Line: 764]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [764] - GenericResultAtLocation [Line: 868]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [868] - GenericResultAtLocation [Line: 894]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [894] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 760]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 62 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 20.7s, OverallIterations: 10, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 8.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 3.5s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 3045 SdHoareTripleChecker+Valid, 4.4s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 3019 mSDsluCounter, 2267 SdHoareTripleChecker+Invalid, 3.7s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1783 mSDsCounter, 1951 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 5179 IncrementalHoareTripleChecker+Invalid, 7130 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1951 mSolverCounterUnsat, 484 mSDtfsCounter, 5179 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 856 GetRequests, 582 SyntacticMatches, 6 SemanticMatches, 268 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4249 ImplicationChecksByTransitivity, 4.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1226occurred in iteration=8, InterpolantAutomatonStates: 212, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.6s AutomataMinimizationTime, 10 MinimizatonAttempts, 550 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 24 LocationsWithAnnotation, 1347 PreInvPairs, 1386 NumberOfFragments, 1078 HoareAnnotationTreeSize, 1347 FomulaSimplifications, 14391 FormulaSimplificationTreeSizeReduction, 0.3s HoareSimplificationTime, 24 FomulaSimplificationsInter, 9941 FormulaSimplificationTreeSizeReductionInter, 3.1s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 6.1s InterpolantComputationTime, 664 NumberOfCodeBlocks, 664 NumberOfCodeBlocksAsserted, 13 NumberOfCheckSat, 908 ConstructedInterpolants, 0 QuantifiedInterpolants, 3066 SizeOfPredicates, 23 NumberOfNonLiveVariables, 975 ConjunctsInSsa, 77 ConjunctsInUnsatCore, 16 InterpolantComputations, 7 PerfectInterpolantSequences, 467/624 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 906]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 430]: Loop Invariant Derived loop invariant: (((((((((pumpRunning == 0) && (tmp == systemActive)) && (splverifierCounter == 0)) && (!((\old(methaneLevelCritical) == 0)) || (0 < methaneLevelCritical))) && (waterLevel == 1)) && !((0 == systemActive))) || ((((((1 <= pumpRunning) && (2 == waterLevel)) && (tmp == systemActive)) && (splverifierCounter == 0)) && (!((\old(methaneLevelCritical) == 0)) || (0 < methaneLevelCritical))) && !((0 == systemActive)))) || ((((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (tmp == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1)) && !((0 == systemActive)))) || ((((((1 <= pumpRunning) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (tmp == systemActive)) && (splverifierCounter == 0)) && !((0 == systemActive)))) - InvariantResult [Line: 429]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 498]: Loop Invariant Derived loop invariant: (((((((pumpRunning == \old(pumpRunning)) && (2 == waterLevel)) || !((\old(waterLevel) == 2))) || (\old(pumpRunning) < 1)) || (0 == systemActive)) && (((!((\old(pumpRunning) == 0)) || ((pumpRunning == 0) && (2 == waterLevel))) || !((\old(waterLevel) == 2))) || (0 == systemActive))) && (((!((\old(pumpRunning) == 0)) || !((\old(waterLevel) == 1))) || ((pumpRunning == 0) && (waterLevel == 1))) || (0 == systemActive))) RESULT: Ultimate proved your program to be correct! [2023-11-21 22:28:20,185 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b9974dc0-4097-4006-ae82-1121ef185039/bin/uautomizer-verify-bycVGegfSx/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE