./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec2_product56.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 0e0057cc Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec2_product56.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash fa0eab3945757815cbe114f72b31b9c97b3f41e20a7d5f245c817ae82afdf9aa --- Real Ultimate output --- This is Ultimate 0.2.4-dev-0e0057c [2023-11-26 10:48:10,101 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-26 10:48:10,190 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-26 10:48:10,196 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-26 10:48:10,196 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-26 10:48:10,229 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-26 10:48:10,230 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-26 10:48:10,231 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-26 10:48:10,232 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-26 10:48:10,233 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-26 10:48:10,233 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-26 10:48:10,234 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-26 10:48:10,235 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-26 10:48:10,236 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-26 10:48:10,237 INFO L153 SettingsManager]: * Use SBE=true [2023-11-26 10:48:10,237 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-26 10:48:10,238 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-26 10:48:10,239 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-26 10:48:10,239 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-26 10:48:10,240 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-26 10:48:10,241 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-26 10:48:10,242 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-26 10:48:10,242 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-26 10:48:10,243 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-26 10:48:10,244 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-26 10:48:10,245 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-26 10:48:10,245 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-26 10:48:10,246 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-26 10:48:10,247 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-26 10:48:10,247 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-26 10:48:10,248 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-26 10:48:10,249 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-26 10:48:10,250 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-26 10:48:10,250 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-26 10:48:10,251 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-26 10:48:10,251 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-26 10:48:10,252 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-26 10:48:10,253 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-26 10:48:10,253 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-26 10:48:10,254 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-26 10:48:10,254 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-26 10:48:10,255 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-26 10:48:10,255 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> fa0eab3945757815cbe114f72b31b9c97b3f41e20a7d5f245c817ae82afdf9aa [2023-11-26 10:48:10,631 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-26 10:48:10,671 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-26 10:48:10,675 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-26 10:48:10,676 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-26 10:48:10,677 INFO L274 PluginConnector]: CDTParser initialized [2023-11-26 10:48:10,678 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/../../sv-benchmarks/c/product-lines/minepump_spec2_product56.cil.c [2023-11-26 10:48:14,295 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-26 10:48:14,673 INFO L384 CDTParser]: Found 1 translation units. [2023-11-26 10:48:14,674 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/sv-benchmarks/c/product-lines/minepump_spec2_product56.cil.c [2023-11-26 10:48:14,714 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/data/ca4c87c7b/736ced9d9dd24d2a94802f899005015e/FLAG2c2ea2eff [2023-11-26 10:48:14,735 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/data/ca4c87c7b/736ced9d9dd24d2a94802f899005015e [2023-11-26 10:48:14,743 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-26 10:48:14,746 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-26 10:48:14,748 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-26 10:48:14,748 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-26 10:48:14,755 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-26 10:48:14,758 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 26.11 10:48:14" (1/1) ... [2023-11-26 10:48:14,760 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@57d2c425 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:14, skipping insertion in model container [2023-11-26 10:48:14,761 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 26.11 10:48:14" (1/1) ... [2023-11-26 10:48:14,856 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-26 10:48:15,162 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/sv-benchmarks/c/product-lines/minepump_spec2_product56.cil.c[11292,11305] [2023-11-26 10:48:15,230 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-26 10:48:15,246 INFO L202 MainTranslator]: Completed pre-run [2023-11-26 10:48:15,260 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [49] [2023-11-26 10:48:15,263 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [415] [2023-11-26 10:48:15,263 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [424] [2023-11-26 10:48:15,263 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [535] [2023-11-26 10:48:15,264 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [575] [2023-11-26 10:48:15,264 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [827] [2023-11-26 10:48:15,264 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [897] [2023-11-26 10:48:15,265 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [935] [2023-11-26 10:48:15,318 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/sv-benchmarks/c/product-lines/minepump_spec2_product56.cil.c[11292,11305] [2023-11-26 10:48:15,350 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-26 10:48:15,378 INFO L206 MainTranslator]: Completed translation [2023-11-26 10:48:15,379 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15 WrapperNode [2023-11-26 10:48:15,379 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-26 10:48:15,381 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-26 10:48:15,381 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-26 10:48:15,381 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-26 10:48:15,391 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,421 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,478 INFO L138 Inliner]: procedures = 59, calls = 106, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 232 [2023-11-26 10:48:15,482 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-26 10:48:15,483 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-26 10:48:15,484 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-26 10:48:15,484 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-26 10:48:15,499 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,500 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,516 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,545 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-11-26 10:48:15,546 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,551 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,558 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,565 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,567 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,569 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,573 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-26 10:48:15,574 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-26 10:48:15,575 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-26 10:48:15,575 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-26 10:48:15,576 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (1/1) ... [2023-11-26 10:48:15,584 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-26 10:48:15,605 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 [2023-11-26 10:48:15,625 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-11-26 10:48:15,666 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-11-26 10:48:15,688 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-26 10:48:15,689 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-26 10:48:15,689 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-26 10:48:15,689 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-26 10:48:15,689 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-26 10:48:15,690 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-26 10:48:15,690 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-26 10:48:15,690 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2023-11-26 10:48:15,690 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2023-11-26 10:48:15,691 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-26 10:48:15,692 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-26 10:48:15,692 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-26 10:48:15,693 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-26 10:48:15,693 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__lowWaterSensor [2023-11-26 10:48:15,693 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__lowWaterSensor [2023-11-26 10:48:15,693 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-26 10:48:15,693 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-26 10:48:15,695 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-26 10:48:15,695 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-26 10:48:15,695 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-26 10:48:15,697 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-26 10:48:15,700 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-26 10:48:15,871 INFO L241 CfgBuilder]: Building ICFG [2023-11-26 10:48:15,874 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-26 10:48:16,402 INFO L282 CfgBuilder]: Performing block encoding [2023-11-26 10:48:16,470 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-26 10:48:16,470 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-26 10:48:16,471 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.11 10:48:16 BoogieIcfgContainer [2023-11-26 10:48:16,471 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-26 10:48:16,473 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-26 10:48:16,473 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-26 10:48:16,477 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-26 10:48:16,478 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 26.11 10:48:14" (1/3) ... [2023-11-26 10:48:16,478 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@6b512b80 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 26.11 10:48:16, skipping insertion in model container [2023-11-26 10:48:16,479 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 26.11 10:48:15" (2/3) ... [2023-11-26 10:48:16,479 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@6b512b80 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 26.11 10:48:16, skipping insertion in model container [2023-11-26 10:48:16,479 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.11 10:48:16" (3/3) ... [2023-11-26 10:48:16,481 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product56.cil.c [2023-11-26 10:48:16,504 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-26 10:48:16,504 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-26 10:48:16,568 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-26 10:48:16,577 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@34b01d22, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-26 10:48:16,578 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-26 10:48:16,584 INFO L276 IsEmpty]: Start isEmpty. Operand has 84 states, 56 states have (on average 1.5357142857142858) internal successors, (86), 67 states have internal predecessors, (86), 17 states have call successors, (17), 9 states have call predecessors, (17), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) [2023-11-26 10:48:16,597 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2023-11-26 10:48:16,597 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:16,598 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:16,599 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:16,606 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:16,607 INFO L85 PathProgramCache]: Analyzing trace with hash -537591985, now seen corresponding path program 1 times [2023-11-26 10:48:16,619 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:16,620 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1412340835] [2023-11-26 10:48:16,620 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:16,621 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:16,775 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:16,892 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-26 10:48:16,901 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:16,922 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-26 10:48:16,928 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:16,929 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1412340835] [2023-11-26 10:48:16,929 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1412340835] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:48:16,930 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 10:48:16,930 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-26 10:48:16,932 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1502397072] [2023-11-26 10:48:16,935 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:48:16,940 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-26 10:48:16,942 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:16,993 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-26 10:48:16,994 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-26 10:48:16,998 INFO L87 Difference]: Start difference. First operand has 84 states, 56 states have (on average 1.5357142857142858) internal successors, (86), 67 states have internal predecessors, (86), 17 states have call successors, (17), 9 states have call predecessors, (17), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) Second operand has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-26 10:48:17,123 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:17,124 INFO L93 Difference]: Finished difference Result 166 states and 241 transitions. [2023-11-26 10:48:17,126 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-26 10:48:17,127 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2023-11-26 10:48:17,128 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:17,140 INFO L225 Difference]: With dead ends: 166 [2023-11-26 10:48:17,140 INFO L226 Difference]: Without dead ends: 79 [2023-11-26 10:48:17,145 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-26 10:48:17,151 INFO L413 NwaCegarLoop]: 98 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 98 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:17,153 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 98 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-26 10:48:17,173 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2023-11-26 10:48:17,218 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 79. [2023-11-26 10:48:17,220 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 79 states, 53 states have (on average 1.4339622641509433) internal successors, (76), 63 states have internal predecessors, (76), 17 states have call successors, (17), 9 states have call predecessors, (17), 8 states have return successors, (16), 11 states have call predecessors, (16), 16 states have call successors, (16) [2023-11-26 10:48:17,226 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 79 states to 79 states and 109 transitions. [2023-11-26 10:48:17,228 INFO L78 Accepts]: Start accepts. Automaton has 79 states and 109 transitions. Word has length 17 [2023-11-26 10:48:17,228 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:17,229 INFO L495 AbstractCegarLoop]: Abstraction has 79 states and 109 transitions. [2023-11-26 10:48:17,229 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-26 10:48:17,229 INFO L276 IsEmpty]: Start isEmpty. Operand 79 states and 109 transitions. [2023-11-26 10:48:17,235 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2023-11-26 10:48:17,235 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:17,235 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:17,236 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-26 10:48:17,236 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:17,238 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:17,238 INFO L85 PathProgramCache]: Analyzing trace with hash -921157841, now seen corresponding path program 1 times [2023-11-26 10:48:17,239 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:17,239 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1512625192] [2023-11-26 10:48:17,239 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:17,240 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:17,285 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:17,403 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-26 10:48:17,415 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:17,417 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-26 10:48:17,417 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:17,418 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1512625192] [2023-11-26 10:48:17,418 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1512625192] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:48:17,418 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 10:48:17,418 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-26 10:48:17,419 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1122830463] [2023-11-26 10:48:17,419 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:48:17,420 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-26 10:48:17,420 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:17,421 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-26 10:48:17,421 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 10:48:17,422 INFO L87 Difference]: Start difference. First operand 79 states and 109 transitions. Second operand has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-26 10:48:17,486 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:17,488 INFO L93 Difference]: Finished difference Result 128 states and 176 transitions. [2023-11-26 10:48:17,488 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-26 10:48:17,488 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 18 [2023-11-26 10:48:17,489 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:17,490 INFO L225 Difference]: With dead ends: 128 [2023-11-26 10:48:17,492 INFO L226 Difference]: Without dead ends: 71 [2023-11-26 10:48:17,493 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 10:48:17,496 INFO L413 NwaCegarLoop]: 84 mSDtfsCounter, 14 mSDsluCounter, 68 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 152 SdHoareTripleChecker+Invalid, 24 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:17,498 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 152 Invalid, 24 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-26 10:48:17,500 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 71 states. [2023-11-26 10:48:17,510 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 71 to 71. [2023-11-26 10:48:17,512 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 71 states, 48 states have (on average 1.4583333333333333) internal successors, (70), 58 states have internal predecessors, (70), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 9 states have call predecessors, (14), 14 states have call successors, (14) [2023-11-26 10:48:17,521 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 71 states to 71 states and 98 transitions. [2023-11-26 10:48:17,522 INFO L78 Accepts]: Start accepts. Automaton has 71 states and 98 transitions. Word has length 18 [2023-11-26 10:48:17,522 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:17,522 INFO L495 AbstractCegarLoop]: Abstraction has 71 states and 98 transitions. [2023-11-26 10:48:17,523 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-26 10:48:17,523 INFO L276 IsEmpty]: Start isEmpty. Operand 71 states and 98 transitions. [2023-11-26 10:48:17,527 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2023-11-26 10:48:17,528 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:17,528 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:17,528 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-26 10:48:17,528 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:17,529 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:17,529 INFO L85 PathProgramCache]: Analyzing trace with hash -1423092211, now seen corresponding path program 1 times [2023-11-26 10:48:17,529 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:17,530 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1855159890] [2023-11-26 10:48:17,530 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:17,530 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:17,563 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:17,667 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-26 10:48:17,672 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:17,679 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-26 10:48:17,679 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:17,679 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1855159890] [2023-11-26 10:48:17,680 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1855159890] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:48:17,680 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 10:48:17,680 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-26 10:48:17,680 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1226169659] [2023-11-26 10:48:17,680 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:48:17,681 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-26 10:48:17,681 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:17,682 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-26 10:48:17,682 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 10:48:17,682 INFO L87 Difference]: Start difference. First operand 71 states and 98 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-26 10:48:17,778 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:17,778 INFO L93 Difference]: Finished difference Result 209 states and 291 transitions. [2023-11-26 10:48:17,783 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-26 10:48:17,783 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 21 [2023-11-26 10:48:17,784 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:17,786 INFO L225 Difference]: With dead ends: 209 [2023-11-26 10:48:17,786 INFO L226 Difference]: Without dead ends: 140 [2023-11-26 10:48:17,787 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 10:48:17,793 INFO L413 NwaCegarLoop]: 97 mSDtfsCounter, 92 mSDsluCounter, 82 mSDsCounter, 0 mSdLazyCounter, 30 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 92 SdHoareTripleChecker+Valid, 179 SdHoareTripleChecker+Invalid, 31 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 30 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:17,794 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [92 Valid, 179 Invalid, 31 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 30 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-26 10:48:17,795 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 140 states. [2023-11-26 10:48:17,824 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 140 to 137. [2023-11-26 10:48:17,825 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 137 states, 92 states have (on average 1.4673913043478262) internal successors, (135), 111 states have internal predecessors, (135), 28 states have call successors, (28), 16 states have call predecessors, (28), 16 states have return successors, (28), 17 states have call predecessors, (28), 28 states have call successors, (28) [2023-11-26 10:48:17,827 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 137 states to 137 states and 191 transitions. [2023-11-26 10:48:17,827 INFO L78 Accepts]: Start accepts. Automaton has 137 states and 191 transitions. Word has length 21 [2023-11-26 10:48:17,828 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:17,828 INFO L495 AbstractCegarLoop]: Abstraction has 137 states and 191 transitions. [2023-11-26 10:48:17,828 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-26 10:48:17,829 INFO L276 IsEmpty]: Start isEmpty. Operand 137 states and 191 transitions. [2023-11-26 10:48:17,831 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2023-11-26 10:48:17,831 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:17,831 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:17,831 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-26 10:48:17,832 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:17,832 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:17,833 INFO L85 PathProgramCache]: Analyzing trace with hash -2091259468, now seen corresponding path program 1 times [2023-11-26 10:48:17,833 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:17,833 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [469682589] [2023-11-26 10:48:17,834 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:17,834 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:17,852 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:17,930 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-26 10:48:17,950 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:17,954 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-26 10:48:17,954 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:17,955 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [469682589] [2023-11-26 10:48:17,955 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [469682589] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:48:17,955 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 10:48:17,955 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-26 10:48:17,956 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1289053102] [2023-11-26 10:48:17,956 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:48:17,956 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-26 10:48:17,957 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:17,957 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-26 10:48:17,957 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 10:48:17,958 INFO L87 Difference]: Start difference. First operand 137 states and 191 transitions. Second operand has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-26 10:48:18,037 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:18,038 INFO L93 Difference]: Finished difference Result 272 states and 384 transitions. [2023-11-26 10:48:18,038 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-26 10:48:18,039 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2023-11-26 10:48:18,039 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:18,044 INFO L225 Difference]: With dead ends: 272 [2023-11-26 10:48:18,044 INFO L226 Difference]: Without dead ends: 270 [2023-11-26 10:48:18,045 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-26 10:48:18,047 INFO L413 NwaCegarLoop]: 83 mSDtfsCounter, 74 mSDsluCounter, 80 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 74 SdHoareTripleChecker+Valid, 163 SdHoareTripleChecker+Invalid, 34 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:18,048 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [74 Valid, 163 Invalid, 34 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-26 10:48:18,049 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 270 states. [2023-11-26 10:48:18,113 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 270 to 270. [2023-11-26 10:48:18,120 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 270 states, 181 states have (on average 1.4640883977900552) internal successors, (265), 218 states have internal predecessors, (265), 56 states have call successors, (56), 32 states have call predecessors, (56), 32 states have return successors, (60), 34 states have call predecessors, (60), 56 states have call successors, (60) [2023-11-26 10:48:18,126 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 270 states to 270 states and 381 transitions. [2023-11-26 10:48:18,127 INFO L78 Accepts]: Start accepts. Automaton has 270 states and 381 transitions. Word has length 24 [2023-11-26 10:48:18,128 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:18,129 INFO L495 AbstractCegarLoop]: Abstraction has 270 states and 381 transitions. [2023-11-26 10:48:18,129 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-26 10:48:18,130 INFO L276 IsEmpty]: Start isEmpty. Operand 270 states and 381 transitions. [2023-11-26 10:48:18,135 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2023-11-26 10:48:18,139 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:18,139 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:18,139 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-26 10:48:18,140 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:18,141 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:18,142 INFO L85 PathProgramCache]: Analyzing trace with hash 270284497, now seen corresponding path program 1 times [2023-11-26 10:48:18,142 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:18,143 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1630914486] [2023-11-26 10:48:18,144 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:18,144 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:18,195 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:18,311 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-26 10:48:18,317 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:18,377 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-26 10:48:18,382 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:18,385 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2023-11-26 10:48:18,386 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:18,389 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 16 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2023-11-26 10:48:18,391 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:18,391 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1630914486] [2023-11-26 10:48:18,392 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1630914486] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:48:18,393 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 10:48:18,394 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-26 10:48:18,394 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1001061170] [2023-11-26 10:48:18,394 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:48:18,395 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-26 10:48:18,396 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:18,396 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-26 10:48:18,397 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-26 10:48:18,398 INFO L87 Difference]: Start difference. First operand 270 states and 381 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-26 10:48:18,996 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:18,996 INFO L93 Difference]: Finished difference Result 792 states and 1169 transitions. [2023-11-26 10:48:18,997 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-11-26 10:48:18,997 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 45 [2023-11-26 10:48:18,998 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:19,006 INFO L225 Difference]: With dead ends: 792 [2023-11-26 10:48:19,006 INFO L226 Difference]: Without dead ends: 524 [2023-11-26 10:48:19,011 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-11-26 10:48:19,012 INFO L413 NwaCegarLoop]: 50 mSDtfsCounter, 129 mSDsluCounter, 115 mSDsCounter, 0 mSdLazyCounter, 230 mSolverCounterSat, 49 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 133 SdHoareTripleChecker+Valid, 165 SdHoareTripleChecker+Invalid, 279 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 49 IncrementalHoareTripleChecker+Valid, 230 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:19,013 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [133 Valid, 165 Invalid, 279 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [49 Valid, 230 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-26 10:48:19,015 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 524 states. [2023-11-26 10:48:19,185 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 524 to 401. [2023-11-26 10:48:19,187 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 401 states, 271 states have (on average 1.3690036900369005) internal successors, (371), 302 states have internal predecessors, (371), 65 states have call successors, (65), 53 states have call predecessors, (65), 64 states have return successors, (107), 60 states have call predecessors, (107), 65 states have call successors, (107) [2023-11-26 10:48:19,192 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 401 states to 401 states and 543 transitions. [2023-11-26 10:48:19,193 INFO L78 Accepts]: Start accepts. Automaton has 401 states and 543 transitions. Word has length 45 [2023-11-26 10:48:19,194 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:19,194 INFO L495 AbstractCegarLoop]: Abstraction has 401 states and 543 transitions. [2023-11-26 10:48:19,194 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-11-26 10:48:19,194 INFO L276 IsEmpty]: Start isEmpty. Operand 401 states and 543 transitions. [2023-11-26 10:48:19,199 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 65 [2023-11-26 10:48:19,200 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:19,200 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:19,200 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-26 10:48:19,201 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:19,201 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:19,202 INFO L85 PathProgramCache]: Analyzing trace with hash 1707122157, now seen corresponding path program 1 times [2023-11-26 10:48:19,202 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:19,202 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [589119049] [2023-11-26 10:48:19,202 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:19,203 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:19,227 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:19,285 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-26 10:48:19,298 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:19,335 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-26 10:48:19,340 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:19,356 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:19,368 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:19,412 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-26 10:48:19,414 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:19,416 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 56 [2023-11-26 10:48:19,418 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:19,420 INFO L134 CoverageAnalysis]: Checked inductivity of 19 backedges. 11 proven. 0 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2023-11-26 10:48:19,421 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:19,421 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [589119049] [2023-11-26 10:48:19,421 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [589119049] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:48:19,422 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-26 10:48:19,422 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-26 10:48:19,422 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1058208982] [2023-11-26 10:48:19,423 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:48:19,423 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-26 10:48:19,424 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:19,425 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-26 10:48:19,425 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2023-11-26 10:48:19,426 INFO L87 Difference]: Start difference. First operand 401 states and 543 transitions. Second operand has 7 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 3 states have call successors, (4) [2023-11-26 10:48:19,956 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:19,957 INFO L93 Difference]: Finished difference Result 715 states and 999 transitions. [2023-11-26 10:48:19,957 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-26 10:48:19,958 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 3 states have call successors, (4) Word has length 64 [2023-11-26 10:48:19,958 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:19,962 INFO L225 Difference]: With dead ends: 715 [2023-11-26 10:48:19,962 INFO L226 Difference]: Without dead ends: 316 [2023-11-26 10:48:19,964 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 23 GetRequests, 14 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=32, Invalid=78, Unknown=0, NotChecked=0, Total=110 [2023-11-26 10:48:19,966 INFO L413 NwaCegarLoop]: 72 mSDtfsCounter, 111 mSDsluCounter, 250 mSDsCounter, 0 mSdLazyCounter, 393 mSolverCounterSat, 29 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 119 SdHoareTripleChecker+Valid, 322 SdHoareTripleChecker+Invalid, 422 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 29 IncrementalHoareTripleChecker+Valid, 393 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:19,967 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [119 Valid, 322 Invalid, 422 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [29 Valid, 393 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-26 10:48:19,968 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 316 states. [2023-11-26 10:48:20,014 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 316 to 260. [2023-11-26 10:48:20,016 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 260 states, 181 states have (on average 1.3370165745856353) internal successors, (242), 199 states have internal predecessors, (242), 39 states have call successors, (39), 30 states have call predecessors, (39), 39 states have return successors, (65), 40 states have call predecessors, (65), 39 states have call successors, (65) [2023-11-26 10:48:20,019 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 346 transitions. [2023-11-26 10:48:20,019 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 346 transitions. Word has length 64 [2023-11-26 10:48:20,020 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:20,020 INFO L495 AbstractCegarLoop]: Abstraction has 260 states and 346 transitions. [2023-11-26 10:48:20,020 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 3 states have call successors, (4) [2023-11-26 10:48:20,020 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 346 transitions. [2023-11-26 10:48:20,023 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 83 [2023-11-26 10:48:20,023 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:20,023 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:20,024 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-26 10:48:20,024 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:20,024 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:20,025 INFO L85 PathProgramCache]: Analyzing trace with hash 1403480148, now seen corresponding path program 1 times [2023-11-26 10:48:20,025 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:20,025 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [335696027] [2023-11-26 10:48:20,025 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:20,026 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:20,054 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:20,212 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-26 10:48:20,218 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:20,282 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-26 10:48:20,286 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:20,301 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:20,304 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:20,333 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-26 10:48:20,335 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:20,337 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 52 [2023-11-26 10:48:20,338 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:20,340 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 57 [2023-11-26 10:48:20,343 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:20,347 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:20,350 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:20,353 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 74 [2023-11-26 10:48:20,355 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:20,357 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 11 proven. 8 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2023-11-26 10:48:20,358 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:20,358 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [335696027] [2023-11-26 10:48:20,358 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [335696027] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-26 10:48:20,358 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [281508937] [2023-11-26 10:48:20,358 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:20,359 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-26 10:48:20,359 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 [2023-11-26 10:48:20,363 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-26 10:48:20,390 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-26 10:48:20,538 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:20,541 INFO L262 TraceCheckSpWp]: Trace formula consists of 321 conjuncts, 4 conjunts are in the unsatisfiable core [2023-11-26 10:48:20,556 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-26 10:48:20,646 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 19 proven. 0 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2023-11-26 10:48:20,646 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-26 10:48:20,646 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [281508937] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:48:20,646 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-26 10:48:20,647 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [6] total 8 [2023-11-26 10:48:20,647 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1749399815] [2023-11-26 10:48:20,647 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:48:20,648 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-26 10:48:20,648 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:20,649 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-26 10:48:20,649 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2023-11-26 10:48:20,649 INFO L87 Difference]: Start difference. First operand 260 states and 346 transitions. Second operand has 4 states, 4 states have (on average 13.5) internal successors, (54), 4 states have internal predecessors, (54), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-26 10:48:20,791 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:20,791 INFO L93 Difference]: Finished difference Result 532 states and 735 transitions. [2023-11-26 10:48:20,792 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-26 10:48:20,792 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 13.5) internal successors, (54), 4 states have internal predecessors, (54), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 2 states have call successors, (7) Word has length 82 [2023-11-26 10:48:20,792 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:20,795 INFO L225 Difference]: With dead ends: 532 [2023-11-26 10:48:20,795 INFO L226 Difference]: Without dead ends: 274 [2023-11-26 10:48:20,797 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 105 GetRequests, 98 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=20, Invalid=52, Unknown=0, NotChecked=0, Total=72 [2023-11-26 10:48:20,798 INFO L413 NwaCegarLoop]: 86 mSDtfsCounter, 6 mSDsluCounter, 166 mSDsCounter, 0 mSdLazyCounter, 51 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 7 SdHoareTripleChecker+Valid, 252 SdHoareTripleChecker+Invalid, 51 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 51 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:20,799 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [7 Valid, 252 Invalid, 51 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 51 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-26 10:48:20,800 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 274 states. [2023-11-26 10:48:20,841 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 274 to 264. [2023-11-26 10:48:20,843 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 264 states, 185 states have (on average 1.3297297297297297) internal successors, (246), 203 states have internal predecessors, (246), 39 states have call successors, (39), 30 states have call predecessors, (39), 39 states have return successors, (65), 40 states have call predecessors, (65), 39 states have call successors, (65) [2023-11-26 10:48:20,846 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 264 states to 264 states and 350 transitions. [2023-11-26 10:48:20,847 INFO L78 Accepts]: Start accepts. Automaton has 264 states and 350 transitions. Word has length 82 [2023-11-26 10:48:20,847 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:20,847 INFO L495 AbstractCegarLoop]: Abstraction has 264 states and 350 transitions. [2023-11-26 10:48:20,848 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 13.5) internal successors, (54), 4 states have internal predecessors, (54), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-26 10:48:20,848 INFO L276 IsEmpty]: Start isEmpty. Operand 264 states and 350 transitions. [2023-11-26 10:48:20,851 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 83 [2023-11-26 10:48:20,851 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:20,851 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:20,869 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-26 10:48:21,059 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-26 10:48:21,059 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:21,059 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:21,060 INFO L85 PathProgramCache]: Analyzing trace with hash -702860200, now seen corresponding path program 1 times [2023-11-26 10:48:21,060 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:21,060 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1555647451] [2023-11-26 10:48:21,060 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:21,060 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:21,076 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:21,184 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-26 10:48:21,190 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:21,281 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-26 10:48:21,284 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:21,309 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:21,312 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:21,328 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-26 10:48:21,329 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:21,332 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 52 [2023-11-26 10:48:21,335 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:21,337 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 57 [2023-11-26 10:48:21,341 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:21,345 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:21,347 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:21,351 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 74 [2023-11-26 10:48:21,352 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:21,355 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 18 proven. 8 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-26 10:48:21,355 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:21,355 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1555647451] [2023-11-26 10:48:21,355 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1555647451] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-26 10:48:21,356 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1374519983] [2023-11-26 10:48:21,356 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:21,356 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-26 10:48:21,356 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 [2023-11-26 10:48:21,357 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-26 10:48:21,381 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-26 10:48:21,503 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:21,505 INFO L262 TraceCheckSpWp]: Trace formula consists of 321 conjuncts, 4 conjunts are in the unsatisfiable core [2023-11-26 10:48:21,509 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-26 10:48:21,678 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 36 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-26 10:48:21,686 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-26 10:48:21,687 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1374519983] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:48:21,687 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-26 10:48:21,687 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [8] total 11 [2023-11-26 10:48:21,687 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [244404320] [2023-11-26 10:48:21,687 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:48:21,688 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-26 10:48:21,688 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:21,689 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-26 10:48:21,689 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2023-11-26 10:48:21,689 INFO L87 Difference]: Start difference. First operand 264 states and 350 transitions. Second operand has 6 states, 6 states have (on average 10.666666666666666) internal successors, (64), 6 states have internal predecessors, (64), 5 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 5 states have call successors, (8) [2023-11-26 10:48:22,210 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:22,210 INFO L93 Difference]: Finished difference Result 862 states and 1236 transitions. [2023-11-26 10:48:22,211 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-26 10:48:22,211 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 10.666666666666666) internal successors, (64), 6 states have internal predecessors, (64), 5 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 5 states have call successors, (8) Word has length 82 [2023-11-26 10:48:22,211 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:22,216 INFO L225 Difference]: With dead ends: 862 [2023-11-26 10:48:22,217 INFO L226 Difference]: Without dead ends: 600 [2023-11-26 10:48:22,219 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 105 GetRequests, 94 SyntacticMatches, 1 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 13 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=31, Invalid=101, Unknown=0, NotChecked=0, Total=132 [2023-11-26 10:48:22,223 INFO L413 NwaCegarLoop]: 83 mSDtfsCounter, 169 mSDsluCounter, 177 mSDsCounter, 0 mSdLazyCounter, 407 mSolverCounterSat, 67 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 184 SdHoareTripleChecker+Valid, 260 SdHoareTripleChecker+Invalid, 474 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 67 IncrementalHoareTripleChecker+Valid, 407 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:22,223 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [184 Valid, 260 Invalid, 474 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [67 Valid, 407 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-26 10:48:22,225 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 600 states. [2023-11-26 10:48:22,324 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 600 to 592. [2023-11-26 10:48:22,326 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 592 states, 415 states have (on average 1.3156626506024096) internal successors, (546), 450 states have internal predecessors, (546), 94 states have call successors, (94), 81 states have call predecessors, (94), 82 states have return successors, (171), 84 states have call predecessors, (171), 94 states have call successors, (171) [2023-11-26 10:48:22,332 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 592 states to 592 states and 811 transitions. [2023-11-26 10:48:22,334 INFO L78 Accepts]: Start accepts. Automaton has 592 states and 811 transitions. Word has length 82 [2023-11-26 10:48:22,334 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:22,334 INFO L495 AbstractCegarLoop]: Abstraction has 592 states and 811 transitions. [2023-11-26 10:48:22,334 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 10.666666666666666) internal successors, (64), 6 states have internal predecessors, (64), 5 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 5 states have call successors, (8) [2023-11-26 10:48:22,335 INFO L276 IsEmpty]: Start isEmpty. Operand 592 states and 811 transitions. [2023-11-26 10:48:22,339 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 80 [2023-11-26 10:48:22,339 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:22,339 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:22,356 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2023-11-26 10:48:22,545 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-26 10:48:22,545 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:22,546 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:22,546 INFO L85 PathProgramCache]: Analyzing trace with hash -1816305105, now seen corresponding path program 1 times [2023-11-26 10:48:22,546 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:22,546 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1829356611] [2023-11-26 10:48:22,546 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:22,547 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:22,563 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:22,645 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-26 10:48:22,646 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:22,657 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-26 10:48:22,662 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:22,695 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-26 10:48:22,698 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:22,705 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:22,708 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:22,716 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-26 10:48:22,718 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:22,720 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 54 [2023-11-26 10:48:22,722 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:22,726 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:22,728 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:22,734 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 71 [2023-11-26 10:48:22,736 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:22,737 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 17 proven. 6 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-26 10:48:22,737 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:22,738 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1829356611] [2023-11-26 10:48:22,738 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1829356611] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-26 10:48:22,738 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2000010881] [2023-11-26 10:48:22,738 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:22,738 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-26 10:48:22,739 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 [2023-11-26 10:48:22,740 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-26 10:48:22,743 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-11-26 10:48:22,848 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:22,850 INFO L262 TraceCheckSpWp]: Trace formula consists of 309 conjuncts, 4 conjunts are in the unsatisfiable core [2023-11-26 10:48:22,863 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-26 10:48:22,933 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 35 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-26 10:48:22,933 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-26 10:48:22,934 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2000010881] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:48:22,934 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-26 10:48:22,934 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [8] total 8 [2023-11-26 10:48:22,934 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1752115343] [2023-11-26 10:48:22,936 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:48:22,939 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-26 10:48:22,939 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:22,940 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-26 10:48:22,943 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2023-11-26 10:48:22,943 INFO L87 Difference]: Start difference. First operand 592 states and 811 transitions. Second operand has 3 states, 3 states have (on average 20.666666666666668) internal successors, (62), 3 states have internal predecessors, (62), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2023-11-26 10:48:23,086 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:23,086 INFO L93 Difference]: Finished difference Result 1118 states and 1544 transitions. [2023-11-26 10:48:23,087 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-26 10:48:23,087 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 20.666666666666668) internal successors, (62), 3 states have internal predecessors, (62), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) Word has length 79 [2023-11-26 10:48:23,088 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:23,093 INFO L225 Difference]: With dead ends: 1118 [2023-11-26 10:48:23,094 INFO L226 Difference]: Without dead ends: 528 [2023-11-26 10:48:23,097 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 102 GetRequests, 96 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=16, Invalid=40, Unknown=0, NotChecked=0, Total=56 [2023-11-26 10:48:23,100 INFO L413 NwaCegarLoop]: 119 mSDtfsCounter, 50 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 38 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 50 SdHoareTripleChecker+Valid, 172 SdHoareTripleChecker+Invalid, 42 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 38 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:23,101 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [50 Valid, 172 Invalid, 42 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 38 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-26 10:48:23,103 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 528 states. [2023-11-26 10:48:23,181 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 528 to 528. [2023-11-26 10:48:23,183 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 528 states, 369 states have (on average 1.2764227642276422) internal successors, (471), 402 states have internal predecessors, (471), 85 states have call successors, (85), 72 states have call predecessors, (85), 73 states have return successors, (122), 77 states have call predecessors, (122), 85 states have call successors, (122) [2023-11-26 10:48:23,188 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 528 states to 528 states and 678 transitions. [2023-11-26 10:48:23,189 INFO L78 Accepts]: Start accepts. Automaton has 528 states and 678 transitions. Word has length 79 [2023-11-26 10:48:23,191 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:23,192 INFO L495 AbstractCegarLoop]: Abstraction has 528 states and 678 transitions. [2023-11-26 10:48:23,192 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 20.666666666666668) internal successors, (62), 3 states have internal predecessors, (62), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2023-11-26 10:48:23,192 INFO L276 IsEmpty]: Start isEmpty. Operand 528 states and 678 transitions. [2023-11-26 10:48:23,201 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 88 [2023-11-26 10:48:23,201 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:23,201 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:23,219 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2023-11-26 10:48:23,409 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-26 10:48:23,410 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:23,411 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:23,411 INFO L85 PathProgramCache]: Analyzing trace with hash 1378746012, now seen corresponding path program 1 times [2023-11-26 10:48:23,412 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:23,412 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [7085625] [2023-11-26 10:48:23,412 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:23,412 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:23,455 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,570 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-26 10:48:23,573 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,586 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-26 10:48:23,595 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,657 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-26 10:48:23,660 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,664 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:23,666 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,669 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-26 10:48:23,671 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,686 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 56 [2023-11-26 10:48:23,687 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,689 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 61 [2023-11-26 10:48:23,692 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,696 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-26 10:48:23,697 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,699 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:23,700 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,702 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 79 [2023-11-26 10:48:23,703 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,705 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 18 proven. 2 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2023-11-26 10:48:23,705 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:23,705 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [7085625] [2023-11-26 10:48:23,706 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [7085625] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-26 10:48:23,706 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [310998654] [2023-11-26 10:48:23,706 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:23,706 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-26 10:48:23,707 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 [2023-11-26 10:48:23,708 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-26 10:48:23,733 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2023-11-26 10:48:23,842 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:23,845 INFO L262 TraceCheckSpWp]: Trace formula consists of 328 conjuncts, 9 conjunts are in the unsatisfiable core [2023-11-26 10:48:23,856 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-26 10:48:24,006 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 30 proven. 2 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-26 10:48:24,006 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-26 10:48:24,261 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 18 proven. 4 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2023-11-26 10:48:24,261 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [310998654] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-26 10:48:24,261 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-26 10:48:24,262 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 5, 6] total 16 [2023-11-26 10:48:24,262 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1799270485] [2023-11-26 10:48:24,262 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-26 10:48:24,263 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 16 states [2023-11-26 10:48:24,263 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:24,265 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 16 interpolants. [2023-11-26 10:48:24,265 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=38, Invalid=202, Unknown=0, NotChecked=0, Total=240 [2023-11-26 10:48:24,266 INFO L87 Difference]: Start difference. First operand 528 states and 678 transitions. Second operand has 16 states, 15 states have (on average 8.4) internal successors, (126), 12 states have internal predecessors, (126), 7 states have call successors, (26), 7 states have call predecessors, (26), 7 states have return successors, (24), 8 states have call predecessors, (24), 7 states have call successors, (24) [2023-11-26 10:48:29,925 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:29,925 INFO L93 Difference]: Finished difference Result 2985 states and 4165 transitions. [2023-11-26 10:48:29,926 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 114 states. [2023-11-26 10:48:29,926 INFO L78 Accepts]: Start accepts. Automaton has has 16 states, 15 states have (on average 8.4) internal successors, (126), 12 states have internal predecessors, (126), 7 states have call successors, (26), 7 states have call predecessors, (26), 7 states have return successors, (24), 8 states have call predecessors, (24), 7 states have call successors, (24) Word has length 87 [2023-11-26 10:48:29,927 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:29,949 INFO L225 Difference]: With dead ends: 2985 [2023-11-26 10:48:29,949 INFO L226 Difference]: Without dead ends: 2459 [2023-11-26 10:48:29,964 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 339 GetRequests, 213 SyntacticMatches, 2 SemanticMatches, 124 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6082 ImplicationChecksByTransitivity, 2.4s TimeCoverageRelationStatistics Valid=1562, Invalid=14188, Unknown=0, NotChecked=0, Total=15750 [2023-11-26 10:48:29,965 INFO L413 NwaCegarLoop]: 187 mSDtfsCounter, 1057 mSDsluCounter, 1109 mSDsCounter, 0 mSdLazyCounter, 3069 mSolverCounterSat, 547 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1066 SdHoareTripleChecker+Valid, 1296 SdHoareTripleChecker+Invalid, 3616 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.1s SdHoareTripleChecker+Time, 547 IncrementalHoareTripleChecker+Valid, 3069 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.9s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:29,967 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1066 Valid, 1296 Invalid, 3616 Unknown, 0 Unchecked, 0.1s Time], IncrementalHoareTripleChecker [547 Valid, 3069 Invalid, 0 Unknown, 0 Unchecked, 2.9s Time] [2023-11-26 10:48:29,972 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2459 states. [2023-11-26 10:48:30,206 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2459 to 1926. [2023-11-26 10:48:30,211 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1926 states, 1345 states have (on average 1.1910780669144982) internal successors, (1602), 1456 states have internal predecessors, (1602), 310 states have call successors, (310), 248 states have call predecessors, (310), 270 states have return successors, (471), 289 states have call predecessors, (471), 310 states have call successors, (471) [2023-11-26 10:48:30,227 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1926 states to 1926 states and 2383 transitions. [2023-11-26 10:48:30,228 INFO L78 Accepts]: Start accepts. Automaton has 1926 states and 2383 transitions. Word has length 87 [2023-11-26 10:48:30,229 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:30,229 INFO L495 AbstractCegarLoop]: Abstraction has 1926 states and 2383 transitions. [2023-11-26 10:48:30,229 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 16 states, 15 states have (on average 8.4) internal successors, (126), 12 states have internal predecessors, (126), 7 states have call successors, (26), 7 states have call predecessors, (26), 7 states have return successors, (24), 8 states have call predecessors, (24), 7 states have call successors, (24) [2023-11-26 10:48:30,230 INFO L276 IsEmpty]: Start isEmpty. Operand 1926 states and 2383 transitions. [2023-11-26 10:48:30,232 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 92 [2023-11-26 10:48:30,233 INFO L187 NwaCegarLoop]: Found error trace [2023-11-26 10:48:30,233 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:30,240 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2023-11-26 10:48:30,439 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-26 10:48:30,440 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-26 10:48:30,441 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-26 10:48:30,441 INFO L85 PathProgramCache]: Analyzing trace with hash 1054949402, now seen corresponding path program 1 times [2023-11-26 10:48:30,441 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-26 10:48:30,441 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [992362591] [2023-11-26 10:48:30,441 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:30,442 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-26 10:48:30,462 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,559 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-26 10:48:30,560 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,567 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-26 10:48:30,568 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,583 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2023-11-26 10:48:30,589 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,607 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-26 10:48:30,609 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,612 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:30,614 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,663 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2023-11-26 10:48:30,664 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,665 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 60 [2023-11-26 10:48:30,666 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,682 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 65 [2023-11-26 10:48:30,685 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,688 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-26 10:48:30,689 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,691 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-26 10:48:30,692 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,693 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 83 [2023-11-26 10:48:30,694 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,695 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 15 proven. 2 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2023-11-26 10:48:30,695 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-26 10:48:30,696 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [992362591] [2023-11-26 10:48:30,696 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [992362591] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-26 10:48:30,696 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1930741758] [2023-11-26 10:48:30,696 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-26 10:48:30,696 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-26 10:48:30,697 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 [2023-11-26 10:48:30,698 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-26 10:48:30,722 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2023-11-26 10:48:30,799 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-26 10:48:30,800 INFO L262 TraceCheckSpWp]: Trace formula consists of 339 conjuncts, 7 conjunts are in the unsatisfiable core [2023-11-26 10:48:30,804 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-26 10:48:30,937 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 25 proven. 0 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2023-11-26 10:48:30,937 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-26 10:48:30,938 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1930741758] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-26 10:48:30,938 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-26 10:48:30,938 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [10] total 14 [2023-11-26 10:48:30,940 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1250175825] [2023-11-26 10:48:30,941 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-26 10:48:30,941 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-26 10:48:30,941 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-26 10:48:30,942 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-26 10:48:30,942 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=31, Invalid=151, Unknown=0, NotChecked=0, Total=182 [2023-11-26 10:48:30,943 INFO L87 Difference]: Start difference. First operand 1926 states and 2383 transitions. Second operand has 6 states, 5 states have (on average 13.0) internal successors, (65), 5 states have internal predecessors, (65), 3 states have call successors, (11), 3 states have call predecessors, (11), 4 states have return successors, (11), 4 states have call predecessors, (11), 3 states have call successors, (11) [2023-11-26 10:48:31,216 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-26 10:48:31,216 INFO L93 Difference]: Finished difference Result 3339 states and 4121 transitions. [2023-11-26 10:48:31,217 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2023-11-26 10:48:31,217 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 13.0) internal successors, (65), 5 states have internal predecessors, (65), 3 states have call successors, (11), 3 states have call predecessors, (11), 4 states have return successors, (11), 4 states have call predecessors, (11), 3 states have call successors, (11) Word has length 91 [2023-11-26 10:48:31,218 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-26 10:48:31,220 INFO L225 Difference]: With dead ends: 3339 [2023-11-26 10:48:31,220 INFO L226 Difference]: Without dead ends: 0 [2023-11-26 10:48:31,230 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 119 GetRequests, 105 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 20 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=39, Invalid=201, Unknown=0, NotChecked=0, Total=240 [2023-11-26 10:48:31,230 INFO L413 NwaCegarLoop]: 141 mSDtfsCounter, 30 mSDsluCounter, 470 mSDsCounter, 0 mSdLazyCounter, 143 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 31 SdHoareTripleChecker+Valid, 611 SdHoareTripleChecker+Invalid, 145 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 143 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-26 10:48:31,231 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [31 Valid, 611 Invalid, 145 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 143 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-26 10:48:31,232 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-26 10:48:31,232 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-26 10:48:31,232 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-26 10:48:31,233 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-26 10:48:31,233 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 91 [2023-11-26 10:48:31,233 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-26 10:48:31,234 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-26 10:48:31,234 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 13.0) internal successors, (65), 5 states have internal predecessors, (65), 3 states have call successors, (11), 3 states have call predecessors, (11), 4 states have return successors, (11), 4 states have call predecessors, (11), 3 states have call successors, (11) [2023-11-26 10:48:31,234 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-26 10:48:31,234 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-26 10:48:31,237 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-26 10:48:31,258 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2023-11-26 10:48:31,445 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-26 10:48:31,447 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-26 10:48:40,906 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 702 709) no Hoare annotation was computed. [2023-11-26 10:48:40,908 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 702 709) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (< |old(~pumpRunning~0)| 1)) (.cse3 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0)) .cse2) (or .cse0 (< ~waterLevel~0 1) .cse1 .cse2 .cse3) (or .cse0 .cse1 .cse2 (not (= ~methAndRunningLastTime~0 0)) .cse3))) [2023-11-26 10:48:40,908 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 609 615) no Hoare annotation was computed. [2023-11-26 10:48:40,909 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 609 615) the Hoare annotation is: true [2023-11-26 10:48:40,909 INFO L899 garLoopResultBuilder]: For program point L463-1(lines 459 470) no Hoare annotation was computed. [2023-11-26 10:48:40,913 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 459 470) the Hoare annotation is: (let ((.cse0 (< ~pumpRunning~0 1)) (.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (< |old(~methaneLevelCritical~0)| 1)) (.cse4 (not (= |old(~methaneLevelCritical~0)| 0))) (.cse5 (not (= ~pumpRunning~0 0))) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse7 (not (= ~methAndRunningLastTime~0 0))) (.cse8 (not (= 0 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2 .cse3 (< ~waterLevel~0 2)) (or .cse4 .cse5 .cse6 .cse2 .cse7) (or .cse0 .cse4 .cse6 .cse2 .cse7) (or .cse1 .cse5 .cse3 .cse7 .cse8) (or .cse1 .cse5 .cse2 .cse3 .cse7) (or .cse4 .cse5 .cse6 .cse7 .cse8))) [2023-11-26 10:48:40,914 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 459 470) no Hoare annotation was computed. [2023-11-26 10:48:40,914 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 937 966) no Hoare annotation was computed. [2023-11-26 10:48:40,914 INFO L899 garLoopResultBuilder]: For program point L958(line 958) no Hoare annotation was computed. [2023-11-26 10:48:40,914 INFO L899 garLoopResultBuilder]: For program point L951(lines 951 955) no Hoare annotation was computed. [2023-11-26 10:48:40,914 INFO L902 garLoopResultBuilder]: At program point L951-1(lines 951 955) the Hoare annotation is: true [2023-11-26 10:48:40,915 INFO L902 garLoopResultBuilder]: At program point L947-2(lines 947 961) the Hoare annotation is: true [2023-11-26 10:48:40,915 INFO L902 garLoopResultBuilder]: At program point L943(line 943) the Hoare annotation is: true [2023-11-26 10:48:40,915 INFO L899 garLoopResultBuilder]: For program point L943-1(line 943) no Hoare annotation was computed. [2023-11-26 10:48:40,915 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 937 966) the Hoare annotation is: true [2023-11-26 10:48:40,916 INFO L899 garLoopResultBuilder]: For program point L962(lines 937 966) no Hoare annotation was computed. [2023-11-26 10:48:40,916 INFO L895 garLoopResultBuilder]: At program point L688(line 688) the Hoare annotation is: (let ((.cse8 (= 1 ~systemActive~0))) (let ((.cse0 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse6 (not (= ~methaneLevelCritical~0 0))) (.cse5 (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) .cse8 (= |old(~waterLevel~0)| ~waterLevel~0))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (not (= 0 ~systemActive~0))) (.cse1 (not .cse8)) (.cse2 (< |old(~pumpRunning~0)| 1)) (.cse3 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse0 .cse1 .cse5 .cse3) (or .cse1 .cse6 .cse2) (or .cse4 .cse6 .cse7) (or .cse4 .cse0 .cse1 .cse6 .cse5) (or .cse4 .cse3 .cse7) (or .cse1 (< |old(~waterLevel~0)| 2) .cse2 .cse3)))) [2023-11-26 10:48:40,917 INFO L899 garLoopResultBuilder]: For program point L688-1(lines 669 693) no Hoare annotation was computed. [2023-11-26 10:48:40,917 INFO L899 garLoopResultBuilder]: For program point L589-1(lines 588 607) no Hoare annotation was computed. [2023-11-26 10:48:40,917 INFO L895 garLoopResultBuilder]: At program point L552(line 552) the Hoare annotation is: (let ((.cse18 (<= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse17 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse19 (= ~pumpRunning~0 0)) (.cse20 (= 1 ~systemActive~0)) (.cse22 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse21 (= |old(~methAndRunningLastTime~0)| ~methAndRunningLastTime~0))) (let ((.cse14 (and .cse19 .cse20 .cse22 .cse21)) (.cse15 (and (<= 1 ~pumpRunning~0) (= ~methAndRunningLastTime~0 0) .cse20 .cse22)) (.cse2 (and .cse19 .cse22 .cse21)) (.cse3 (not (= 0 ~systemActive~0))) (.cse12 (< 1 |old(~waterLevel~0)|)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse8 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse13 (and .cse17 .cse19 (<= ~waterLevel~0 1) .cse20 .cse22 .cse21)) (.cse16 (and .cse19 .cse20 .cse18)) (.cse6 (<= 1 ~waterLevel~0)) (.cse5 (< |old(~waterLevel~0)| 2)) (.cse11 (< ~methaneLevelCritical~0 1)) (.cse4 (not .cse20)) (.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse9 (not (= |old(~waterLevel~0)| 0))) (.cse7 (< |old(~pumpRunning~0)| 1)) (.cse10 (= ~waterLevel~0 0))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse1 .cse6 .cse7) (or .cse8 .cse4 .cse9 .cse7 .cse10 .cse11) (or .cse12 .cse0 .cse8 .cse4 .cse13 .cse1) (or .cse0 .cse14 .cse8 .cse4 .cse15 .cse11) (or .cse0 .cse14 .cse8 .cse4 .cse1 .cse15) (or .cse8 .cse4 .cse7 .cse16 .cse11) (or .cse0 .cse2 .cse11 .cse3) (or .cse12 .cse0 .cse8 .cse4 .cse13 .cse11) (or .cse4 .cse1 (and .cse17 .cse18) .cse7 .cse16) (or (and .cse19 .cse20 .cse6 .cse18) .cse4 .cse5 .cse7 .cse11) (or .cse4 .cse1 .cse9 .cse7 (and .cse19 .cse20 .cse10) (and .cse21 .cse10))))) [2023-11-26 10:48:40,917 INFO L899 garLoopResultBuilder]: For program point L552-1(line 552) no Hoare annotation was computed. [2023-11-26 10:48:40,918 INFO L899 garLoopResultBuilder]: For program point L420(line 420) no Hoare annotation was computed. [2023-11-26 10:48:40,919 INFO L899 garLoopResultBuilder]: For program point L677(lines 677 685) no Hoare annotation was computed. [2023-11-26 10:48:40,919 INFO L899 garLoopResultBuilder]: For program point L673(lines 673 690) no Hoare annotation was computed. [2023-11-26 10:48:40,919 INFO L899 garLoopResultBuilder]: For program point L558(lines 558 568) no Hoare annotation was computed. [2023-11-26 10:48:40,919 INFO L895 garLoopResultBuilder]: At program point L715(line 715) the Hoare annotation is: (let ((.cse5 (< |old(~waterLevel~0)| 2)) (.cse7 (<= 1 ~waterLevel~0)) (.cse2 (not (= |old(~waterLevel~0)| 0))) (.cse4 (= ~waterLevel~0 0)) (.cse6 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse8 (<= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse3 (< |old(~pumpRunning~0)| 1)) (.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse12 (not (= 0 ~systemActive~0))) (.cse11 (not (= |old(~pumpRunning~0)| 0))) (.cse10 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse9 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 (and (= |old(~methAndRunningLastTime~0)| ~methAndRunningLastTime~0) .cse4)) (or .cse0 .cse5 (and .cse6 .cse7 .cse8) .cse3 .cse9) (or .cse0 .cse5 .cse1 .cse7 .cse3) (or (and .cse6 (= ~methAndRunningLastTime~0 0) .cse8) .cse10 .cse0 .cse3 .cse9) (or .cse10 .cse0 .cse2 .cse3 .cse4 .cse9) (or .cse0 .cse1 (and .cse6 .cse8) .cse3) (or .cse11 .cse1 .cse12) (or .cse11 .cse10 .cse0 .cse1) (or .cse11 .cse9 .cse12) (or .cse11 .cse10 .cse0 .cse9))) [2023-11-26 10:48:40,920 INFO L899 garLoopResultBuilder]: For program point L715-1(line 715) no Hoare annotation was computed. [2023-11-26 10:48:40,920 INFO L899 garLoopResultBuilder]: For program point L554(lines 554 571) no Hoare annotation was computed. [2023-11-26 10:48:40,921 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 585 608) the Hoare annotation is: (let ((.cse6 (= ~methAndRunningLastTime~0 0)) (.cse5 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse13 (= ~pumpRunning~0 0)) (.cse14 (= |old(~pumpRunning~0)| 0)) (.cse7 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse15 (= |old(~methAndRunningLastTime~0)| ~methAndRunningLastTime~0)) (.cse16 (= 0 ~systemActive~0))) (let ((.cse2 (and .cse13 .cse14 .cse7 .cse15 .cse16)) (.cse3 (not .cse16)) (.cse11 (and .cse5 .cse7 .cse15)) (.cse10 (< |old(~pumpRunning~0)| 1)) (.cse4 (< ~methaneLevelCritical~0 1)) (.cse0 (not .cse14)) (.cse8 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse9 (not (= 1 ~systemActive~0))) (.cse12 (and .cse13 .cse6 .cse7)) (.cse1 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse2 .cse4 .cse3) (or (and .cse5 .cse6 .cse7) .cse8 .cse9 .cse10 .cse4) (or .cse9 .cse11 .cse1 .cse10) (or .cse9 (< |old(~waterLevel~0)| 2) .cse11 .cse10 .cse4) (or .cse0 .cse8 .cse9 .cse12 .cse4) (or .cse0 .cse8 .cse9 .cse12 .cse1)))) [2023-11-26 10:48:40,922 INFO L899 garLoopResultBuilder]: For program point L554-1(lines 546 574) no Hoare annotation was computed. [2023-11-26 10:48:40,922 INFO L899 garLoopResultBuilder]: For program point L439(lines 439 443) no Hoare annotation was computed. [2023-11-26 10:48:40,923 INFO L899 garLoopResultBuilder]: For program point L439-2(lines 435 446) no Hoare annotation was computed. [2023-11-26 10:48:40,923 INFO L899 garLoopResultBuilder]: For program point L596-1(lines 596 602) no Hoare annotation was computed. [2023-11-26 10:48:40,924 INFO L899 garLoopResultBuilder]: For program point L559(lines 559 565) no Hoare annotation was computed. [2023-11-26 10:48:40,924 INFO L895 garLoopResultBuilder]: At program point L683(line 683) the Hoare annotation is: (let ((.cse4 (not (= ~methaneLevelCritical~0 0))) (.cse7 (not (= 0 ~systemActive~0))) (.cse5 (< |old(~waterLevel~0)| 2)) (.cse2 (< |old(~pumpRunning~0)| 1)) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse4 (not (= |old(~waterLevel~0)| 0)) .cse2 (and (= |old(~methAndRunningLastTime~0)| ~methAndRunningLastTime~0) (= ~waterLevel~0 0))) (or .cse1 .cse5 .cse4 (<= 1 ~waterLevel~0) .cse2) (or .cse1 .cse4 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= ~waterLevel~0 |old(~waterLevel~0)|)) .cse2) (or .cse6 .cse4 .cse7) (or .cse6 .cse0 .cse1 .cse4) (or .cse6 .cse3 .cse7) (or .cse1 .cse5 .cse2 .cse3) (or .cse6 .cse0 .cse1 .cse3))) [2023-11-26 10:48:40,924 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 585 608) no Hoare annotation was computed. [2023-11-26 10:48:40,924 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 420) no Hoare annotation was computed. [2023-11-26 10:48:40,925 INFO L895 garLoopResultBuilder]: At program point L679(line 679) the Hoare annotation is: (let ((.cse2 (not (= |old(~waterLevel~0)| 0))) (.cse4 (= ~waterLevel~0 0)) (.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse5 (< |old(~waterLevel~0)| 2)) (.cse8 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse9 (<= 1 |timeShift_processEnvironment_~tmp~6#1|)) (.cse6 (<= 1 ~waterLevel~0)) (.cse10 (<= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse3 (< |old(~pumpRunning~0)| 1)) (.cse13 (not (= 0 ~systemActive~0))) (.cse12 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse11 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 (and (= |old(~methAndRunningLastTime~0)| ~methAndRunningLastTime~0) .cse4)) (or .cse0 .cse5 .cse1 .cse6 .cse3) (or .cse7 .cse0 (and .cse8 (= ~methAndRunningLastTime~0 0) .cse9 .cse10) .cse3 .cse11) (or .cse7 .cse0 .cse2 .cse3 .cse4 .cse11) (or .cse0 .cse1 (and .cse8 .cse10) .cse3) (or .cse12 .cse1 .cse13) (or .cse12 .cse7 .cse0 .cse1) (or .cse0 .cse5 (and .cse8 .cse9 .cse6 .cse10) .cse3 .cse11) (or .cse12 .cse11 .cse13) (or .cse12 .cse7 .cse0 .cse11))) [2023-11-26 10:48:40,925 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 471 479) the Hoare annotation is: true [2023-11-26 10:48:40,925 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 471 479) no Hoare annotation was computed. [2023-11-26 10:48:40,925 INFO L895 garLoopResultBuilder]: At program point L861(line 861) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (= 1 ~systemActive~0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse6 (= ~pumpRunning~0 0)) (.cse4 (= ~methAndRunningLastTime~0 0)) (.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse7 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 .cse4 .cse5 .cse2 .cse3) (and .cse6 .cse4 .cse1 .cse2 .cse3) (and .cse6 .cse4 .cse5 .cse2 .cse3) (and .cse6 .cse4 .cse5 .cse3 .cse7) (and .cse6 .cse4 .cse1 .cse3 .cse7))) [2023-11-26 10:48:40,925 INFO L895 garLoopResultBuilder]: At program point L886(lines 839 888) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (= 1 ~systemActive~0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse6 (= ~pumpRunning~0 0)) (.cse4 (= ~methAndRunningLastTime~0 0)) (.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse7 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 .cse4 .cse5 .cse2 .cse3) (and .cse6 .cse4 .cse1 .cse2 .cse3) (and .cse6 .cse4 .cse5 .cse2 .cse3) (and .cse6 .cse4 .cse5 .cse3 .cse7) (and .cse6 .cse4 .cse1 .cse3 .cse7))) [2023-11-26 10:48:40,926 INFO L899 garLoopResultBuilder]: For program point L849(lines 849 855) no Hoare annotation was computed. [2023-11-26 10:48:40,926 INFO L899 garLoopResultBuilder]: For program point L849-1(lines 849 855) no Hoare annotation was computed. [2023-11-26 10:48:40,926 INFO L899 garLoopResultBuilder]: For program point L808(lines 808 814) no Hoare annotation was computed. [2023-11-26 10:48:40,926 INFO L899 garLoopResultBuilder]: For program point L808-1(lines 808 814) no Hoare annotation was computed. [2023-11-26 10:48:40,926 INFO L899 garLoopResultBuilder]: For program point L1019(lines 1019 1026) no Hoare annotation was computed. [2023-11-26 10:48:40,927 INFO L899 garLoopResultBuilder]: For program point L1019-2(lines 1019 1026) no Hoare annotation was computed. [2023-11-26 10:48:40,927 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-26 10:48:40,927 INFO L899 garLoopResultBuilder]: For program point L892(lines 829 896) no Hoare annotation was computed. [2023-11-26 10:48:40,928 INFO L899 garLoopResultBuilder]: For program point L859(lines 859 865) no Hoare annotation was computed. [2023-11-26 10:48:40,928 INFO L899 garLoopResultBuilder]: For program point L859-1(lines 859 865) no Hoare annotation was computed. [2023-11-26 10:48:40,928 INFO L895 garLoopResultBuilder]: At program point L851(line 851) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (= 1 ~systemActive~0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse6 (= ~pumpRunning~0 0)) (.cse4 (= ~methAndRunningLastTime~0 0)) (.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse7 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 .cse4 .cse5 .cse2 .cse3) (and .cse6 .cse4 .cse1 .cse2 .cse3) (and .cse6 .cse4 .cse5 .cse2 .cse3) (and .cse6 .cse4 .cse5 .cse3 .cse7) (and .cse6 .cse4 .cse1 .cse3 .cse7))) [2023-11-26 10:48:40,929 INFO L895 garLoopResultBuilder]: At program point L810(line 810) the Hoare annotation is: (let ((.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 (= ~methAndRunningLastTime~0 0) .cse1 .cse2 .cse3) (and .cse0 (= ~methaneLevelCritical~0 0) .cse2 .cse3))) [2023-11-26 10:48:40,929 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-26 10:48:40,929 INFO L895 garLoopResultBuilder]: At program point L889(lines 838 890) the Hoare annotation is: false [2023-11-26 10:48:40,929 INFO L899 garLoopResultBuilder]: For program point L877(lines 877 883) no Hoare annotation was computed. [2023-11-26 10:48:40,930 INFO L895 garLoopResultBuilder]: At program point L877-2(lines 869 884) the Hoare annotation is: (let ((.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse4 (= ~methAndRunningLastTime~0 0)) (.cse5 (= ~pumpRunning~0 0)) (.cse6 (= 0 ~systemActive~0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2 .cse3) (and .cse0 .cse4 .cse1 .cse2 .cse3) (and .cse5 .cse1 .cse3 .cse6) (and .cse5 .cse4 .cse1 .cse2 .cse3) (and .cse5 .cse4 .cse7 .cse2 .cse3) (and .cse5 .cse7 .cse3 .cse6) (and .cse0 .cse7 .cse2 .cse3))) [2023-11-26 10:48:40,930 INFO L899 garLoopResultBuilder]: For program point L840(lines 839 888) no Hoare annotation was computed. [2023-11-26 10:48:40,930 INFO L899 garLoopResultBuilder]: For program point L869(lines 869 884) no Hoare annotation was computed. [2023-11-26 10:48:40,930 INFO L895 garLoopResultBuilder]: At program point L636(line 636) the Hoare annotation is: (let ((.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse3 (not (= ~methAndRunningLastTime~0 0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 .cse1 (< |old(~pumpRunning~0)| 1)) (or .cse2 .cse0 .cse1 .cse3) (or .cse2 .cse0 .cse3 (< ~methaneLevelCritical~0 1)))) [2023-11-26 10:48:40,930 INFO L899 garLoopResultBuilder]: For program point L636-1(lines 617 641) no Hoare annotation was computed. [2023-11-26 10:48:40,931 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 617 641) the Hoare annotation is: (let ((.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse0 (not (= 1 ~systemActive~0))) (.cse4 (not (= ~methAndRunningLastTime~0 0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 .cse1 (< |old(~pumpRunning~0)| 1)) (or .cse2 .cse3 .cse0 .cse1 .cse4) (or .cse2 .cse3 .cse0 .cse4 (< ~methaneLevelCritical~0 1)))) [2023-11-26 10:48:40,931 INFO L899 garLoopResultBuilder]: For program point L775(lines 775 779) no Hoare annotation was computed. [2023-11-26 10:48:40,933 INFO L899 garLoopResultBuilder]: For program point L775-2(lines 775 779) no Hoare annotation was computed. [2023-11-26 10:48:40,933 INFO L899 garLoopResultBuilder]: For program point isHighWaterSensorDry_returnLabel#1(lines 512 525) no Hoare annotation was computed. [2023-11-26 10:48:40,933 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 617 641) no Hoare annotation was computed. [2023-11-26 10:48:40,933 INFO L895 garLoopResultBuilder]: At program point L631(line 631) the Hoare annotation is: (let ((.cse5 (= 1 ~systemActive~0)) (.cse6 (= |old(~pumpRunning~0)| 0))) (let ((.cse2 (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~4#1| 0) .cse5 .cse6)) (.cse3 (not .cse6)) (.cse0 (not .cse5)) (.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse4 (not (= ~methAndRunningLastTime~0 0)))) (and (or .cse0 .cse1 (< |old(~pumpRunning~0)| 1)) (or .cse2 .cse3 .cse0 .cse4 (< ~methaneLevelCritical~0 1)) (or .cse2 .cse3 .cse0 .cse1 .cse4)))) [2023-11-26 10:48:40,934 INFO L899 garLoopResultBuilder]: For program point L625(lines 625 633) no Hoare annotation was computed. [2023-11-26 10:48:40,934 INFO L899 garLoopResultBuilder]: For program point L621(lines 621 638) no Hoare annotation was computed. [2023-11-26 10:48:40,934 INFO L899 garLoopResultBuilder]: For program point L516(lines 516 522) no Hoare annotation was computed. [2023-11-26 10:48:40,934 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 447 458) no Hoare annotation was computed. [2023-11-26 10:48:40,935 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 447 458) the Hoare annotation is: (let ((.cse4 (not (= 0 ~systemActive~0))) (.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse3 (not (= ~methAndRunningLastTime~0 0))) (.cse7 (< ~pumpRunning~0 1)) (.cse5 (not (= 1 ~systemActive~0))) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse5 .cse2 .cse3 .cse6) (or .cse0 .cse2 .cse3 .cse6 .cse4) (or .cse0 .cse5 .cse1 .cse2 .cse3) (or .cse7 .cse5 .cse1 .cse2 .cse3) (or .cse7 .cse5 (< |old(~waterLevel~0)| 2) .cse2 .cse6))) [2023-11-26 10:48:40,935 INFO L899 garLoopResultBuilder]: For program point L451-1(lines 447 458) no Hoare annotation was computed. [2023-11-26 10:48:40,935 INFO L895 garLoopResultBuilder]: At program point L657(line 657) the Hoare annotation is: (let ((.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse3 (not (= ~methAndRunningLastTime~0 0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 .cse1 (< |old(~pumpRunning~0)| 1)) (or .cse2 .cse0 .cse1 .cse3) (or .cse2 .cse0 .cse3 (< ~methaneLevelCritical~0 1)))) [2023-11-26 10:48:40,935 INFO L895 garLoopResultBuilder]: At program point L653(line 653) the Hoare annotation is: (let ((.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse3 (not (= ~methAndRunningLastTime~0 0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 .cse1 (< |old(~pumpRunning~0)| 1)) (or .cse2 .cse0 .cse1 .cse3) (or .cse2 .cse0 .cse3 (< ~methaneLevelCritical~0 1)))) [2023-11-26 10:48:40,936 INFO L899 garLoopResultBuilder]: For program point L651(lines 651 659) no Hoare annotation was computed. [2023-11-26 10:48:40,936 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 643 667) the Hoare annotation is: (let ((.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse0 (not (= 1 ~systemActive~0))) (.cse4 (not (= ~methAndRunningLastTime~0 0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 .cse1 (< |old(~pumpRunning~0)| 1)) (or .cse2 .cse3 .cse0 .cse1 .cse4) (or .cse2 .cse3 .cse0 .cse4 (< ~methaneLevelCritical~0 1)))) [2023-11-26 10:48:40,936 INFO L899 garLoopResultBuilder]: For program point L647(lines 647 664) no Hoare annotation was computed. [2023-11-26 10:48:40,936 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__lowWaterSensorEXIT(lines 643 667) no Hoare annotation was computed. [2023-11-26 10:48:40,936 INFO L899 garLoopResultBuilder]: For program point L794(lines 794 798) no Hoare annotation was computed. [2023-11-26 10:48:40,937 INFO L899 garLoopResultBuilder]: For program point L794-2(lines 794 798) no Hoare annotation was computed. [2023-11-26 10:48:40,937 INFO L895 garLoopResultBuilder]: At program point L662(line 662) the Hoare annotation is: (let ((.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse0 (not (= 1 ~systemActive~0))) (.cse4 (not (= ~methAndRunningLastTime~0 0)))) (and (or .cse0 .cse1 (< |old(~pumpRunning~0)| 1)) (or .cse2 .cse3 .cse0 .cse1 .cse4) (or .cse2 .cse3 .cse0 .cse4 (< ~methaneLevelCritical~0 1)))) [2023-11-26 10:48:40,937 INFO L899 garLoopResultBuilder]: For program point L662-1(lines 643 667) no Hoare annotation was computed. [2023-11-26 10:48:40,939 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-26 10:48:40,942 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-26 10:48:40,958 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 26.11 10:48:40 BoogieIcfgContainer [2023-11-26 10:48:40,958 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-26 10:48:40,959 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-26 10:48:40,959 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-26 10:48:40,959 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-26 10:48:40,960 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 26.11 10:48:16" (3/4) ... [2023-11-26 10:48:40,962 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-26 10:48:40,967 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-26 10:48:40,967 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-26 10:48:40,967 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-26 10:48:40,967 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-26 10:48:40,967 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-26 10:48:40,967 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2023-11-26 10:48:40,968 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-26 10:48:40,968 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-26 10:48:40,968 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__lowWaterSensor [2023-11-26 10:48:40,987 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 35 nodes and edges [2023-11-26 10:48:40,988 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2023-11-26 10:48:40,988 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-26 10:48:40,989 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-26 10:48:40,990 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-26 10:48:41,148 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/witness.graphml [2023-11-26 10:48:41,148 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/witness.yml [2023-11-26 10:48:41,148 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-26 10:48:41,149 INFO L158 Benchmark]: Toolchain (without parser) took 26403.45ms. Allocated memory was 180.4MB in the beginning and 314.6MB in the end (delta: 134.2MB). Free memory was 137.9MB in the beginning and 125.6MB in the end (delta: 12.3MB). Peak memory consumption was 148.1MB. Max. memory is 16.1GB. [2023-11-26 10:48:41,150 INFO L158 Benchmark]: CDTParser took 0.36ms. Allocated memory is still 117.4MB. Free memory is still 66.2MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-26 10:48:41,150 INFO L158 Benchmark]: CACSL2BoogieTranslator took 632.46ms. Allocated memory is still 180.4MB. Free memory was 137.5MB in the beginning and 117.6MB in the end (delta: 19.8MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. [2023-11-26 10:48:41,152 INFO L158 Benchmark]: Boogie Procedure Inliner took 101.67ms. Allocated memory is still 180.4MB. Free memory was 117.6MB in the beginning and 115.2MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-26 10:48:41,152 INFO L158 Benchmark]: Boogie Preprocessor took 90.00ms. Allocated memory is still 180.4MB. Free memory was 115.2MB in the beginning and 112.8MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-26 10:48:41,154 INFO L158 Benchmark]: RCFGBuilder took 896.88ms. Allocated memory is still 180.4MB. Free memory was 112.8MB in the beginning and 142.0MB in the end (delta: -29.3MB). Peak memory consumption was 22.6MB. Max. memory is 16.1GB. [2023-11-26 10:48:41,154 INFO L158 Benchmark]: TraceAbstraction took 24485.31ms. Allocated memory was 180.4MB in the beginning and 314.6MB in the end (delta: 134.2MB). Free memory was 141.3MB in the beginning and 132.9MB in the end (delta: 8.4MB). Peak memory consumption was 186.3MB. Max. memory is 16.1GB. [2023-11-26 10:48:41,155 INFO L158 Benchmark]: Witness Printer took 189.38ms. Allocated memory is still 314.6MB. Free memory was 132.9MB in the beginning and 125.6MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2023-11-26 10:48:41,158 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.36ms. Allocated memory is still 117.4MB. Free memory is still 66.2MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 632.46ms. Allocated memory is still 180.4MB. Free memory was 137.5MB in the beginning and 117.6MB in the end (delta: 19.8MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 101.67ms. Allocated memory is still 180.4MB. Free memory was 117.6MB in the beginning and 115.2MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 90.00ms. Allocated memory is still 180.4MB. Free memory was 115.2MB in the beginning and 112.8MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 896.88ms. Allocated memory is still 180.4MB. Free memory was 112.8MB in the beginning and 142.0MB in the end (delta: -29.3MB). Peak memory consumption was 22.6MB. Max. memory is 16.1GB. * TraceAbstraction took 24485.31ms. Allocated memory was 180.4MB in the beginning and 314.6MB in the end (delta: 134.2MB). Free memory was 141.3MB in the beginning and 132.9MB in the end (delta: 8.4MB). Peak memory consumption was 186.3MB. Max. memory is 16.1GB. * Witness Printer took 189.38ms. Allocated memory is still 314.6MB. Free memory was 132.9MB in the beginning and 125.6MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [49] - GenericResultAtLocation [Line: 415]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [415] - GenericResultAtLocation [Line: 424]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [424] - GenericResultAtLocation [Line: 535]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [535] - GenericResultAtLocation [Line: 575]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [575] - GenericResultAtLocation [Line: 827]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [827] - GenericResultAtLocation [Line: 897]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [897] - GenericResultAtLocation [Line: 935]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [935] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 420]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 10 procedures, 84 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 24.4s, OverallIterations: 11, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.1s, AutomataDifference: 8.5s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 9.5s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1774 SdHoareTripleChecker+Valid, 4.5s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1732 mSDsluCounter, 3670 SdHoareTripleChecker+Invalid, 3.7s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2570 mSDsCounter, 704 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 4431 IncrementalHoareTripleChecker+Invalid, 5135 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 704 mSolverCounterUnsat, 1100 mSDtfsCounter, 4431 mSolverCounterSat, 0.2s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 827 GetRequests, 645 SyntacticMatches, 3 SemanticMatches, 179 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6133 ImplicationChecksByTransitivity, 2.8s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1926occurred in iteration=10, InterpolantAutomatonStates: 162, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.9s AutomataMinimizationTime, 11 MinimizatonAttempts, 733 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 28 LocationsWithAnnotation, 2038 PreInvPairs, 2318 NumberOfFragments, 2314 HoareAnnotationTreeSize, 2038 FomulaSimplifications, 11158 FormulaSimplificationTreeSizeReduction, 1.9s HoareSimplificationTime, 28 FomulaSimplificationsInter, 26240 FormulaSimplificationTreeSizeReductionInter, 7.5s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.2s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 3.0s InterpolantComputationTime, 1031 NumberOfCodeBlocks, 1031 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 1101 ConstructedInterpolants, 0 QuantifiedInterpolants, 1918 SizeOfPredicates, 8 NumberOfNonLiveVariables, 1618 ConjunctsInSsa, 28 ConjunctsInUnsatCore, 17 InterpolantComputations, 10 PerfectInterpolantSequences, 388/420 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 947]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 838]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 839]: Loop Invariant Derived loop invariant: ((((((((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (2 <= waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0)) || (((((1 <= pumpRunning) && (methAndRunningLastTime == 0)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0))) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (splverifierCounter == 0))) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0))) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (methaneLevelCritical == 0)) && (splverifierCounter == 0)) && (0 == systemActive))) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 <= methaneLevelCritical)) && (splverifierCounter == 0)) && (0 == systemActive))) RESULT: Ultimate proved your program to be correct! [2023-11-26 10:48:41,192 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_6024ab87-a5fd-4486-b624-1b9621b19cd2/bin/uautomizer-verify-VRDe98Ueme/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE