./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 0e0057cc Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 80b4c453e300455caffbcb636daccd3af095acb6ed433fb3111a61f5db77a0b9 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-0e0057c [2023-11-28 23:59:45,588 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-28 23:59:45,654 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-28 23:59:45,658 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-28 23:59:45,659 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-28 23:59:45,692 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-28 23:59:45,693 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-28 23:59:45,694 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-28 23:59:45,694 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-28 23:59:45,695 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-28 23:59:45,695 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-28 23:59:45,696 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-28 23:59:45,697 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-28 23:59:45,697 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-28 23:59:45,698 INFO L153 SettingsManager]: * Use SBE=true [2023-11-28 23:59:45,698 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-28 23:59:45,699 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-28 23:59:45,699 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-28 23:59:45,699 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-28 23:59:45,700 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-28 23:59:45,700 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-28 23:59:45,701 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-28 23:59:45,701 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-28 23:59:45,702 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-28 23:59:45,702 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-28 23:59:45,702 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-28 23:59:45,703 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-28 23:59:45,711 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-28 23:59:45,712 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-28 23:59:45,712 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-28 23:59:45,712 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-28 23:59:45,713 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-28 23:59:45,713 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-28 23:59:45,713 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-28 23:59:45,714 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-28 23:59:45,714 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-28 23:59:45,714 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-28 23:59:45,714 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-28 23:59:45,714 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-28 23:59:45,714 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-28 23:59:45,715 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-28 23:59:45,715 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-28 23:59:45,715 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 80b4c453e300455caffbcb636daccd3af095acb6ed433fb3111a61f5db77a0b9 [2023-11-28 23:59:45,939 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-28 23:59:45,959 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-28 23:59:45,962 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-28 23:59:45,963 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-28 23:59:45,963 INFO L274 PluginConnector]: CDTParser initialized [2023-11-28 23:59:45,965 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c [2023-11-28 23:59:48,689 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-28 23:59:48,921 INFO L384 CDTParser]: Found 1 translation units. [2023-11-28 23:59:48,922 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c [2023-11-28 23:59:48,938 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/data/63bf05671/ce47b94be2894f1b9b297574f6565ef8/FLAG780e04fb5 [2023-11-28 23:59:48,952 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/data/63bf05671/ce47b94be2894f1b9b297574f6565ef8 [2023-11-28 23:59:48,954 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-28 23:59:48,956 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-28 23:59:48,957 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-28 23:59:48,957 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-28 23:59:48,961 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-28 23:59:48,962 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 11:59:48" (1/1) ... [2023-11-28 23:59:48,963 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@79d1ad24 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:48, skipping insertion in model container [2023-11-28 23:59:48,963 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 11:59:48" (1/1) ... [2023-11-28 23:59:49,011 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-28 23:59:49,137 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c[1605,1618] [2023-11-28 23:59:49,248 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-28 23:59:49,260 INFO L202 MainTranslator]: Completed pre-run [2023-11-28 23:59:49,267 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2023-11-28 23:59:49,269 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] [2023-11-28 23:59:49,269 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [300] [2023-11-28 23:59:49,269 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [370] [2023-11-28 23:59:49,269 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [409] [2023-11-28 23:59:49,270 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [509] [2023-11-28 23:59:49,270 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [544] [2023-11-28 23:59:49,270 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [910] [2023-11-28 23:59:49,274 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c[1605,1618] [2023-11-28 23:59:49,326 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-28 23:59:49,345 INFO L206 MainTranslator]: Completed translation [2023-11-28 23:59:49,346 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49 WrapperNode [2023-11-28 23:59:49,346 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-28 23:59:49,347 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-28 23:59:49,347 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-28 23:59:49,347 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-28 23:59:49,352 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,366 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,392 INFO L138 Inliner]: procedures = 58, calls = 103, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 226 [2023-11-28 23:59:49,393 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-28 23:59:49,393 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-28 23:59:49,393 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-28 23:59:49,393 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-28 23:59:49,402 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,402 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,405 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,420 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-11-28 23:59:49,421 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,421 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,426 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,431 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,432 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,434 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,437 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-28 23:59:49,438 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-28 23:59:49,438 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-28 23:59:49,438 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-28 23:59:49,439 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (1/1) ... [2023-11-28 23:59:49,443 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-28 23:59:49,452 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-28 23:59:49,463 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-11-28 23:59:49,466 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-11-28 23:59:49,490 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-28 23:59:49,490 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-28 23:59:49,490 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-28 23:59:49,490 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-28 23:59:49,490 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-28 23:59:49,490 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2023-11-28 23:59:49,490 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2023-11-28 23:59:49,491 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-28 23:59:49,491 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-28 23:59:49,491 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-28 23:59:49,491 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-28 23:59:49,491 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-28 23:59:49,491 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-28 23:59:49,491 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-28 23:59:49,491 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-28 23:59:49,492 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-28 23:59:49,492 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-28 23:59:49,492 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-28 23:59:49,492 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-28 23:59:49,492 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-28 23:59:49,567 INFO L241 CfgBuilder]: Building ICFG [2023-11-28 23:59:49,569 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-28 23:59:49,810 INFO L282 CfgBuilder]: Performing block encoding [2023-11-28 23:59:49,864 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-28 23:59:49,864 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-28 23:59:49,865 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 11:59:49 BoogieIcfgContainer [2023-11-28 23:59:49,865 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-28 23:59:49,867 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-28 23:59:49,867 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-28 23:59:49,869 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-28 23:59:49,869 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.11 11:59:48" (1/3) ... [2023-11-28 23:59:49,870 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@523c7956 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 11:59:49, skipping insertion in model container [2023-11-28 23:59:49,870 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 11:59:49" (2/3) ... [2023-11-28 23:59:49,870 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@523c7956 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 11:59:49, skipping insertion in model container [2023-11-28 23:59:49,870 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 11:59:49" (3/3) ... [2023-11-28 23:59:49,871 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product59.cil.c [2023-11-28 23:59:49,890 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-28 23:59:49,890 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-28 23:59:49,940 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-28 23:59:49,946 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@3c182885, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-28 23:59:49,946 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-28 23:59:49,951 INFO L276 IsEmpty]: Start isEmpty. Operand has 78 states, 54 states have (on average 1.537037037037037) internal successors, (83), 63 states have internal predecessors, (83), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) [2023-11-28 23:59:49,960 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2023-11-28 23:59:49,961 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:49,961 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:49,962 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:49,967 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:49,967 INFO L85 PathProgramCache]: Analyzing trace with hash 1976917206, now seen corresponding path program 1 times [2023-11-28 23:59:49,976 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:49,977 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1017040901] [2023-11-28 23:59:49,977 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:49,977 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:50,082 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:50,140 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-28 23:59:50,143 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:50,148 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-28 23:59:50,148 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:50,149 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1017040901] [2023-11-28 23:59:50,149 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1017040901] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:50,149 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-28 23:59:50,150 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-28 23:59:50,151 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [669442674] [2023-11-28 23:59:50,152 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:50,156 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-28 23:59:50,157 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:50,185 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-28 23:59:50,186 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-28 23:59:50,188 INFO L87 Difference]: Start difference. First operand has 78 states, 54 states have (on average 1.537037037037037) internal successors, (83), 63 states have internal predecessors, (83), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-28 23:59:50,250 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:50,251 INFO L93 Difference]: Finished difference Result 154 states and 223 transitions. [2023-11-28 23:59:50,252 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-28 23:59:50,253 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2023-11-28 23:59:50,254 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:50,263 INFO L225 Difference]: With dead ends: 154 [2023-11-28 23:59:50,263 INFO L226 Difference]: Without dead ends: 73 [2023-11-28 23:59:50,267 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-28 23:59:50,271 INFO L413 NwaCegarLoop]: 90 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 16 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 90 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 16 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:50,272 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 90 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 16 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-28 23:59:50,289 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 73 states. [2023-11-28 23:59:50,311 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 73 to 73. [2023-11-28 23:59:50,312 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 73 states, 51 states have (on average 1.4313725490196079) internal successors, (73), 59 states have internal predecessors, (73), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2023-11-28 23:59:50,315 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 73 states to 73 states and 100 transitions. [2023-11-28 23:59:50,316 INFO L78 Accepts]: Start accepts. Automaton has 73 states and 100 transitions. Word has length 17 [2023-11-28 23:59:50,316 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:50,317 INFO L495 AbstractCegarLoop]: Abstraction has 73 states and 100 transitions. [2023-11-28 23:59:50,317 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-28 23:59:50,317 INFO L276 IsEmpty]: Start isEmpty. Operand 73 states and 100 transitions. [2023-11-28 23:59:50,319 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2023-11-28 23:59:50,320 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:50,320 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:50,320 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-28 23:59:50,320 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:50,321 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:50,321 INFO L85 PathProgramCache]: Analyzing trace with hash 1995793807, now seen corresponding path program 1 times [2023-11-28 23:59:50,322 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:50,322 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1821373915] [2023-11-28 23:59:50,322 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:50,322 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:50,341 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:50,404 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-28 23:59:50,406 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:50,408 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-28 23:59:50,408 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:50,409 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1821373915] [2023-11-28 23:59:50,409 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1821373915] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:50,409 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-28 23:59:50,409 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-28 23:59:50,409 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1155412810] [2023-11-28 23:59:50,410 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:50,411 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-28 23:59:50,411 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:50,412 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-28 23:59:50,412 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-28 23:59:50,412 INFO L87 Difference]: Start difference. First operand 73 states and 100 transitions. Second operand has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-28 23:59:50,449 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:50,449 INFO L93 Difference]: Finished difference Result 116 states and 158 transitions. [2023-11-28 23:59:50,449 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-28 23:59:50,450 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 18 [2023-11-28 23:59:50,450 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:50,451 INFO L225 Difference]: With dead ends: 116 [2023-11-28 23:59:50,451 INFO L226 Difference]: Without dead ends: 65 [2023-11-28 23:59:50,452 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-28 23:59:50,454 INFO L413 NwaCegarLoop]: 76 mSDtfsCounter, 14 mSDsluCounter, 59 mSDsCounter, 0 mSdLazyCounter, 23 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 135 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 23 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:50,454 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 135 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 23 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-28 23:59:50,455 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 65 states. [2023-11-28 23:59:50,463 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 65 to 65. [2023-11-28 23:59:50,463 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 65 states, 46 states have (on average 1.4565217391304348) internal successors, (67), 54 states have internal predecessors, (67), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 8 states have call predecessors, (11), 11 states have call successors, (11) [2023-11-28 23:59:50,465 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 65 states to 65 states and 89 transitions. [2023-11-28 23:59:50,465 INFO L78 Accepts]: Start accepts. Automaton has 65 states and 89 transitions. Word has length 18 [2023-11-28 23:59:50,465 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:50,465 INFO L495 AbstractCegarLoop]: Abstraction has 65 states and 89 transitions. [2023-11-28 23:59:50,466 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-28 23:59:50,466 INFO L276 IsEmpty]: Start isEmpty. Operand 65 states and 89 transitions. [2023-11-28 23:59:50,467 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2023-11-28 23:59:50,467 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:50,467 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:50,468 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-28 23:59:50,468 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:50,468 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:50,469 INFO L85 PathProgramCache]: Analyzing trace with hash -304246320, now seen corresponding path program 1 times [2023-11-28 23:59:50,469 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:50,469 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1368051124] [2023-11-28 23:59:50,469 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:50,469 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:50,485 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:50,540 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-28 23:59:50,542 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:50,544 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-28 23:59:50,544 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:50,545 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1368051124] [2023-11-28 23:59:50,545 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1368051124] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:50,545 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-28 23:59:50,545 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-28 23:59:50,545 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1718290598] [2023-11-28 23:59:50,546 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:50,546 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-28 23:59:50,546 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:50,547 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-28 23:59:50,547 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-28 23:59:50,547 INFO L87 Difference]: Start difference. First operand 65 states and 89 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-28 23:59:50,604 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:50,604 INFO L93 Difference]: Finished difference Result 191 states and 264 transitions. [2023-11-28 23:59:50,604 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-28 23:59:50,605 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 21 [2023-11-28 23:59:50,605 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:50,607 INFO L225 Difference]: With dead ends: 191 [2023-11-28 23:59:50,607 INFO L226 Difference]: Without dead ends: 128 [2023-11-28 23:59:50,608 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-28 23:59:50,610 INFO L413 NwaCegarLoop]: 87 mSDtfsCounter, 76 mSDsluCounter, 74 mSDsCounter, 0 mSdLazyCounter, 30 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 76 SdHoareTripleChecker+Valid, 161 SdHoareTripleChecker+Invalid, 30 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 30 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:50,610 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [76 Valid, 161 Invalid, 30 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 30 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-28 23:59:50,611 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 128 states. [2023-11-28 23:59:50,650 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 128 to 125. [2023-11-28 23:59:50,651 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 125 states, 88 states have (on average 1.4659090909090908) internal successors, (129), 103 states have internal predecessors, (129), 22 states have call successors, (22), 14 states have call predecessors, (22), 14 states have return successors, (22), 15 states have call predecessors, (22), 22 states have call successors, (22) [2023-11-28 23:59:50,652 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 125 states to 125 states and 173 transitions. [2023-11-28 23:59:50,664 INFO L78 Accepts]: Start accepts. Automaton has 125 states and 173 transitions. Word has length 21 [2023-11-28 23:59:50,664 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:50,664 INFO L495 AbstractCegarLoop]: Abstraction has 125 states and 173 transitions. [2023-11-28 23:59:50,664 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-28 23:59:50,665 INFO L276 IsEmpty]: Start isEmpty. Operand 125 states and 173 transitions. [2023-11-28 23:59:50,666 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2023-11-28 23:59:50,667 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:50,667 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:50,667 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-28 23:59:50,667 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:50,668 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:50,668 INFO L85 PathProgramCache]: Analyzing trace with hash -1116358855, now seen corresponding path program 1 times [2023-11-28 23:59:50,668 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:50,668 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1185684465] [2023-11-28 23:59:50,668 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:50,668 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:50,684 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:50,740 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-28 23:59:50,741 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:50,744 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-28 23:59:50,744 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:50,744 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1185684465] [2023-11-28 23:59:50,745 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1185684465] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:50,745 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-28 23:59:50,745 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-11-28 23:59:50,745 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [29139397] [2023-11-28 23:59:50,745 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:50,746 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-28 23:59:50,746 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:50,746 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-28 23:59:50,747 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-28 23:59:50,747 INFO L87 Difference]: Start difference. First operand 125 states and 173 transitions. Second operand has 4 states, 4 states have (on average 5.25) internal successors, (21), 4 states have internal predecessors, (21), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-28 23:59:50,831 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:50,832 INFO L93 Difference]: Finished difference Result 328 states and 459 transitions. [2023-11-28 23:59:50,832 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-28 23:59:50,832 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 5.25) internal successors, (21), 4 states have internal predecessors, (21), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2023-11-28 23:59:50,833 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:50,835 INFO L225 Difference]: With dead ends: 328 [2023-11-28 23:59:50,835 INFO L226 Difference]: Without dead ends: 205 [2023-11-28 23:59:50,837 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-11-28 23:59:50,838 INFO L413 NwaCegarLoop]: 73 mSDtfsCounter, 62 mSDsluCounter, 125 mSDsCounter, 0 mSdLazyCounter, 50 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 62 SdHoareTripleChecker+Valid, 198 SdHoareTripleChecker+Invalid, 60 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 50 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:50,839 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [62 Valid, 198 Invalid, 60 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 50 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-28 23:59:50,840 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 205 states. [2023-11-28 23:59:50,861 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 205 to 200. [2023-11-28 23:59:50,862 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 200 states, 143 states have (on average 1.3916083916083917) internal successors, (199), 160 states have internal predecessors, (199), 30 states have call successors, (30), 26 states have call predecessors, (30), 26 states have return successors, (38), 27 states have call predecessors, (38), 30 states have call successors, (38) [2023-11-28 23:59:50,864 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 200 states to 200 states and 267 transitions. [2023-11-28 23:59:50,864 INFO L78 Accepts]: Start accepts. Automaton has 200 states and 267 transitions. Word has length 24 [2023-11-28 23:59:50,864 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:50,864 INFO L495 AbstractCegarLoop]: Abstraction has 200 states and 267 transitions. [2023-11-28 23:59:50,865 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 5.25) internal successors, (21), 4 states have internal predecessors, (21), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-28 23:59:50,865 INFO L276 IsEmpty]: Start isEmpty. Operand 200 states and 267 transitions. [2023-11-28 23:59:50,867 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2023-11-28 23:59:50,867 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:50,867 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:50,867 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-28 23:59:50,867 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:50,868 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:50,868 INFO L85 PathProgramCache]: Analyzing trace with hash 1264104213, now seen corresponding path program 1 times [2023-11-28 23:59:50,868 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:50,868 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1826031811] [2023-11-28 23:59:50,868 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:50,869 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:50,886 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:50,994 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-28 23:59:50,999 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:51,054 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-28 23:59:51,056 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:51,071 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2023-11-28 23:59:51,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:51,079 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-28 23:59:51,079 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:51,079 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1826031811] [2023-11-28 23:59:51,080 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1826031811] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:51,080 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-28 23:59:51,080 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2023-11-28 23:59:51,080 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1684013225] [2023-11-28 23:59:51,080 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:51,081 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2023-11-28 23:59:51,081 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:51,082 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2023-11-28 23:59:51,082 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=55, Unknown=0, NotChecked=0, Total=72 [2023-11-28 23:59:51,082 INFO L87 Difference]: Start difference. First operand 200 states and 267 transitions. Second operand has 9 states, 8 states have (on average 3.875) internal successors, (31), 6 states have internal predecessors, (31), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-28 23:59:51,527 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:51,527 INFO L93 Difference]: Finished difference Result 640 states and 874 transitions. [2023-11-28 23:59:51,527 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2023-11-28 23:59:51,528 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 8 states have (on average 3.875) internal successors, (31), 6 states have internal predecessors, (31), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) Word has length 39 [2023-11-28 23:59:51,528 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:51,532 INFO L225 Difference]: With dead ends: 640 [2023-11-28 23:59:51,533 INFO L226 Difference]: Without dead ends: 442 [2023-11-28 23:59:51,534 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 25 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 50 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=87, Invalid=255, Unknown=0, NotChecked=0, Total=342 [2023-11-28 23:59:51,535 INFO L413 NwaCegarLoop]: 57 mSDtfsCounter, 213 mSDsluCounter, 271 mSDsCounter, 0 mSdLazyCounter, 245 mSolverCounterSat, 76 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 220 SdHoareTripleChecker+Valid, 328 SdHoareTripleChecker+Invalid, 321 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 76 IncrementalHoareTripleChecker+Valid, 245 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:51,536 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [220 Valid, 328 Invalid, 321 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [76 Valid, 245 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-28 23:59:51,537 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 442 states. [2023-11-28 23:59:51,579 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 442 to 436. [2023-11-28 23:59:51,580 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 436 states, 309 states have (on average 1.3300970873786409) internal successors, (411), 340 states have internal predecessors, (411), 66 states have call successors, (66), 52 states have call predecessors, (66), 60 states have return successors, (98), 66 states have call predecessors, (98), 66 states have call successors, (98) [2023-11-28 23:59:51,584 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 436 states to 436 states and 575 transitions. [2023-11-28 23:59:51,584 INFO L78 Accepts]: Start accepts. Automaton has 436 states and 575 transitions. Word has length 39 [2023-11-28 23:59:51,585 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:51,585 INFO L495 AbstractCegarLoop]: Abstraction has 436 states and 575 transitions. [2023-11-28 23:59:51,585 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 8 states have (on average 3.875) internal successors, (31), 6 states have internal predecessors, (31), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-28 23:59:51,585 INFO L276 IsEmpty]: Start isEmpty. Operand 436 states and 575 transitions. [2023-11-28 23:59:51,589 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 67 [2023-11-28 23:59:51,589 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:51,590 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:51,590 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-28 23:59:51,590 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:51,590 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:51,591 INFO L85 PathProgramCache]: Analyzing trace with hash -1883431646, now seen corresponding path program 1 times [2023-11-28 23:59:51,591 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:51,591 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1228793255] [2023-11-28 23:59:51,591 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:51,591 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:51,605 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:51,635 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2023-11-28 23:59:51,641 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:51,660 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-28 23:59:51,664 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:51,668 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-28 23:59:51,670 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:51,671 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-28 23:59:51,672 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:51,680 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2023-11-28 23:59:51,681 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:51,683 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2023-11-28 23:59:51,684 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:51,685 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2023-11-28 23:59:51,686 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:51,686 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1228793255] [2023-11-28 23:59:51,686 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1228793255] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:51,686 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-28 23:59:51,686 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-28 23:59:51,686 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [93834459] [2023-11-28 23:59:51,687 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:51,687 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-28 23:59:51,687 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:51,688 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-28 23:59:51,688 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2023-11-28 23:59:51,688 INFO L87 Difference]: Start difference. First operand 436 states and 575 transitions. Second operand has 7 states, 6 states have (on average 8.5) internal successors, (51), 4 states have internal predecessors, (51), 4 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) [2023-11-28 23:59:52,187 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:52,187 INFO L93 Difference]: Finished difference Result 556 states and 738 transitions. [2023-11-28 23:59:52,187 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2023-11-28 23:59:52,188 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 6 states have (on average 8.5) internal successors, (51), 4 states have internal predecessors, (51), 4 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) Word has length 66 [2023-11-28 23:59:52,188 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:52,190 INFO L225 Difference]: With dead ends: 556 [2023-11-28 23:59:52,190 INFO L226 Difference]: Without dead ends: 265 [2023-11-28 23:59:52,191 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 28 GetRequests, 16 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 22 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=54, Invalid=128, Unknown=0, NotChecked=0, Total=182 [2023-11-28 23:59:52,192 INFO L413 NwaCegarLoop]: 42 mSDtfsCounter, 240 mSDsluCounter, 94 mSDsCounter, 0 mSdLazyCounter, 368 mSolverCounterSat, 74 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 247 SdHoareTripleChecker+Valid, 136 SdHoareTripleChecker+Invalid, 442 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 74 IncrementalHoareTripleChecker+Valid, 368 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:52,193 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [247 Valid, 136 Invalid, 442 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [74 Valid, 368 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-28 23:59:52,194 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 265 states. [2023-11-28 23:59:52,220 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 265 to 214. [2023-11-28 23:59:52,221 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 214 states, 152 states have (on average 1.2828947368421053) internal successors, (195), 166 states have internal predecessors, (195), 31 states have call successors, (31), 26 states have call predecessors, (31), 30 states have return successors, (47), 32 states have call predecessors, (47), 31 states have call successors, (47) [2023-11-28 23:59:52,222 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 214 states to 214 states and 273 transitions. [2023-11-28 23:59:52,223 INFO L78 Accepts]: Start accepts. Automaton has 214 states and 273 transitions. Word has length 66 [2023-11-28 23:59:52,223 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:52,223 INFO L495 AbstractCegarLoop]: Abstraction has 214 states and 273 transitions. [2023-11-28 23:59:52,223 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 6 states have (on average 8.5) internal successors, (51), 4 states have internal predecessors, (51), 4 states have call successors, (7), 5 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) [2023-11-28 23:59:52,223 INFO L276 IsEmpty]: Start isEmpty. Operand 214 states and 273 transitions. [2023-11-28 23:59:52,225 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 77 [2023-11-28 23:59:52,225 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:52,225 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:52,225 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-28 23:59:52,226 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:52,226 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:52,226 INFO L85 PathProgramCache]: Analyzing trace with hash -2115653122, now seen corresponding path program 1 times [2023-11-28 23:59:52,226 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:52,227 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1770811193] [2023-11-28 23:59:52,227 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:52,227 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:52,252 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,325 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-28 23:59:52,328 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,338 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-28 23:59:52,341 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,345 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-28 23:59:52,345 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,347 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-28 23:59:52,348 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,354 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2023-11-28 23:59:52,355 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,356 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2023-11-28 23:59:52,357 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,358 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-28 23:59:52,359 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,360 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 68 [2023-11-28 23:59:52,361 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,362 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 5 proven. 1 refuted. 0 times theorem prover too weak. 20 trivial. 0 not checked. [2023-11-28 23:59:52,363 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:52,363 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1770811193] [2023-11-28 23:59:52,363 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1770811193] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-28 23:59:52,363 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1988046158] [2023-11-28 23:59:52,363 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:52,363 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:52,364 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-28 23:59:52,375 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-28 23:59:52,386 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-28 23:59:52,479 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,482 INFO L262 TraceCheckSpWp]: Trace formula consists of 299 conjuncts, 4 conjunts are in the unsatisfiable core [2023-11-28 23:59:52,489 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-28 23:59:52,535 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2023-11-28 23:59:52,535 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-28 23:59:52,536 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1988046158] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:52,536 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-28 23:59:52,536 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [7] total 8 [2023-11-28 23:59:52,536 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [874776350] [2023-11-28 23:59:52,536 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:52,537 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-28 23:59:52,537 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:52,537 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-28 23:59:52,537 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2023-11-28 23:59:52,538 INFO L87 Difference]: Start difference. First operand 214 states and 273 transitions. Second operand has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-28 23:59:52,593 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:52,593 INFO L93 Difference]: Finished difference Result 434 states and 562 transitions. [2023-11-28 23:59:52,594 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-28 23:59:52,594 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) Word has length 76 [2023-11-28 23:59:52,594 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:52,596 INFO L225 Difference]: With dead ends: 434 [2023-11-28 23:59:52,596 INFO L226 Difference]: Without dead ends: 222 [2023-11-28 23:59:52,597 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 95 GetRequests, 89 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2023-11-28 23:59:52,597 INFO L413 NwaCegarLoop]: 70 mSDtfsCounter, 1 mSDsluCounter, 134 mSDsCounter, 0 mSdLazyCounter, 44 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 2 SdHoareTripleChecker+Valid, 204 SdHoareTripleChecker+Invalid, 44 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 44 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:52,598 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [2 Valid, 204 Invalid, 44 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 44 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-28 23:59:52,599 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 222 states. [2023-11-28 23:59:52,622 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 222 to 218. [2023-11-28 23:59:52,623 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 218 states, 156 states have (on average 1.2756410256410255) internal successors, (199), 170 states have internal predecessors, (199), 31 states have call successors, (31), 26 states have call predecessors, (31), 30 states have return successors, (47), 32 states have call predecessors, (47), 31 states have call successors, (47) [2023-11-28 23:59:52,624 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 218 states to 218 states and 277 transitions. [2023-11-28 23:59:52,625 INFO L78 Accepts]: Start accepts. Automaton has 218 states and 277 transitions. Word has length 76 [2023-11-28 23:59:52,625 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:52,625 INFO L495 AbstractCegarLoop]: Abstraction has 218 states and 277 transitions. [2023-11-28 23:59:52,625 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 12.75) internal successors, (51), 4 states have internal predecessors, (51), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2023-11-28 23:59:52,625 INFO L276 IsEmpty]: Start isEmpty. Operand 218 states and 277 transitions. [2023-11-28 23:59:52,627 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 77 [2023-11-28 23:59:52,627 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:52,627 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:52,634 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-28 23:59:52,831 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:52,831 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:52,832 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:52,832 INFO L85 PathProgramCache]: Analyzing trace with hash 1756612348, now seen corresponding path program 1 times [2023-11-28 23:59:52,832 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:52,832 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [475070162] [2023-11-28 23:59:52,832 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:52,832 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:52,848 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,904 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-28 23:59:52,908 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,921 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-28 23:59:52,923 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,926 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-28 23:59:52,927 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,928 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-28 23:59:52,929 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,935 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2023-11-28 23:59:52,936 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,938 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2023-11-28 23:59:52,939 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,941 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-28 23:59:52,942 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,943 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 68 [2023-11-28 23:59:52,944 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:52,945 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 15 proven. 1 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2023-11-28 23:59:52,946 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:52,946 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [475070162] [2023-11-28 23:59:52,946 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [475070162] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-28 23:59:52,946 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [791845557] [2023-11-28 23:59:52,946 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:52,946 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:52,946 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-28 23:59:52,947 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-28 23:59:52,951 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-28 23:59:53,041 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,042 INFO L262 TraceCheckSpWp]: Trace formula consists of 298 conjuncts, 7 conjunts are in the unsatisfiable core [2023-11-28 23:59:53,046 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-28 23:59:53,069 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2023-11-28 23:59:53,070 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-28 23:59:53,070 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [791845557] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:53,070 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-28 23:59:53,070 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [6] total 8 [2023-11-28 23:59:53,071 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [343924925] [2023-11-28 23:59:53,071 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:53,071 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-28 23:59:53,071 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:53,072 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-28 23:59:53,072 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2023-11-28 23:59:53,073 INFO L87 Difference]: Start difference. First operand 218 states and 277 transitions. Second operand has 4 states, 4 states have (on average 13.25) internal successors, (53), 4 states have internal predecessors, (53), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-28 23:59:53,144 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:53,145 INFO L93 Difference]: Finished difference Result 442 states and 580 transitions. [2023-11-28 23:59:53,145 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-28 23:59:53,145 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 13.25) internal successors, (53), 4 states have internal predecessors, (53), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 2 states have call successors, (7) Word has length 76 [2023-11-28 23:59:53,145 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:53,147 INFO L225 Difference]: With dead ends: 442 [2023-11-28 23:59:53,147 INFO L226 Difference]: Without dead ends: 226 [2023-11-28 23:59:53,148 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 96 GetRequests, 90 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2023-11-28 23:59:53,148 INFO L413 NwaCegarLoop]: 70 mSDtfsCounter, 2 mSDsluCounter, 134 mSDsCounter, 0 mSdLazyCounter, 42 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 3 SdHoareTripleChecker+Valid, 204 SdHoareTripleChecker+Invalid, 43 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 42 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:53,149 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [3 Valid, 204 Invalid, 43 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 42 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-28 23:59:53,149 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 226 states. [2023-11-28 23:59:53,165 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 226 to 222. [2023-11-28 23:59:53,165 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 222 states, 160 states have (on average 1.26875) internal successors, (203), 174 states have internal predecessors, (203), 31 states have call successors, (31), 26 states have call predecessors, (31), 30 states have return successors, (47), 32 states have call predecessors, (47), 31 states have call successors, (47) [2023-11-28 23:59:53,166 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 222 states to 222 states and 281 transitions. [2023-11-28 23:59:53,167 INFO L78 Accepts]: Start accepts. Automaton has 222 states and 281 transitions. Word has length 76 [2023-11-28 23:59:53,167 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:53,167 INFO L495 AbstractCegarLoop]: Abstraction has 222 states and 281 transitions. [2023-11-28 23:59:53,167 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 13.25) internal successors, (53), 4 states have internal predecessors, (53), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-28 23:59:53,167 INFO L276 IsEmpty]: Start isEmpty. Operand 222 states and 281 transitions. [2023-11-28 23:59:53,168 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 77 [2023-11-28 23:59:53,169 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:53,169 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:53,174 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2023-11-28 23:59:53,369 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:53,370 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:53,370 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:53,370 INFO L85 PathProgramCache]: Analyzing trace with hash -2104625862, now seen corresponding path program 1 times [2023-11-28 23:59:53,370 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:53,370 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1333753696] [2023-11-28 23:59:53,370 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:53,370 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:53,381 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,441 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-28 23:59:53,445 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,467 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-28 23:59:53,471 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,513 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-28 23:59:53,514 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,515 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-28 23:59:53,516 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,523 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2023-11-28 23:59:53,524 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,525 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2023-11-28 23:59:53,526 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,527 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-28 23:59:53,528 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,528 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 68 [2023-11-28 23:59:53,529 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,530 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 11 proven. 2 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2023-11-28 23:59:53,531 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:53,531 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1333753696] [2023-11-28 23:59:53,531 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1333753696] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-28 23:59:53,531 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [5404549] [2023-11-28 23:59:53,531 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:53,531 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:53,531 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-28 23:59:53,536 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-28 23:59:53,539 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-11-28 23:59:53,630 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:53,632 INFO L262 TraceCheckSpWp]: Trace formula consists of 299 conjuncts, 4 conjunts are in the unsatisfiable core [2023-11-28 23:59:53,635 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-28 23:59:53,659 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2023-11-28 23:59:53,660 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-28 23:59:53,660 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [5404549] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:53,660 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-28 23:59:53,660 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [8] total 10 [2023-11-28 23:59:53,660 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1588766249] [2023-11-28 23:59:53,660 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:53,661 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-28 23:59:53,661 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:53,661 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-28 23:59:53,662 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=20, Invalid=70, Unknown=0, NotChecked=0, Total=90 [2023-11-28 23:59:53,662 INFO L87 Difference]: Start difference. First operand 222 states and 281 transitions. Second operand has 4 states, 4 states have (on average 13.25) internal successors, (53), 4 states have internal predecessors, (53), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-28 23:59:53,722 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:53,723 INFO L93 Difference]: Finished difference Result 456 states and 596 transitions. [2023-11-28 23:59:53,723 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-28 23:59:53,723 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 13.25) internal successors, (53), 4 states have internal predecessors, (53), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 2 states have call successors, (7) Word has length 76 [2023-11-28 23:59:53,724 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:53,725 INFO L225 Difference]: With dead ends: 456 [2023-11-28 23:59:53,725 INFO L226 Difference]: Without dead ends: 236 [2023-11-28 23:59:53,726 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 98 GetRequests, 89 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=26, Invalid=84, Unknown=0, NotChecked=0, Total=110 [2023-11-28 23:59:53,727 INFO L413 NwaCegarLoop]: 72 mSDtfsCounter, 6 mSDsluCounter, 138 mSDsCounter, 0 mSdLazyCounter, 45 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 7 SdHoareTripleChecker+Valid, 210 SdHoareTripleChecker+Invalid, 45 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 45 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:53,727 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [7 Valid, 210 Invalid, 45 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 45 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-28 23:59:53,728 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 236 states. [2023-11-28 23:59:53,748 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 236 to 226. [2023-11-28 23:59:53,749 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 226 states, 164 states have (on average 1.2621951219512195) internal successors, (207), 178 states have internal predecessors, (207), 31 states have call successors, (31), 26 states have call predecessors, (31), 30 states have return successors, (47), 32 states have call predecessors, (47), 31 states have call successors, (47) [2023-11-28 23:59:53,750 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 226 states to 226 states and 285 transitions. [2023-11-28 23:59:53,751 INFO L78 Accepts]: Start accepts. Automaton has 226 states and 285 transitions. Word has length 76 [2023-11-28 23:59:53,751 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:53,751 INFO L495 AbstractCegarLoop]: Abstraction has 226 states and 285 transitions. [2023-11-28 23:59:53,751 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 13.25) internal successors, (53), 4 states have internal predecessors, (53), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (7), 1 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-28 23:59:53,751 INFO L276 IsEmpty]: Start isEmpty. Operand 226 states and 285 transitions. [2023-11-28 23:59:53,753 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 77 [2023-11-28 23:59:53,753 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:53,753 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:53,758 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2023-11-28 23:59:53,953 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:53,954 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:53,954 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:53,954 INFO L85 PathProgramCache]: Analyzing trace with hash -1902801928, now seen corresponding path program 1 times [2023-11-28 23:59:53,954 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:53,954 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1182491307] [2023-11-28 23:59:53,955 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:53,955 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:53,965 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,036 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-28 23:59:54,041 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,093 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-28 23:59:54,097 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,115 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-28 23:59:54,116 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,118 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-28 23:59:54,119 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,128 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2023-11-28 23:59:54,129 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,131 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2023-11-28 23:59:54,132 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,133 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-28 23:59:54,134 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,134 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 68 [2023-11-28 23:59:54,135 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,137 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 16 proven. 2 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2023-11-28 23:59:54,137 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:54,137 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1182491307] [2023-11-28 23:59:54,137 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1182491307] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-28 23:59:54,137 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1496695848] [2023-11-28 23:59:54,137 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:54,137 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:54,138 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-28 23:59:54,139 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-28 23:59:54,141 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2023-11-28 23:59:54,231 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,232 INFO L262 TraceCheckSpWp]: Trace formula consists of 299 conjuncts, 4 conjunts are in the unsatisfiable core [2023-11-28 23:59:54,236 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-28 23:59:54,341 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 24 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-28 23:59:54,341 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-28 23:59:54,342 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1496695848] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:54,342 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-28 23:59:54,342 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [9] total 11 [2023-11-28 23:59:54,342 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1387362025] [2023-11-28 23:59:54,342 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:54,343 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-28 23:59:54,343 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:54,343 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-28 23:59:54,343 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=26, Invalid=84, Unknown=0, NotChecked=0, Total=110 [2023-11-28 23:59:54,344 INFO L87 Difference]: Start difference. First operand 226 states and 285 transitions. Second operand has 6 states, 6 states have (on average 9.666666666666666) internal successors, (58), 6 states have internal predecessors, (58), 5 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 5 states have call successors, (8) [2023-11-28 23:59:54,631 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:54,631 INFO L93 Difference]: Finished difference Result 723 states and 982 transitions. [2023-11-28 23:59:54,632 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-28 23:59:54,632 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 9.666666666666666) internal successors, (58), 6 states have internal predecessors, (58), 5 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 5 states have call successors, (8) Word has length 76 [2023-11-28 23:59:54,632 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:54,636 INFO L225 Difference]: With dead ends: 723 [2023-11-28 23:59:54,636 INFO L226 Difference]: Without dead ends: 499 [2023-11-28 23:59:54,637 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 97 GetRequests, 87 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 9 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=30, Invalid=102, Unknown=0, NotChecked=0, Total=132 [2023-11-28 23:59:54,638 INFO L413 NwaCegarLoop]: 74 mSDtfsCounter, 173 mSDsluCounter, 106 mSDsCounter, 0 mSdLazyCounter, 213 mSolverCounterSat, 63 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 182 SdHoareTripleChecker+Valid, 180 SdHoareTripleChecker+Invalid, 276 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 63 IncrementalHoareTripleChecker+Valid, 213 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:54,638 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [182 Valid, 180 Invalid, 276 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [63 Valid, 213 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-28 23:59:54,639 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 499 states. [2023-11-28 23:59:54,681 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 499 to 497. [2023-11-28 23:59:54,682 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 497 states, 359 states have (on average 1.2479108635097493) internal successors, (448), 383 states have internal predecessors, (448), 72 states have call successors, (72), 68 states have call predecessors, (72), 65 states have return successors, (126), 67 states have call predecessors, (126), 72 states have call successors, (126) [2023-11-28 23:59:54,685 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 497 states to 497 states and 646 transitions. [2023-11-28 23:59:54,686 INFO L78 Accepts]: Start accepts. Automaton has 497 states and 646 transitions. Word has length 76 [2023-11-28 23:59:54,686 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:54,686 INFO L495 AbstractCegarLoop]: Abstraction has 497 states and 646 transitions. [2023-11-28 23:59:54,686 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 9.666666666666666) internal successors, (58), 6 states have internal predecessors, (58), 5 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 5 states have call successors, (8) [2023-11-28 23:59:54,687 INFO L276 IsEmpty]: Start isEmpty. Operand 497 states and 646 transitions. [2023-11-28 23:59:54,688 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 81 [2023-11-28 23:59:54,689 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:54,689 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:54,695 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2023-11-28 23:59:54,891 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-28 23:59:54,891 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:54,891 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:54,891 INFO L85 PathProgramCache]: Analyzing trace with hash -968148450, now seen corresponding path program 1 times [2023-11-28 23:59:54,891 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:54,891 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [293248432] [2023-11-28 23:59:54,891 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:54,892 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:54,905 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,958 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-28 23:59:54,959 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,967 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-28 23:59:54,971 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,983 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-28 23:59:54,985 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,988 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-28 23:59:54,989 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,990 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-28 23:59:54,991 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,996 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 47 [2023-11-28 23:59:54,997 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:54,999 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 62 [2023-11-28 23:59:55,000 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,002 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-28 23:59:55,002 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,003 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 72 [2023-11-28 23:59:55,004 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,005 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 15 proven. 1 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2023-11-28 23:59:55,005 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:55,006 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [293248432] [2023-11-28 23:59:55,006 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [293248432] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-28 23:59:55,006 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [956060412] [2023-11-28 23:59:55,006 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:55,006 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:55,006 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-28 23:59:55,008 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-28 23:59:55,011 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2023-11-28 23:59:55,094 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,096 INFO L262 TraceCheckSpWp]: Trace formula consists of 308 conjuncts, 7 conjunts are in the unsatisfiable core [2023-11-28 23:59:55,099 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-28 23:59:55,152 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 24 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-28 23:59:55,152 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-28 23:59:55,152 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [956060412] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-28 23:59:55,152 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-28 23:59:55,152 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [7] total 7 [2023-11-28 23:59:55,153 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [968745667] [2023-11-28 23:59:55,153 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-28 23:59:55,153 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-28 23:59:55,153 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:55,154 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-28 23:59:55,154 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2023-11-28 23:59:55,154 INFO L87 Difference]: Start difference. First operand 497 states and 646 transitions. Second operand has 3 states, 3 states have (on average 20.0) internal successors, (60), 3 states have internal predecessors, (60), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) [2023-11-28 23:59:55,246 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:55,246 INFO L93 Difference]: Finished difference Result 835 states and 1098 transitions. [2023-11-28 23:59:55,247 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-28 23:59:55,247 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 20.0) internal successors, (60), 3 states have internal predecessors, (60), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) Word has length 80 [2023-11-28 23:59:55,247 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:55,253 INFO L225 Difference]: With dead ends: 835 [2023-11-28 23:59:55,253 INFO L226 Difference]: Without dead ends: 833 [2023-11-28 23:59:55,254 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 102 GetRequests, 97 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2023-11-28 23:59:55,255 INFO L413 NwaCegarLoop]: 69 mSDtfsCounter, 37 mSDsluCounter, 66 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 135 SdHoareTripleChecker+Invalid, 29 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:55,255 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 135 Invalid, 29 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-28 23:59:55,257 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 833 states. [2023-11-28 23:59:55,329 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 833 to 746. [2023-11-28 23:59:55,331 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 746 states, 542 states have (on average 1.2619926199261993) internal successors, (684), 579 states have internal predecessors, (684), 107 states have call successors, (107), 101 states have call predecessors, (107), 96 states have return successors, (211), 93 states have call predecessors, (211), 107 states have call successors, (211) [2023-11-28 23:59:55,337 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 746 states to 746 states and 1002 transitions. [2023-11-28 23:59:55,337 INFO L78 Accepts]: Start accepts. Automaton has 746 states and 1002 transitions. Word has length 80 [2023-11-28 23:59:55,338 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:55,338 INFO L495 AbstractCegarLoop]: Abstraction has 746 states and 1002 transitions. [2023-11-28 23:59:55,338 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 20.0) internal successors, (60), 3 states have internal predecessors, (60), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) [2023-11-28 23:59:55,338 INFO L276 IsEmpty]: Start isEmpty. Operand 746 states and 1002 transitions. [2023-11-28 23:59:55,343 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 120 [2023-11-28 23:59:55,343 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:55,343 INFO L195 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:55,348 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2023-11-28 23:59:55,543 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:55,544 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:55,544 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:55,544 INFO L85 PathProgramCache]: Analyzing trace with hash 539813840, now seen corresponding path program 1 times [2023-11-28 23:59:55,544 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:55,544 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1791364725] [2023-11-28 23:59:55,544 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:55,544 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:55,560 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,700 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-28 23:59:55,701 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,713 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-28 23:59:55,717 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,735 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-28 23:59:55,738 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,742 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-28 23:59:55,743 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,744 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-28 23:59:55,745 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,751 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 47 [2023-11-28 23:59:55,753 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,755 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 53 [2023-11-28 23:59:55,759 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,798 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-28 23:59:55,799 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,801 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-28 23:59:55,801 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,802 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-28 23:59:55,803 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,805 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 84 [2023-11-28 23:59:55,806 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,819 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 101 [2023-11-28 23:59:55,820 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,821 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-28 23:59:55,822 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,823 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 111 [2023-11-28 23:59:55,823 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,824 INFO L134 CoverageAnalysis]: Checked inductivity of 89 backedges. 44 proven. 11 refuted. 0 times theorem prover too weak. 34 trivial. 0 not checked. [2023-11-28 23:59:55,825 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:55,825 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1791364725] [2023-11-28 23:59:55,825 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1791364725] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-28 23:59:55,825 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1264683357] [2023-11-28 23:59:55,825 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:55,825 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:55,826 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-28 23:59:55,826 INFO L229 MonitoredProcess]: Starting monitored process 7 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-28 23:59:55,831 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2023-11-28 23:59:55,926 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:55,928 INFO L262 TraceCheckSpWp]: Trace formula consists of 408 conjuncts, 12 conjunts are in the unsatisfiable core [2023-11-28 23:59:55,931 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-28 23:59:56,072 INFO L134 CoverageAnalysis]: Checked inductivity of 89 backedges. 65 proven. 3 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2023-11-28 23:59:56,072 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-28 23:59:56,420 INFO L134 CoverageAnalysis]: Checked inductivity of 89 backedges. 48 proven. 3 refuted. 0 times theorem prover too weak. 38 trivial. 0 not checked. [2023-11-28 23:59:56,420 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1264683357] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-28 23:59:56,420 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-28 23:59:56,421 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 8, 9] total 17 [2023-11-28 23:59:56,421 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1347072319] [2023-11-28 23:59:56,421 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-28 23:59:56,422 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 17 states [2023-11-28 23:59:56,422 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:56,423 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 17 interpolants. [2023-11-28 23:59:56,423 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=74, Invalid=198, Unknown=0, NotChecked=0, Total=272 [2023-11-28 23:59:56,424 INFO L87 Difference]: Start difference. First operand 746 states and 1002 transitions. Second operand has 17 states, 17 states have (on average 7.588235294117647) internal successors, (129), 13 states have internal predecessors, (129), 9 states have call successors, (30), 10 states have call predecessors, (30), 12 states have return successors, (29), 9 states have call predecessors, (29), 9 states have call successors, (29) [2023-11-28 23:59:57,084 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:57,084 INFO L93 Difference]: Finished difference Result 1637 states and 2283 transitions. [2023-11-28 23:59:57,084 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2023-11-28 23:59:57,085 INFO L78 Accepts]: Start accepts. Automaton has has 17 states, 17 states have (on average 7.588235294117647) internal successors, (129), 13 states have internal predecessors, (129), 9 states have call successors, (30), 10 states have call predecessors, (30), 12 states have return successors, (29), 9 states have call predecessors, (29), 9 states have call successors, (29) Word has length 119 [2023-11-28 23:59:57,085 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:57,092 INFO L225 Difference]: With dead ends: 1637 [2023-11-28 23:59:57,092 INFO L226 Difference]: Without dead ends: 893 [2023-11-28 23:59:57,096 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 288 GetRequests, 256 SyntacticMatches, 5 SemanticMatches, 27 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 138 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=241, Invalid=571, Unknown=0, NotChecked=0, Total=812 [2023-11-28 23:59:57,096 INFO L413 NwaCegarLoop]: 13 mSDtfsCounter, 468 mSDsluCounter, 80 mSDsCounter, 0 mSdLazyCounter, 705 mSolverCounterSat, 172 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 469 SdHoareTripleChecker+Valid, 93 SdHoareTripleChecker+Invalid, 877 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 172 IncrementalHoareTripleChecker+Valid, 705 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:57,096 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [469 Valid, 93 Invalid, 877 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [172 Valid, 705 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-28 23:59:57,098 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 893 states. [2023-11-28 23:59:57,169 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 893 to 821. [2023-11-28 23:59:57,170 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 821 states, 598 states have (on average 1.265886287625418) internal successors, (757), 642 states have internal predecessors, (757), 120 states have call successors, (120), 97 states have call predecessors, (120), 102 states have return successors, (246), 104 states have call predecessors, (246), 120 states have call successors, (246) [2023-11-28 23:59:57,175 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 821 states to 821 states and 1123 transitions. [2023-11-28 23:59:57,175 INFO L78 Accepts]: Start accepts. Automaton has 821 states and 1123 transitions. Word has length 119 [2023-11-28 23:59:57,176 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:57,176 INFO L495 AbstractCegarLoop]: Abstraction has 821 states and 1123 transitions. [2023-11-28 23:59:57,176 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 17 states, 17 states have (on average 7.588235294117647) internal successors, (129), 13 states have internal predecessors, (129), 9 states have call successors, (30), 10 states have call predecessors, (30), 12 states have return successors, (29), 9 states have call predecessors, (29), 9 states have call successors, (29) [2023-11-28 23:59:57,176 INFO L276 IsEmpty]: Start isEmpty. Operand 821 states and 1123 transitions. [2023-11-28 23:59:57,180 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 116 [2023-11-28 23:59:57,180 INFO L187 NwaCegarLoop]: Found error trace [2023-11-28 23:59:57,180 INFO L195 NwaCegarLoop]: trace histogram [4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-28 23:59:57,185 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2023-11-28 23:59:57,380 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2023-11-28 23:59:57,381 INFO L420 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-28 23:59:57,381 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-28 23:59:57,381 INFO L85 PathProgramCache]: Analyzing trace with hash -1534872468, now seen corresponding path program 1 times [2023-11-28 23:59:57,381 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-28 23:59:57,381 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [202555904] [2023-11-28 23:59:57,381 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:57,382 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-28 23:59:57,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,488 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-28 23:59:57,489 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,497 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-28 23:59:57,500 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,513 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-28 23:59:57,515 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,523 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-28 23:59:57,523 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,525 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-28 23:59:57,526 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,532 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 47 [2023-11-28 23:59:57,533 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,535 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 53 [2023-11-28 23:59:57,538 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,596 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-28 23:59:57,597 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,598 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-28 23:59:57,599 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,600 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-28 23:59:57,600 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,601 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 97 [2023-11-28 23:59:57,602 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,603 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-28 23:59:57,603 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,604 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 107 [2023-11-28 23:59:57,604 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,606 INFO L134 CoverageAnalysis]: Checked inductivity of 85 backedges. 50 proven. 11 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2023-11-28 23:59:57,606 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-28 23:59:57,606 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [202555904] [2023-11-28 23:59:57,606 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [202555904] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-28 23:59:57,606 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1189627578] [2023-11-28 23:59:57,606 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-28 23:59:57,607 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-28 23:59:57,607 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-28 23:59:57,608 INFO L229 MonitoredProcess]: Starting monitored process 8 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-28 23:59:57,610 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2023-11-28 23:59:57,704 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-28 23:59:57,705 INFO L262 TraceCheckSpWp]: Trace formula consists of 401 conjuncts, 9 conjunts are in the unsatisfiable core [2023-11-28 23:59:57,708 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-28 23:59:57,863 INFO L134 CoverageAnalysis]: Checked inductivity of 85 backedges. 70 proven. 13 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-28 23:59:57,863 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-28 23:59:58,064 INFO L134 CoverageAnalysis]: Checked inductivity of 85 backedges. 51 proven. 11 refuted. 0 times theorem prover too weak. 23 trivial. 0 not checked. [2023-11-28 23:59:58,064 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1189627578] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-28 23:59:58,064 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-28 23:59:58,065 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 8, 7] total 16 [2023-11-28 23:59:58,065 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1674352354] [2023-11-28 23:59:58,065 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-28 23:59:58,066 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 16 states [2023-11-28 23:59:58,066 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-28 23:59:58,066 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 16 interpolants. [2023-11-28 23:59:58,067 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=182, Unknown=0, NotChecked=0, Total=240 [2023-11-28 23:59:58,067 INFO L87 Difference]: Start difference. First operand 821 states and 1123 transitions. Second operand has 16 states, 16 states have (on average 7.1875) internal successors, (115), 13 states have internal predecessors, (115), 6 states have call successors, (30), 10 states have call predecessors, (30), 6 states have return successors, (22), 6 states have call predecessors, (22), 6 states have call successors, (22) [2023-11-28 23:59:58,838 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-28 23:59:58,839 INFO L93 Difference]: Finished difference Result 1260 states and 1649 transitions. [2023-11-28 23:59:58,839 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2023-11-28 23:59:58,840 INFO L78 Accepts]: Start accepts. Automaton has has 16 states, 16 states have (on average 7.1875) internal successors, (115), 13 states have internal predecessors, (115), 6 states have call successors, (30), 10 states have call predecessors, (30), 6 states have return successors, (22), 6 states have call predecessors, (22), 6 states have call successors, (22) Word has length 115 [2023-11-28 23:59:58,840 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-28 23:59:58,841 INFO L225 Difference]: With dead ends: 1260 [2023-11-28 23:59:58,841 INFO L226 Difference]: Without dead ends: 0 [2023-11-28 23:59:58,845 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 286 GetRequests, 251 SyntacticMatches, 4 SemanticMatches, 31 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 222 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=281, Invalid=775, Unknown=0, NotChecked=0, Total=1056 [2023-11-28 23:59:58,845 INFO L413 NwaCegarLoop]: 28 mSDtfsCounter, 282 mSDsluCounter, 160 mSDsCounter, 0 mSdLazyCounter, 803 mSolverCounterSat, 115 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 283 SdHoareTripleChecker+Valid, 188 SdHoareTripleChecker+Invalid, 918 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 115 IncrementalHoareTripleChecker+Valid, 803 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2023-11-28 23:59:58,846 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [283 Valid, 188 Invalid, 918 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [115 Valid, 803 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2023-11-28 23:59:58,846 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-28 23:59:58,846 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-28 23:59:58,846 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-28 23:59:58,846 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-28 23:59:58,847 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 115 [2023-11-28 23:59:58,847 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-28 23:59:58,847 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-28 23:59:58,847 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 16 states, 16 states have (on average 7.1875) internal successors, (115), 13 states have internal predecessors, (115), 6 states have call successors, (30), 10 states have call predecessors, (30), 6 states have return successors, (22), 6 states have call predecessors, (22), 6 states have call successors, (22) [2023-11-28 23:59:58,848 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-28 23:59:58,848 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-28 23:59:58,850 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-28 23:59:58,855 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2023-11-28 23:59:59,052 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 8 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2023-11-28 23:59:59,054 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-29 00:00:01,069 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 183 190) no Hoare annotation was computed. [2023-11-29 00:00:01,069 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 183 190) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= 1 ~systemActive~0))) [2023-11-29 00:00:01,070 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 98 104) no Hoare annotation was computed. [2023-11-29 00:00:01,070 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 98 104) the Hoare annotation is: true [2023-11-29 00:00:01,070 INFO L899 garLoopResultBuilder]: For program point L942-1(lines 938 949) no Hoare annotation was computed. [2023-11-29 00:00:01,070 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 938 949) the Hoare annotation is: (let ((.cse0 (< 2 ~waterLevel~0)) (.cse3 (not (= ~pumpRunning~0 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse4 (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0)) (.cse2 (not (= ~methAndRunningLastTime~0 0)))) (and (or .cse0 (not (= |old(~methaneLevelCritical~0)| 0)) (= ~methaneLevelCritical~0 0) .cse1 (< ~waterLevel~0 2) .cse2) (or .cse3 .cse4 (not (= 0 ~systemActive~0))) (or .cse0 .cse3 .cse1 .cse4 .cse2))) [2023-11-29 00:00:01,070 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 938 949) no Hoare annotation was computed. [2023-11-29 00:00:01,070 INFO L902 garLoopResultBuilder]: At program point L417(line 417) the Hoare annotation is: true [2023-11-29 00:00:01,070 INFO L899 garLoopResultBuilder]: For program point L417-1(line 417) no Hoare annotation was computed. [2023-11-29 00:00:01,070 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 411 440) no Hoare annotation was computed. [2023-11-29 00:00:01,070 INFO L899 garLoopResultBuilder]: For program point L436(lines 411 440) no Hoare annotation was computed. [2023-11-29 00:00:01,071 INFO L899 garLoopResultBuilder]: For program point L432(line 432) no Hoare annotation was computed. [2023-11-29 00:00:01,071 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 411 440) the Hoare annotation is: true [2023-11-29 00:00:01,071 INFO L899 garLoopResultBuilder]: For program point L425(lines 425 429) no Hoare annotation was computed. [2023-11-29 00:00:01,071 INFO L902 garLoopResultBuilder]: At program point L425-1(lines 425 429) the Hoare annotation is: true [2023-11-29 00:00:01,071 INFO L902 garLoopResultBuilder]: At program point L421-2(lines 421 435) the Hoare annotation is: true [2023-11-29 00:00:01,071 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 950 958) the Hoare annotation is: true [2023-11-29 00:00:01,071 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 950 958) no Hoare annotation was computed. [2023-11-29 00:00:01,071 INFO L899 garLoopResultBuilder]: For program point L386-1(line 386) no Hoare annotation was computed. [2023-11-29 00:00:01,071 INFO L895 garLoopResultBuilder]: At program point L151(line 151) the Hoare annotation is: (let ((.cse6 (= |old(~pumpRunning~0)| 0))) (let ((.cse3 (and (= ~pumpRunning~0 0) (= ~methAndRunningLastTime~0 0) (= |old(~waterLevel~0)| ~waterLevel~0))) (.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse4 (< |old(~waterLevel~0)| 2)) (.cse5 (< 2 |old(~waterLevel~0)|)) (.cse0 (not .cse6))) (and (or (< 1 |old(~waterLevel~0)|) .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse2 .cse3 .cse4 .cse5) (or .cse1 .cse2 .cse4 .cse6 .cse5) (or .cse0 (not (= 0 ~systemActive~0)))))) [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L151-1(lines 132 156) no Hoare annotation was computed. [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L85-1(lines 85 91) no Hoare annotation was computed. [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L275(lines 275 279) no Hoare annotation was computed. [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L275-2(lines 275 279) no Hoare annotation was computed. [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L78-1(lines 77 96) no Hoare annotation was computed. [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L140(lines 140 148) no Hoare annotation was computed. [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L136(lines 136 153) no Hoare annotation was computed. [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L392(lines 392 402) no Hoare annotation was computed. [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L388(lines 388 405) no Hoare annotation was computed. [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L388-1(lines 380 408) no Hoare annotation was computed. [2023-11-29 00:00:01,072 INFO L899 garLoopResultBuilder]: For program point L54(line 54) no Hoare annotation was computed. [2023-11-29 00:00:01,073 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 74 97) the Hoare annotation is: (let ((.cse2 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse3 (not (= 1 ~systemActive~0))) (.cse0 (= ~methAndRunningLastTime~0 0)) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (= ~pumpRunning~0 0)) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 .cse1) .cse2 .cse3 (< |old(~waterLevel~0)| 2) (< 2 |old(~waterLevel~0)|)) (or (< 1 |old(~waterLevel~0)|) .cse4 .cse2 .cse3 (and .cse5 .cse0 .cse1)) (or .cse4 (and .cse5 .cse1 (= |old(~methAndRunningLastTime~0)| ~methAndRunningLastTime~0)) (not (= 0 ~systemActive~0))))) [2023-11-29 00:00:01,073 INFO L899 garLoopResultBuilder]: For program point L393(lines 393 399) no Hoare annotation was computed. [2023-11-29 00:00:01,073 INFO L899 garLoopResultBuilder]: For program point L918(lines 918 922) no Hoare annotation was computed. [2023-11-29 00:00:01,073 INFO L899 garLoopResultBuilder]: For program point L918-2(lines 914 925) no Hoare annotation was computed. [2023-11-29 00:00:01,073 INFO L895 garLoopResultBuilder]: At program point L146(line 146) the Hoare annotation is: (let ((.cse1 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (< 2 |old(~waterLevel~0)|)) (.cse0 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse2 (< |old(~waterLevel~0)| 2) .cse3) (or .cse0 (not (= 0 ~systemActive~0))))) [2023-11-29 00:00:01,073 INFO L895 garLoopResultBuilder]: At program point L142(line 142) the Hoare annotation is: (let ((.cse0 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (< 2 |old(~waterLevel~0)|)) (.cse3 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |old(~waterLevel~0)| (+ ~waterLevel~0 1))) .cse1 (< |old(~waterLevel~0)| 2) .cse2) (or .cse3 .cse0 .cse1 .cse2) (or .cse3 (not (= 0 ~systemActive~0))))) [2023-11-29 00:00:01,073 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 74 97) no Hoare annotation was computed. [2023-11-29 00:00:01,074 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 54) no Hoare annotation was computed. [2023-11-29 00:00:01,074 INFO L895 garLoopResultBuilder]: At program point L386(line 386) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse8 (= 1 ~systemActive~0)) (.cse3 (= |old(~pumpRunning~0)| 0))) (let ((.cse6 (not .cse3)) (.cse0 (not (= |old(~methAndRunningLastTime~0)| 0))) (.cse1 (not .cse8)) (.cse2 (and (= 2 ~waterLevel~0) (= ~methaneLevelCritical~0 0) .cse8 (= |old(~waterLevel~0)| 2))) (.cse5 (< 2 |old(~waterLevel~0)|)) (.cse7 (and .cse4 (= |old(~waterLevel~0)| ~waterLevel~0) (= |old(~methAndRunningLastTime~0)| ~methAndRunningLastTime~0)))) (and (or .cse0 .cse1 .cse2 (< |old(~waterLevel~0)| 2) .cse3 (and .cse4 (= |old(~waterLevel~0)| (+ ~waterLevel~0 1))) .cse5) (or .cse6 .cse7 (not (= 0 ~systemActive~0))) (or .cse6 .cse0 .cse1 .cse2 .cse5 .cse7)))) [2023-11-29 00:00:01,074 INFO L895 garLoopResultBuilder]: At program point L362(lines 313 363) the Hoare annotation is: false [2023-11-29 00:00:01,074 INFO L899 garLoopResultBuilder]: For program point L350(lines 350 356) no Hoare annotation was computed. [2023-11-29 00:00:01,074 INFO L895 garLoopResultBuilder]: At program point L350-2(lines 344 357) the Hoare annotation is: (let ((.cse3 (= ~pumpRunning~0 0)) (.cse0 (= ~methAndRunningLastTime~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 (= 2 ~waterLevel~0) .cse1 .cse2) (and .cse3 .cse2 (= 0 ~systemActive~0)) (and .cse3 .cse0 .cse1 .cse2 (<= ~waterLevel~0 2)))) [2023-11-29 00:00:01,074 INFO L899 garLoopResultBuilder]: For program point L334(lines 334 340) no Hoare annotation was computed. [2023-11-29 00:00:01,074 INFO L899 garLoopResultBuilder]: For program point L334-1(lines 334 340) no Hoare annotation was computed. [2023-11-29 00:00:01,074 INFO L895 garLoopResultBuilder]: At program point L359(lines 314 361) the Hoare annotation is: (let ((.cse1 (= 2 ~waterLevel~0)) (.cse4 (= ~pumpRunning~0 0)) (.cse0 (= ~methAndRunningLastTime~0 0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (= ~methaneLevelCritical~0 0) .cse2 .cse3) (and .cse4 .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse3 (= 0 ~systemActive~0)) (and .cse4 .cse0 (<= ~waterLevel~0 1) .cse2 .cse3))) [2023-11-29 00:00:01,075 INFO L895 garLoopResultBuilder]: At program point L326(line 326) the Hoare annotation is: (let ((.cse1 (= 2 ~waterLevel~0)) (.cse4 (= ~pumpRunning~0 0)) (.cse0 (= ~methAndRunningLastTime~0 0)) (.cse2 (= 1 ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (= ~methaneLevelCritical~0 0) .cse2 .cse3) (and .cse4 .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse3 (= 0 ~systemActive~0)) (and .cse4 .cse0 (<= ~waterLevel~0 1) .cse2 .cse3))) [2023-11-29 00:00:01,075 INFO L899 garLoopResultBuilder]: For program point L289(lines 289 295) no Hoare annotation was computed. [2023-11-29 00:00:01,075 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-29 00:00:01,075 INFO L899 garLoopResultBuilder]: For program point L289-1(lines 289 295) no Hoare annotation was computed. [2023-11-29 00:00:01,075 INFO L899 garLoopResultBuilder]: For program point L496(lines 496 503) no Hoare annotation was computed. [2023-11-29 00:00:01,075 INFO L899 garLoopResultBuilder]: For program point L496-2(lines 496 503) no Hoare annotation was computed. [2023-11-29 00:00:01,075 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-29 00:00:01,075 INFO L899 garLoopResultBuilder]: For program point L315(lines 314 361) no Hoare annotation was computed. [2023-11-29 00:00:01,075 INFO L899 garLoopResultBuilder]: For program point L344(lines 344 357) no Hoare annotation was computed. [2023-11-29 00:00:01,076 INFO L895 garLoopResultBuilder]: At program point L336(line 336) the Hoare annotation is: (let ((.cse3 (= ~pumpRunning~0 0)) (.cse0 (= ~methAndRunningLastTime~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 (= 2 ~waterLevel~0) (= ~methaneLevelCritical~0 0) .cse1 .cse2) (and .cse3 .cse2 (= 0 ~systemActive~0)) (and .cse3 .cse0 .cse1 .cse2 (<= ~waterLevel~0 2)))) [2023-11-29 00:00:01,076 INFO L899 garLoopResultBuilder]: For program point L365(lines 304 369) no Hoare annotation was computed. [2023-11-29 00:00:01,076 INFO L899 garLoopResultBuilder]: For program point L324(lines 324 330) no Hoare annotation was computed. [2023-11-29 00:00:01,076 INFO L899 garLoopResultBuilder]: For program point L324-1(lines 324 330) no Hoare annotation was computed. [2023-11-29 00:00:01,076 INFO L895 garLoopResultBuilder]: At program point L291(line 291) the Hoare annotation is: (and (= 1 ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2023-11-29 00:00:01,076 INFO L899 garLoopResultBuilder]: For program point L256(lines 256 260) no Hoare annotation was computed. [2023-11-29 00:00:01,076 INFO L899 garLoopResultBuilder]: For program point L256-2(lines 256 260) no Hoare annotation was computed. [2023-11-29 00:00:01,076 INFO L895 garLoopResultBuilder]: At program point L120(line 120) the Hoare annotation is: (let ((.cse0 (= |old(~pumpRunning~0)| 0)) (.cse4 (= 1 ~systemActive~0))) (let ((.cse1 (not .cse4)) (.cse2 (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~0#1| 0) .cse4 .cse0)) (.cse3 (not (= ~methAndRunningLastTime~0 0)))) (and (or (< 2 ~waterLevel~0) (not .cse0) .cse1 .cse2 .cse3) (or .cse1 (not (= ~waterLevel~0 0)) .cse2 .cse3)))) [2023-11-29 00:00:01,076 INFO L899 garLoopResultBuilder]: For program point L114(lines 114 122) no Hoare annotation was computed. [2023-11-29 00:00:01,077 INFO L899 garLoopResultBuilder]: For program point L110(lines 110 127) no Hoare annotation was computed. [2023-11-29 00:00:01,077 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 106 130) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= ~methAndRunningLastTime~0 0)))) (and (or (< 2 ~waterLevel~0) (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 .cse1) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~waterLevel~0 0)) .cse1))) [2023-11-29 00:00:01,077 INFO L899 garLoopResultBuilder]: For program point isHighWaterSensorDry_returnLabel#1(lines 991 1004) no Hoare annotation was computed. [2023-11-29 00:00:01,077 INFO L895 garLoopResultBuilder]: At program point L125(line 125) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= ~methAndRunningLastTime~0 0)))) (and (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0 (not (= ~waterLevel~0 0)) .cse1) (or (< 2 ~waterLevel~0) (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2023-11-29 00:00:01,077 INFO L899 garLoopResultBuilder]: For program point L125-1(lines 106 130) no Hoare annotation was computed. [2023-11-29 00:00:01,077 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 106 130) no Hoare annotation was computed. [2023-11-29 00:00:01,077 INFO L899 garLoopResultBuilder]: For program point L173(lines 173 179) no Hoare annotation was computed. [2023-11-29 00:00:01,077 INFO L899 garLoopResultBuilder]: For program point L173-2(lines 166 182) no Hoare annotation was computed. [2023-11-29 00:00:01,077 INFO L895 garLoopResultBuilder]: At program point L196(line 196) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= ~methAndRunningLastTime~0 0)))) (and (or .cse0 (not (= ~waterLevel~0 0)) .cse1) (or (< 2 ~waterLevel~0) (not (= |old(~pumpRunning~0)| 0)) .cse0 (and (= ~pumpRunning~0 0) (= 2 ~waterLevel~0)) .cse1))) [2023-11-29 00:00:01,078 INFO L899 garLoopResultBuilder]: For program point L995(lines 995 1001) no Hoare annotation was computed. [2023-11-29 00:00:01,078 INFO L899 garLoopResultBuilder]: For program point L196-1(line 196) no Hoare annotation was computed. [2023-11-29 00:00:01,078 INFO L899 garLoopResultBuilder]: For program point L930-1(lines 926 937) no Hoare annotation was computed. [2023-11-29 00:00:01,078 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 926 937) no Hoare annotation was computed. [2023-11-29 00:00:01,078 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 926 937) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse3 (< 2 |old(~waterLevel~0)|)) (.cse4 (not (= ~methAndRunningLastTime~0 0)))) (and (or .cse0 .cse1 (not (= 0 ~systemActive~0))) (or .cse2 (< |old(~waterLevel~0)| 2) (not (= ~methaneLevelCritical~0 0)) .cse1 .cse3 .cse4) (or .cse0 .cse2 .cse1 .cse3 .cse4))) [2023-11-29 00:00:01,081 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:00:01,083 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-29 00:00:01,094 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 29.11 12:00:01 BoogieIcfgContainer [2023-11-29 00:00:01,094 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-29 00:00:01,094 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-29 00:00:01,094 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-29 00:00:01,095 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-29 00:00:01,095 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 11:59:49" (3/4) ... [2023-11-29 00:00:01,097 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-29 00:00:01,099 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-29 00:00:01,099 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-29 00:00:01,099 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-29 00:00:01,099 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-29 00:00:01,100 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2023-11-29 00:00:01,100 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-29 00:00:01,100 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-29 00:00:01,100 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-29 00:00:01,106 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 34 nodes and edges [2023-11-29 00:00:01,107 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2023-11-29 00:00:01,107 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-29 00:00:01,108 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-29 00:00:01,108 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-29 00:00:01,241 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/witness.graphml [2023-11-29 00:00:01,241 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/witness.yml [2023-11-29 00:00:01,242 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-29 00:00:01,242 INFO L158 Benchmark]: Toolchain (without parser) took 12286.57ms. Allocated memory was 165.7MB in the beginning and 199.2MB in the end (delta: 33.6MB). Free memory was 134.0MB in the beginning and 159.6MB in the end (delta: -25.6MB). Peak memory consumption was 118.7MB. Max. memory is 16.1GB. [2023-11-29 00:00:01,243 INFO L158 Benchmark]: CDTParser took 0.15ms. Allocated memory is still 119.5MB. Free memory is still 92.3MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-29 00:00:01,243 INFO L158 Benchmark]: CACSL2BoogieTranslator took 389.47ms. Allocated memory is still 165.7MB. Free memory was 134.0MB in the beginning and 113.9MB in the end (delta: 20.1MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. [2023-11-29 00:00:01,244 INFO L158 Benchmark]: Boogie Procedure Inliner took 45.81ms. Allocated memory is still 165.7MB. Free memory was 113.9MB in the beginning and 111.8MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-29 00:00:01,244 INFO L158 Benchmark]: Boogie Preprocessor took 43.95ms. Allocated memory is still 165.7MB. Free memory was 111.8MB in the beginning and 109.7MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-29 00:00:01,244 INFO L158 Benchmark]: RCFGBuilder took 427.10ms. Allocated memory is still 165.7MB. Free memory was 109.7MB in the beginning and 116.5MB in the end (delta: -6.8MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-29 00:00:01,245 INFO L158 Benchmark]: TraceAbstraction took 11227.33ms. Allocated memory was 165.7MB in the beginning and 199.2MB in the end (delta: 33.6MB). Free memory was 116.5MB in the beginning and 52.5MB in the end (delta: 64.0MB). Peak memory consumption was 106.6MB. Max. memory is 16.1GB. [2023-11-29 00:00:01,245 INFO L158 Benchmark]: Witness Printer took 147.25ms. Allocated memory is still 199.2MB. Free memory was 52.5MB in the beginning and 159.6MB in the end (delta: -107.1MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2023-11-29 00:00:01,247 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.15ms. Allocated memory is still 119.5MB. Free memory is still 92.3MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 389.47ms. Allocated memory is still 165.7MB. Free memory was 134.0MB in the beginning and 113.9MB in the end (delta: 20.1MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 45.81ms. Allocated memory is still 165.7MB. Free memory was 113.9MB in the beginning and 111.8MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 43.95ms. Allocated memory is still 165.7MB. Free memory was 111.8MB in the beginning and 109.7MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 427.10ms. Allocated memory is still 165.7MB. Free memory was 109.7MB in the beginning and 116.5MB in the end (delta: -6.8MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * TraceAbstraction took 11227.33ms. Allocated memory was 165.7MB in the beginning and 199.2MB in the end (delta: 33.6MB). Free memory was 116.5MB in the beginning and 52.5MB in the end (delta: 64.0MB). Peak memory consumption was 106.6MB. Max. memory is 16.1GB. * Witness Printer took 147.25ms. Allocated memory is still 199.2MB. Free memory was 52.5MB in the beginning and 159.6MB in the end (delta: -107.1MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] - GenericResultAtLocation [Line: 300]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [300] - GenericResultAtLocation [Line: 370]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [370] - GenericResultAtLocation [Line: 409]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [409] - GenericResultAtLocation [Line: 509]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [509] - GenericResultAtLocation [Line: 544]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [544] - GenericResultAtLocation [Line: 910]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [910] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 78 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 11.2s, OverallIterations: 13, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 3.3s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1606 SdHoareTripleChecker+Valid, 2.1s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1574 mSDsluCounter, 2262 SdHoareTripleChecker+Invalid, 1.7s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1441 mSDsCounter, 515 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 2609 IncrementalHoareTripleChecker+Invalid, 3124 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 515 mSolverCounterUnsat, 821 mSDtfsCounter, 2609 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 1135 GetRequests, 998 SyntacticMatches, 9 SemanticMatches, 128 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 455 ImplicationChecksByTransitivity, 1.0s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=821occurred in iteration=12, InterpolantAutomatonStates: 99, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 13 MinimizatonAttempts, 244 StatesRemovedByMinimization, 10 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 24 LocationsWithAnnotation, 1156 PreInvPairs, 1263 NumberOfFragments, 833 HoareAnnotationTreeSize, 1156 FomulaSimplifications, 4141 FormulaSimplificationTreeSizeReduction, 0.4s HoareSimplificationTime, 24 FomulaSimplificationsInter, 5646 FormulaSimplificationTreeSizeReductionInter, 1.6s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 2.8s InterpolantComputationTime, 1421 NumberOfCodeBlocks, 1421 NumberOfCodeBlocksAsserted, 20 NumberOfCheckSat, 1633 ConstructedInterpolants, 0 QuantifiedInterpolants, 3210 SizeOfPredicates, 7 NumberOfNonLiveVariables, 2312 ConjunctsInSsa, 47 ConjunctsInUnsatCore, 22 InterpolantComputations, 11 PerfectInterpolantSequences, 745/804 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 313]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 314]: Loop Invariant Derived loop invariant: ((((((((methAndRunningLastTime == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (2 == waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0))) || (((pumpRunning == 0) && (splverifierCounter == 0)) && (0 == systemActive))) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (waterLevel <= 1)) && (1 == systemActive)) && (splverifierCounter == 0))) RESULT: Ultimate proved your program to be correct! [2023-11-29 00:00:01,265 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_59ff2cc3-a244-4205-97d8-b1bc5598f9f1/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE