./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 0e0057cc Calling Ultimate with: /usr/lib/jvm/java-11-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 53b1b58c0a8af862b137647fd316df606e2053e614741221b62b3a107765e608 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-0e0057c [2023-11-29 04:18:29,214 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-29 04:18:29,279 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-29 04:18:29,284 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-29 04:18:29,284 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-29 04:18:29,309 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-29 04:18:29,310 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-29 04:18:29,310 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-29 04:18:29,311 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-29 04:18:29,312 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-29 04:18:29,312 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-29 04:18:29,313 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-29 04:18:29,313 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-29 04:18:29,314 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-29 04:18:29,314 INFO L153 SettingsManager]: * Use SBE=true [2023-11-29 04:18:29,315 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-29 04:18:29,315 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-29 04:18:29,316 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-29 04:18:29,316 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-29 04:18:29,317 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-29 04:18:29,317 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-29 04:18:29,321 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-29 04:18:29,321 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-29 04:18:29,322 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-29 04:18:29,322 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-29 04:18:29,323 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-29 04:18:29,323 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-29 04:18:29,323 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-29 04:18:29,324 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-29 04:18:29,324 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-29 04:18:29,324 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-29 04:18:29,325 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-29 04:18:29,325 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-29 04:18:29,325 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-29 04:18:29,326 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-29 04:18:29,326 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-29 04:18:29,326 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-29 04:18:29,326 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-29 04:18:29,326 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-29 04:18:29,326 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-29 04:18:29,327 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-29 04:18:29,327 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-29 04:18:29,327 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 53b1b58c0a8af862b137647fd316df606e2053e614741221b62b3a107765e608 [2023-11-29 04:18:29,544 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-29 04:18:29,565 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-29 04:18:29,568 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-29 04:18:29,569 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-29 04:18:29,570 INFO L274 PluginConnector]: CDTParser initialized [2023-11-29 04:18:29,571 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/../../sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c [2023-11-29 04:18:32,396 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-29 04:18:32,610 INFO L384 CDTParser]: Found 1 translation units. [2023-11-29 04:18:32,610 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c [2023-11-29 04:18:32,626 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/data/9c8742092/c1053dda7d664cd996e9ca2328682e9e/FLAG9f335b67b [2023-11-29 04:18:32,640 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/data/9c8742092/c1053dda7d664cd996e9ca2328682e9e [2023-11-29 04:18:32,642 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-29 04:18:32,643 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-29 04:18:32,645 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-29 04:18:32,645 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-29 04:18:32,649 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-29 04:18:32,650 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 29.11 04:18:32" (1/1) ... [2023-11-29 04:18:32,651 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@2f05a8ae and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:32, skipping insertion in model container [2023-11-29 04:18:32,651 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 29.11 04:18:32" (1/1) ... [2023-11-29 04:18:32,703 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-29 04:18:32,878 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c[7381,7394] [2023-11-29 04:18:32,948 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-29 04:18:32,960 INFO L202 MainTranslator]: Completed pre-run [2023-11-29 04:18:32,971 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49] [2023-11-29 04:18:32,972 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [118] [2023-11-29 04:18:32,973 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [368] [2023-11-29 04:18:32,973 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [472] [2023-11-29 04:18:32,973 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [481] [2023-11-29 04:18:32,974 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification3_spec.i","") [580] [2023-11-29 04:18:32,974 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [614] [2023-11-29 04:18:32,974 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [649] [2023-11-29 04:18:32,995 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/sv-benchmarks/c/product-lines/minepump_spec3_product61.cil.c[7381,7394] [2023-11-29 04:18:33,030 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-29 04:18:33,051 INFO L206 MainTranslator]: Completed translation [2023-11-29 04:18:33,051 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33 WrapperNode [2023-11-29 04:18:33,052 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-29 04:18:33,053 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-29 04:18:33,053 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-29 04:18:33,053 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-29 04:18:33,060 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,074 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,101 INFO L138 Inliner]: procedures = 57, calls = 105, calls flagged for inlining = 23, calls inlined = 20, statements flattened = 227 [2023-11-29 04:18:33,102 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-29 04:18:33,103 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-29 04:18:33,103 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-29 04:18:33,103 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-29 04:18:33,115 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,116 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,119 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,135 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-11-29 04:18:33,135 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,135 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,141 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,146 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,148 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,149 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,152 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-29 04:18:33,153 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-29 04:18:33,153 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-29 04:18:33,153 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-29 04:18:33,154 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (1/1) ... [2023-11-29 04:18:33,160 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-29 04:18:33,171 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 04:18:33,182 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-11-29 04:18:33,185 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-11-29 04:18:33,217 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-29 04:18:33,217 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-29 04:18:33,217 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-29 04:18:33,217 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2023-11-29 04:18:33,218 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2023-11-29 04:18:33,218 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-29 04:18:33,218 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-29 04:18:33,218 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-29 04:18:33,218 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-29 04:18:33,218 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-29 04:18:33,218 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-29 04:18:33,219 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-29 04:18:33,219 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-29 04:18:33,219 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2023-11-29 04:18:33,219 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2023-11-29 04:18:33,219 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2023-11-29 04:18:33,219 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2023-11-29 04:18:33,219 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-29 04:18:33,219 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-29 04:18:33,220 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-29 04:18:33,220 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-29 04:18:33,220 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-29 04:18:33,220 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-29 04:18:33,220 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-29 04:18:33,294 INFO L241 CfgBuilder]: Building ICFG [2023-11-29 04:18:33,304 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-29 04:18:33,546 INFO L282 CfgBuilder]: Performing block encoding [2023-11-29 04:18:33,600 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-29 04:18:33,601 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-29 04:18:33,601 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.11 04:18:33 BoogieIcfgContainer [2023-11-29 04:18:33,601 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-29 04:18:33,603 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-29 04:18:33,604 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-29 04:18:33,607 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-29 04:18:33,607 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 29.11 04:18:32" (1/3) ... [2023-11-29 04:18:33,608 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@47721867 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 29.11 04:18:33, skipping insertion in model container [2023-11-29 04:18:33,608 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:18:33" (2/3) ... [2023-11-29 04:18:33,608 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@47721867 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 29.11 04:18:33, skipping insertion in model container [2023-11-29 04:18:33,608 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.11 04:18:33" (3/3) ... [2023-11-29 04:18:33,609 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product61.cil.c [2023-11-29 04:18:33,628 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-29 04:18:33,628 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-29 04:18:33,666 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-29 04:18:33,671 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@7676ec26, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-29 04:18:33,671 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-29 04:18:33,675 INFO L276 IsEmpty]: Start isEmpty. Operand has 89 states, 59 states have (on average 1.5084745762711864) internal successors, (89), 69 states have internal predecessors, (89), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) [2023-11-29 04:18:33,684 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2023-11-29 04:18:33,685 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:33,685 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:33,686 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:33,691 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:33,692 INFO L85 PathProgramCache]: Analyzing trace with hash -1735961070, now seen corresponding path program 1 times [2023-11-29 04:18:33,700 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:33,700 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1470930423] [2023-11-29 04:18:33,700 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:33,701 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:33,803 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:33,863 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 9 [2023-11-29 04:18:33,866 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:33,871 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 04:18:33,872 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:33,872 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1470930423] [2023-11-29 04:18:33,873 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1470930423] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:33,873 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:18:33,873 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-29 04:18:33,875 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [579426005] [2023-11-29 04:18:33,876 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:33,880 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-29 04:18:33,881 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:33,910 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-29 04:18:33,911 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-29 04:18:33,913 INFO L87 Difference]: Start difference. First operand has 89 states, 59 states have (on average 1.5084745762711864) internal successors, (89), 69 states have internal predecessors, (89), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) Second operand has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-29 04:18:33,976 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:33,976 INFO L93 Difference]: Finished difference Result 176 states and 251 transitions. [2023-11-29 04:18:33,978 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-29 04:18:33,979 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2023-11-29 04:18:33,979 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:33,989 INFO L225 Difference]: With dead ends: 176 [2023-11-29 04:18:33,989 INFO L226 Difference]: Without dead ends: 84 [2023-11-29 04:18:33,993 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-29 04:18:33,997 INFO L413 NwaCegarLoop]: 104 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 16 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 104 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 16 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:33,998 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 104 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 16 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-29 04:18:34,015 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 84 states. [2023-11-29 04:18:34,040 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 84 to 84. [2023-11-29 04:18:34,041 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 84 states, 56 states have (on average 1.4107142857142858) internal successors, (79), 65 states have internal predecessors, (79), 18 states have call successors, (18), 10 states have call predecessors, (18), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) [2023-11-29 04:18:34,044 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 84 states to 84 states and 114 transitions. [2023-11-29 04:18:34,045 INFO L78 Accepts]: Start accepts. Automaton has 84 states and 114 transitions. Word has length 17 [2023-11-29 04:18:34,046 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:34,046 INFO L495 AbstractCegarLoop]: Abstraction has 84 states and 114 transitions. [2023-11-29 04:18:34,046 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.5) internal successors, (13), 2 states have internal predecessors, (13), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-29 04:18:34,046 INFO L276 IsEmpty]: Start isEmpty. Operand 84 states and 114 transitions. [2023-11-29 04:18:34,049 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 19 [2023-11-29 04:18:34,049 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:34,049 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:34,049 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-29 04:18:34,050 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:34,050 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:34,050 INFO L85 PathProgramCache]: Analyzing trace with hash 260613743, now seen corresponding path program 1 times [2023-11-29 04:18:34,051 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:34,051 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [39094915] [2023-11-29 04:18:34,051 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:34,051 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:34,069 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:34,137 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 04:18:34,139 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:34,142 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 04:18:34,142 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:34,142 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [39094915] [2023-11-29 04:18:34,143 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [39094915] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:34,143 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:18:34,143 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-29 04:18:34,143 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1502364480] [2023-11-29 04:18:34,143 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:34,145 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-29 04:18:34,145 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:34,146 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-29 04:18:34,146 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-29 04:18:34,146 INFO L87 Difference]: Start difference. First operand 84 states and 114 transitions. Second operand has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-29 04:18:34,187 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:34,188 INFO L93 Difference]: Finished difference Result 141 states and 191 transitions. [2023-11-29 04:18:34,188 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-29 04:18:34,188 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 18 [2023-11-29 04:18:34,189 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:34,190 INFO L225 Difference]: With dead ends: 141 [2023-11-29 04:18:34,191 INFO L226 Difference]: Without dead ends: 76 [2023-11-29 04:18:34,192 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-29 04:18:34,193 INFO L413 NwaCegarLoop]: 90 mSDtfsCounter, 11 mSDsluCounter, 76 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 166 SdHoareTripleChecker+Invalid, 24 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:34,194 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 166 Invalid, 24 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-29 04:18:34,196 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2023-11-29 04:18:34,204 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 76. [2023-11-29 04:18:34,205 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 51 states have (on average 1.4313725490196079) internal successors, (73), 60 states have internal predecessors, (73), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2023-11-29 04:18:34,206 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 103 transitions. [2023-11-29 04:18:34,207 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 103 transitions. Word has length 18 [2023-11-29 04:18:34,207 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:34,207 INFO L495 AbstractCegarLoop]: Abstraction has 76 states and 103 transitions. [2023-11-29 04:18:34,207 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 4.666666666666667) internal successors, (14), 3 states have internal predecessors, (14), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-29 04:18:34,207 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 103 transitions. [2023-11-29 04:18:34,208 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2023-11-29 04:18:34,209 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:34,209 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:34,209 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-29 04:18:34,209 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:34,210 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:34,210 INFO L85 PathProgramCache]: Analyzing trace with hash -1473546257, now seen corresponding path program 1 times [2023-11-29 04:18:34,210 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:34,210 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [685119468] [2023-11-29 04:18:34,210 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:34,211 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:34,228 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:34,327 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 04:18:34,329 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:34,332 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 04:18:34,332 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:34,332 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [685119468] [2023-11-29 04:18:34,333 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [685119468] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:34,333 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:18:34,333 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-11-29 04:18:34,333 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [811069190] [2023-11-29 04:18:34,333 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:34,334 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-29 04:18:34,334 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:34,335 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-29 04:18:34,335 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-29 04:18:34,335 INFO L87 Difference]: Start difference. First operand 76 states and 103 transitions. Second operand has 4 states, 4 states have (on average 4.5) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-29 04:18:34,452 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:34,452 INFO L93 Difference]: Finished difference Result 150 states and 205 transitions. [2023-11-29 04:18:34,453 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-29 04:18:34,453 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.5) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 21 [2023-11-29 04:18:34,453 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:34,455 INFO L225 Difference]: With dead ends: 150 [2023-11-29 04:18:34,455 INFO L226 Difference]: Without dead ends: 76 [2023-11-29 04:18:34,457 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-11-29 04:18:34,458 INFO L413 NwaCegarLoop]: 85 mSDtfsCounter, 102 mSDsluCounter, 47 mSDsCounter, 0 mSdLazyCounter, 55 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 102 SdHoareTripleChecker+Valid, 132 SdHoareTripleChecker+Invalid, 61 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 55 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:34,459 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [102 Valid, 132 Invalid, 61 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 55 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-29 04:18:34,460 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2023-11-29 04:18:34,471 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 76. [2023-11-29 04:18:34,471 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 51 states have (on average 1.411764705882353) internal successors, (72), 60 states have internal predecessors, (72), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2023-11-29 04:18:34,473 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 102 transitions. [2023-11-29 04:18:34,473 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 102 transitions. Word has length 21 [2023-11-29 04:18:34,473 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:34,473 INFO L495 AbstractCegarLoop]: Abstraction has 76 states and 102 transitions. [2023-11-29 04:18:34,474 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.5) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-11-29 04:18:34,474 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 102 transitions. [2023-11-29 04:18:34,475 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2023-11-29 04:18:34,476 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:34,476 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:34,476 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-29 04:18:34,476 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:34,477 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:34,477 INFO L85 PathProgramCache]: Analyzing trace with hash 1105962929, now seen corresponding path program 1 times [2023-11-29 04:18:34,477 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:34,477 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [944304920] [2023-11-29 04:18:34,478 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:34,478 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:34,498 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:34,578 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 04:18:34,583 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:34,615 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 04:18:34,617 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:34,619 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2023-11-29 04:18:34,620 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:34,622 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 04:18:34,622 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:34,623 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [944304920] [2023-11-29 04:18:34,623 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [944304920] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:34,623 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:18:34,623 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-29 04:18:34,623 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1914543900] [2023-11-29 04:18:34,624 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:34,624 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-29 04:18:34,624 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:34,625 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-29 04:18:34,625 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-29 04:18:34,626 INFO L87 Difference]: Start difference. First operand 76 states and 102 transitions. Second operand has 6 states, 6 states have (on average 4.5) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-29 04:18:34,938 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:34,939 INFO L93 Difference]: Finished difference Result 232 states and 311 transitions. [2023-11-29 04:18:34,939 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-29 04:18:34,939 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) Word has length 34 [2023-11-29 04:18:34,940 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:34,942 INFO L225 Difference]: With dead ends: 232 [2023-11-29 04:18:34,942 INFO L226 Difference]: Without dead ends: 158 [2023-11-29 04:18:34,943 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=28, Invalid=62, Unknown=0, NotChecked=0, Total=90 [2023-11-29 04:18:34,945 INFO L413 NwaCegarLoop]: 71 mSDtfsCounter, 154 mSDsluCounter, 218 mSDsCounter, 0 mSdLazyCounter, 214 mSolverCounterSat, 53 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 161 SdHoareTripleChecker+Valid, 289 SdHoareTripleChecker+Invalid, 267 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 53 IncrementalHoareTripleChecker+Valid, 214 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:34,945 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [161 Valid, 289 Invalid, 267 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [53 Valid, 214 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-29 04:18:34,946 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 158 states. [2023-11-29 04:18:34,968 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 158 to 152. [2023-11-29 04:18:34,968 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 152 states, 105 states have (on average 1.3428571428571427) internal successors, (141), 114 states have internal predecessors, (141), 22 states have call successors, (22), 17 states have call predecessors, (22), 24 states have return successors, (35), 26 states have call predecessors, (35), 22 states have call successors, (35) [2023-11-29 04:18:34,970 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 152 states to 152 states and 198 transitions. [2023-11-29 04:18:34,970 INFO L78 Accepts]: Start accepts. Automaton has 152 states and 198 transitions. Word has length 34 [2023-11-29 04:18:34,971 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:34,971 INFO L495 AbstractCegarLoop]: Abstraction has 152 states and 198 transitions. [2023-11-29 04:18:34,971 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 5 states have internal predecessors, (27), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2023-11-29 04:18:34,971 INFO L276 IsEmpty]: Start isEmpty. Operand 152 states and 198 transitions. [2023-11-29 04:18:34,972 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2023-11-29 04:18:34,972 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:34,973 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:34,973 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-29 04:18:34,973 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:34,973 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:34,974 INFO L85 PathProgramCache]: Analyzing trace with hash -1638769303, now seen corresponding path program 1 times [2023-11-29 04:18:34,974 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:34,974 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [648359138] [2023-11-29 04:18:34,974 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:34,974 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:34,989 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,061 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 04:18:35,066 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,072 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 04:18:35,074 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,078 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:18:35,079 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,081 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 33 [2023-11-29 04:18:35,082 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,085 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 04:18:35,085 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:35,085 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [648359138] [2023-11-29 04:18:35,086 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [648359138] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:35,086 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:18:35,086 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-29 04:18:35,086 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2141142994] [2023-11-29 04:18:35,086 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:35,087 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-29 04:18:35,087 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:35,087 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-29 04:18:35,088 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-29 04:18:35,088 INFO L87 Difference]: Start difference. First operand 152 states and 198 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 2 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-29 04:18:35,354 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:35,354 INFO L93 Difference]: Finished difference Result 392 states and 526 transitions. [2023-11-29 04:18:35,357 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-29 04:18:35,357 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 2 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 41 [2023-11-29 04:18:35,358 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:35,360 INFO L225 Difference]: With dead ends: 392 [2023-11-29 04:18:35,360 INFO L226 Difference]: Without dead ends: 242 [2023-11-29 04:18:35,361 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2023-11-29 04:18:35,363 INFO L413 NwaCegarLoop]: 68 mSDtfsCounter, 135 mSDsluCounter, 153 mSDsCounter, 0 mSdLazyCounter, 167 mSolverCounterSat, 45 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 142 SdHoareTripleChecker+Valid, 221 SdHoareTripleChecker+Invalid, 212 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 45 IncrementalHoareTripleChecker+Valid, 167 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:35,363 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [142 Valid, 221 Invalid, 212 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [45 Valid, 167 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-29 04:18:35,364 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 242 states. [2023-11-29 04:18:35,393 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 242 to 238. [2023-11-29 04:18:35,394 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 238 states, 166 states have (on average 1.3132530120481927) internal successors, (218), 178 states have internal predecessors, (218), 35 states have call successors, (35), 29 states have call predecessors, (35), 36 states have return successors, (56), 39 states have call predecessors, (56), 35 states have call successors, (56) [2023-11-29 04:18:35,397 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 238 states to 238 states and 309 transitions. [2023-11-29 04:18:35,397 INFO L78 Accepts]: Start accepts. Automaton has 238 states and 309 transitions. Word has length 41 [2023-11-29 04:18:35,398 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:35,398 INFO L495 AbstractCegarLoop]: Abstraction has 238 states and 309 transitions. [2023-11-29 04:18:35,398 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 4 states have internal predecessors, (32), 2 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-29 04:18:35,398 INFO L276 IsEmpty]: Start isEmpty. Operand 238 states and 309 transitions. [2023-11-29 04:18:35,400 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2023-11-29 04:18:35,400 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:35,400 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:35,400 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-29 04:18:35,401 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:35,401 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:35,401 INFO L85 PathProgramCache]: Analyzing trace with hash -2134046461, now seen corresponding path program 1 times [2023-11-29 04:18:35,401 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:35,401 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1261144517] [2023-11-29 04:18:35,401 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:35,402 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:35,416 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,489 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 04:18:35,491 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,497 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2023-11-29 04:18:35,501 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,517 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 04:18:35,520 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,528 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:18:35,529 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,531 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2023-11-29 04:18:35,533 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:35,535 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 04:18:35,535 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:35,536 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1261144517] [2023-11-29 04:18:35,536 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1261144517] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:35,536 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:18:35,536 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-11-29 04:18:35,536 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [69276601] [2023-11-29 04:18:35,536 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:35,537 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-11-29 04:18:35,537 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:35,537 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-11-29 04:18:35,538 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=12, Invalid=30, Unknown=0, NotChecked=0, Total=42 [2023-11-29 04:18:35,538 INFO L87 Difference]: Start difference. First operand 238 states and 309 transitions. Second operand has 7 states, 7 states have (on average 4.857142857142857) internal successors, (34), 5 states have internal predecessors, (34), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) [2023-11-29 04:18:36,107 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:36,107 INFO L93 Difference]: Finished difference Result 614 states and 861 transitions. [2023-11-29 04:18:36,108 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2023-11-29 04:18:36,108 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 4.857142857142857) internal successors, (34), 5 states have internal predecessors, (34), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) Word has length 45 [2023-11-29 04:18:36,109 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:36,113 INFO L225 Difference]: With dead ends: 614 [2023-11-29 04:18:36,113 INFO L226 Difference]: Without dead ends: 464 [2023-11-29 04:18:36,114 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 31 GetRequests, 15 SyntacticMatches, 0 SemanticMatches, 16 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 53 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=91, Invalid=215, Unknown=0, NotChecked=0, Total=306 [2023-11-29 04:18:36,116 INFO L413 NwaCegarLoop]: 45 mSDtfsCounter, 309 mSDsluCounter, 162 mSDsCounter, 0 mSdLazyCounter, 381 mSolverCounterSat, 162 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 314 SdHoareTripleChecker+Valid, 207 SdHoareTripleChecker+Invalid, 543 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 162 IncrementalHoareTripleChecker+Valid, 381 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:36,116 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [314 Valid, 207 Invalid, 543 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [162 Valid, 381 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-11-29 04:18:36,118 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 464 states. [2023-11-29 04:18:36,165 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 464 to 416. [2023-11-29 04:18:36,166 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 416 states, 289 states have (on average 1.28719723183391) internal successors, (372), 313 states have internal predecessors, (372), 64 states have call successors, (64), 44 states have call predecessors, (64), 62 states have return successors, (129), 70 states have call predecessors, (129), 64 states have call successors, (129) [2023-11-29 04:18:36,170 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 416 states to 416 states and 565 transitions. [2023-11-29 04:18:36,170 INFO L78 Accepts]: Start accepts. Automaton has 416 states and 565 transitions. Word has length 45 [2023-11-29 04:18:36,170 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:36,170 INFO L495 AbstractCegarLoop]: Abstraction has 416 states and 565 transitions. [2023-11-29 04:18:36,171 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 4.857142857142857) internal successors, (34), 5 states have internal predecessors, (34), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 3 states have call successors, (5) [2023-11-29 04:18:36,171 INFO L276 IsEmpty]: Start isEmpty. Operand 416 states and 565 transitions. [2023-11-29 04:18:36,173 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2023-11-29 04:18:36,173 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:36,173 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:36,173 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-29 04:18:36,173 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:36,174 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:36,174 INFO L85 PathProgramCache]: Analyzing trace with hash -1915191743, now seen corresponding path program 1 times [2023-11-29 04:18:36,174 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:36,174 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2083209260] [2023-11-29 04:18:36,174 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:36,175 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:36,185 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,208 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 04:18:36,209 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,214 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2023-11-29 04:18:36,217 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,224 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 04:18:36,226 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,243 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:18:36,244 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,245 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2023-11-29 04:18:36,246 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,248 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 04:18:36,248 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:36,248 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2083209260] [2023-11-29 04:18:36,248 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2083209260] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:36,248 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:18:36,249 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-29 04:18:36,249 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1149544552] [2023-11-29 04:18:36,249 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:36,249 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-29 04:18:36,250 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:36,250 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-29 04:18:36,250 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-29 04:18:36,250 INFO L87 Difference]: Start difference. First operand 416 states and 565 transitions. Second operand has 6 states, 6 states have (on average 5.666666666666667) internal successors, (34), 4 states have internal predecessors, (34), 2 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2023-11-29 04:18:36,600 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:36,600 INFO L93 Difference]: Finished difference Result 778 states and 1076 transitions. [2023-11-29 04:18:36,601 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-11-29 04:18:36,601 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.666666666666667) internal successors, (34), 4 states have internal predecessors, (34), 2 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 45 [2023-11-29 04:18:36,601 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:36,604 INFO L225 Difference]: With dead ends: 778 [2023-11-29 04:18:36,604 INFO L226 Difference]: Without dead ends: 446 [2023-11-29 04:18:36,606 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=40, Invalid=70, Unknown=0, NotChecked=0, Total=110 [2023-11-29 04:18:36,607 INFO L413 NwaCegarLoop]: 45 mSDtfsCounter, 143 mSDsluCounter, 136 mSDsCounter, 0 mSdLazyCounter, 317 mSolverCounterSat, 66 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 146 SdHoareTripleChecker+Valid, 181 SdHoareTripleChecker+Invalid, 383 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 66 IncrementalHoareTripleChecker+Valid, 317 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:36,607 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [146 Valid, 181 Invalid, 383 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [66 Valid, 317 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-29 04:18:36,608 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 446 states. [2023-11-29 04:18:36,644 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 446 to 416. [2023-11-29 04:18:36,645 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 416 states, 289 states have (on average 1.2837370242214532) internal successors, (371), 313 states have internal predecessors, (371), 64 states have call successors, (64), 44 states have call predecessors, (64), 62 states have return successors, (129), 70 states have call predecessors, (129), 64 states have call successors, (129) [2023-11-29 04:18:36,649 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 416 states to 416 states and 564 transitions. [2023-11-29 04:18:36,649 INFO L78 Accepts]: Start accepts. Automaton has 416 states and 564 transitions. Word has length 45 [2023-11-29 04:18:36,649 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:36,649 INFO L495 AbstractCegarLoop]: Abstraction has 416 states and 564 transitions. [2023-11-29 04:18:36,650 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.666666666666667) internal successors, (34), 4 states have internal predecessors, (34), 2 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2023-11-29 04:18:36,650 INFO L276 IsEmpty]: Start isEmpty. Operand 416 states and 564 transitions. [2023-11-29 04:18:36,651 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2023-11-29 04:18:36,651 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:36,651 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:36,651 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-29 04:18:36,651 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:36,652 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:36,652 INFO L85 PathProgramCache]: Analyzing trace with hash 1562127103, now seen corresponding path program 1 times [2023-11-29 04:18:36,652 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:36,652 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [663538148] [2023-11-29 04:18:36,652 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:36,653 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:36,663 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,703 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 04:18:36,704 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,709 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2023-11-29 04:18:36,712 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,719 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 04:18:36,722 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,743 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:18:36,744 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,745 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2023-11-29 04:18:36,746 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:36,747 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 04:18:36,747 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:36,747 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [663538148] [2023-11-29 04:18:36,747 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [663538148] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:36,747 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:18:36,747 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-29 04:18:36,748 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [864093465] [2023-11-29 04:18:36,748 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:36,748 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-29 04:18:36,748 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:36,749 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-29 04:18:36,749 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-29 04:18:36,749 INFO L87 Difference]: Start difference. First operand 416 states and 564 transitions. Second operand has 6 states, 6 states have (on average 5.666666666666667) internal successors, (34), 4 states have internal predecessors, (34), 2 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2023-11-29 04:18:37,067 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:37,067 INFO L93 Difference]: Finished difference Result 877 states and 1224 transitions. [2023-11-29 04:18:37,068 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-11-29 04:18:37,068 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.666666666666667) internal successors, (34), 4 states have internal predecessors, (34), 2 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 45 [2023-11-29 04:18:37,068 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:37,071 INFO L225 Difference]: With dead ends: 877 [2023-11-29 04:18:37,071 INFO L226 Difference]: Without dead ends: 463 [2023-11-29 04:18:37,072 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 21 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=30, Invalid=60, Unknown=0, NotChecked=0, Total=90 [2023-11-29 04:18:37,073 INFO L413 NwaCegarLoop]: 50 mSDtfsCounter, 135 mSDsluCounter, 146 mSDsCounter, 0 mSdLazyCounter, 322 mSolverCounterSat, 58 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 138 SdHoareTripleChecker+Valid, 196 SdHoareTripleChecker+Invalid, 380 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 58 IncrementalHoareTripleChecker+Valid, 322 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:37,074 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [138 Valid, 196 Invalid, 380 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [58 Valid, 322 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-29 04:18:37,075 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 463 states. [2023-11-29 04:18:37,107 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 463 to 417. [2023-11-29 04:18:37,107 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 417 states, 292 states have (on average 1.2773972602739727) internal successors, (373), 315 states have internal predecessors, (373), 63 states have call successors, (63), 43 states have call predecessors, (63), 61 states have return successors, (128), 69 states have call predecessors, (128), 63 states have call successors, (128) [2023-11-29 04:18:37,110 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 417 states to 417 states and 564 transitions. [2023-11-29 04:18:37,110 INFO L78 Accepts]: Start accepts. Automaton has 417 states and 564 transitions. Word has length 45 [2023-11-29 04:18:37,111 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:37,111 INFO L495 AbstractCegarLoop]: Abstraction has 417 states and 564 transitions. [2023-11-29 04:18:37,111 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.666666666666667) internal successors, (34), 4 states have internal predecessors, (34), 2 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2023-11-29 04:18:37,111 INFO L276 IsEmpty]: Start isEmpty. Operand 417 states and 564 transitions. [2023-11-29 04:18:37,112 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2023-11-29 04:18:37,112 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:37,113 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:37,113 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-29 04:18:37,113 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:37,113 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:37,113 INFO L85 PathProgramCache]: Analyzing trace with hash 460109926, now seen corresponding path program 1 times [2023-11-29 04:18:37,113 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:37,113 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1414722633] [2023-11-29 04:18:37,114 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:37,114 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:37,123 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,174 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 04:18:37,175 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,181 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2023-11-29 04:18:37,184 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,202 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 04:18:37,206 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,216 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:18:37,218 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,220 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 04:18:37,221 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,222 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2023-11-29 04:18:37,224 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,226 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 04:18:37,226 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:37,226 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1414722633] [2023-11-29 04:18:37,226 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1414722633] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:37,227 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:18:37,227 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-29 04:18:37,227 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1564911741] [2023-11-29 04:18:37,227 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:37,227 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-29 04:18:37,227 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:37,228 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-29 04:18:37,228 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-29 04:18:37,228 INFO L87 Difference]: Start difference. First operand 417 states and 564 transitions. Second operand has 6 states, 6 states have (on average 6.333333333333333) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2023-11-29 04:18:37,579 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:37,580 INFO L93 Difference]: Finished difference Result 814 states and 1105 transitions. [2023-11-29 04:18:37,580 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2023-11-29 04:18:37,580 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.333333333333333) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 52 [2023-11-29 04:18:37,581 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:37,583 INFO L225 Difference]: With dead ends: 814 [2023-11-29 04:18:37,583 INFO L226 Difference]: Without dead ends: 399 [2023-11-29 04:18:37,585 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 27 GetRequests, 17 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 11 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=41, Invalid=91, Unknown=0, NotChecked=0, Total=132 [2023-11-29 04:18:37,586 INFO L413 NwaCegarLoop]: 72 mSDtfsCounter, 206 mSDsluCounter, 161 mSDsCounter, 0 mSdLazyCounter, 344 mSolverCounterSat, 88 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 209 SdHoareTripleChecker+Valid, 233 SdHoareTripleChecker+Invalid, 432 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 88 IncrementalHoareTripleChecker+Valid, 344 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:37,586 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [209 Valid, 233 Invalid, 432 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [88 Valid, 344 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-29 04:18:37,587 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 399 states. [2023-11-29 04:18:37,611 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 399 to 395. [2023-11-29 04:18:37,612 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 395 states, 278 states have (on average 1.2410071942446044) internal successors, (345), 299 states have internal predecessors, (345), 59 states have call successors, (59), 43 states have call predecessors, (59), 57 states have return successors, (86), 63 states have call predecessors, (86), 59 states have call successors, (86) [2023-11-29 04:18:37,614 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 395 states to 395 states and 490 transitions. [2023-11-29 04:18:37,614 INFO L78 Accepts]: Start accepts. Automaton has 395 states and 490 transitions. Word has length 52 [2023-11-29 04:18:37,614 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:37,615 INFO L495 AbstractCegarLoop]: Abstraction has 395 states and 490 transitions. [2023-11-29 04:18:37,615 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.333333333333333) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2023-11-29 04:18:37,615 INFO L276 IsEmpty]: Start isEmpty. Operand 395 states and 490 transitions. [2023-11-29 04:18:37,616 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2023-11-29 04:18:37,616 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:37,616 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:37,617 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-11-29 04:18:37,617 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:37,617 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:37,617 INFO L85 PathProgramCache]: Analyzing trace with hash -115226343, now seen corresponding path program 1 times [2023-11-29 04:18:37,617 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:37,617 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [828481772] [2023-11-29 04:18:37,617 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:37,617 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:37,631 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,702 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 04:18:37,704 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,709 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2023-11-29 04:18:37,713 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,738 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 04:18:37,742 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,792 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:18:37,794 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,846 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 04:18:37,847 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,860 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2023-11-29 04:18:37,861 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,862 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-29 04:18:37,862 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:37,862 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [828481772] [2023-11-29 04:18:37,863 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [828481772] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-29 04:18:37,863 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1151685663] [2023-11-29 04:18:37,863 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:37,863 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 04:18:37,863 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 04:18:37,867 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-29 04:18:37,873 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-29 04:18:37,956 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:37,960 INFO L262 TraceCheckSpWp]: Trace formula consists of 229 conjuncts, 17 conjunts are in the unsatisfiable core [2023-11-29 04:18:37,967 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-29 04:18:38,155 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 04:18:38,155 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-29 04:18:38,155 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1151685663] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:38,155 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-29 04:18:38,156 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [11] total 16 [2023-11-29 04:18:38,156 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1453654229] [2023-11-29 04:18:38,156 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:38,156 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-29 04:18:38,157 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:38,157 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-29 04:18:38,158 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=41, Invalid=199, Unknown=0, NotChecked=0, Total=240 [2023-11-29 04:18:38,158 INFO L87 Difference]: Start difference. First operand 395 states and 490 transitions. Second operand has 8 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (7), 2 states have call predecessors, (7), 4 states have return successors, (6), 4 states have call predecessors, (6), 2 states have call successors, (6) [2023-11-29 04:18:38,410 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:38,410 INFO L93 Difference]: Finished difference Result 1165 states and 1470 transitions. [2023-11-29 04:18:38,411 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-11-29 04:18:38,411 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (7), 2 states have call predecessors, (7), 4 states have return successors, (6), 4 states have call predecessors, (6), 2 states have call successors, (6) Word has length 52 [2023-11-29 04:18:38,411 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:38,416 INFO L225 Difference]: With dead ends: 1165 [2023-11-29 04:18:38,416 INFO L226 Difference]: Without dead ends: 772 [2023-11-29 04:18:38,418 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 71 GetRequests, 57 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 26 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=41, Invalid=199, Unknown=0, NotChecked=0, Total=240 [2023-11-29 04:18:38,419 INFO L413 NwaCegarLoop]: 91 mSDtfsCounter, 62 mSDsluCounter, 358 mSDsCounter, 0 mSdLazyCounter, 250 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 449 SdHoareTripleChecker+Invalid, 252 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 250 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:38,419 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [64 Valid, 449 Invalid, 252 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 250 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-29 04:18:38,421 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 772 states. [2023-11-29 04:18:38,480 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 772 to 770. [2023-11-29 04:18:38,482 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 770 states, 541 states have (on average 1.2255083179297597) internal successors, (663), 579 states have internal predecessors, (663), 117 states have call successors, (117), 86 states have call predecessors, (117), 111 states have return successors, (174), 123 states have call predecessors, (174), 117 states have call successors, (174) [2023-11-29 04:18:38,487 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 770 states to 770 states and 954 transitions. [2023-11-29 04:18:38,488 INFO L78 Accepts]: Start accepts. Automaton has 770 states and 954 transitions. Word has length 52 [2023-11-29 04:18:38,488 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:38,488 INFO L495 AbstractCegarLoop]: Abstraction has 770 states and 954 transitions. [2023-11-29 04:18:38,488 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (7), 2 states have call predecessors, (7), 4 states have return successors, (6), 4 states have call predecessors, (6), 2 states have call successors, (6) [2023-11-29 04:18:38,488 INFO L276 IsEmpty]: Start isEmpty. Operand 770 states and 954 transitions. [2023-11-29 04:18:38,490 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2023-11-29 04:18:38,490 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:38,491 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:38,498 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-29 04:18:38,691 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-29 04:18:38,692 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:38,692 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:38,692 INFO L85 PathProgramCache]: Analyzing trace with hash 1776931773, now seen corresponding path program 1 times [2023-11-29 04:18:38,692 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:38,692 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [253012880] [2023-11-29 04:18:38,692 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:38,692 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:38,702 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:38,762 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 04:18:38,764 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:38,771 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-29 04:18:38,773 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:38,792 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-29 04:18:38,795 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:38,799 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 04:18:38,801 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:38,805 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:18:38,806 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:38,807 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 04:18:38,807 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:38,808 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2023-11-29 04:18:38,809 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:38,823 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-29 04:18:38,823 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:38,824 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [253012880] [2023-11-29 04:18:38,824 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [253012880] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:18:38,824 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:18:38,824 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [11] imperfect sequences [] total 11 [2023-11-29 04:18:38,824 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1170392431] [2023-11-29 04:18:38,824 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:18:38,825 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2023-11-29 04:18:38,825 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:38,825 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2023-11-29 04:18:38,825 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=20, Invalid=90, Unknown=0, NotChecked=0, Total=110 [2023-11-29 04:18:38,826 INFO L87 Difference]: Start difference. First operand 770 states and 954 transitions. Second operand has 11 states, 10 states have (on average 4.1) internal successors, (41), 7 states have internal predecessors, (41), 2 states have call successors, (8), 5 states have call predecessors, (8), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-29 04:18:39,933 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:39,933 INFO L93 Difference]: Finished difference Result 1533 states and 1913 transitions. [2023-11-29 04:18:39,933 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 28 states. [2023-11-29 04:18:39,933 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 10 states have (on average 4.1) internal successors, (41), 7 states have internal predecessors, (41), 2 states have call successors, (8), 5 states have call predecessors, (8), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) Word has length 56 [2023-11-29 04:18:39,934 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:39,938 INFO L225 Difference]: With dead ends: 1533 [2023-11-29 04:18:39,938 INFO L226 Difference]: Without dead ends: 765 [2023-11-29 04:18:39,940 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 51 GetRequests, 18 SyntacticMatches, 0 SemanticMatches, 33 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 266 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=254, Invalid=936, Unknown=0, NotChecked=0, Total=1190 [2023-11-29 04:18:39,941 INFO L413 NwaCegarLoop]: 34 mSDtfsCounter, 340 mSDsluCounter, 167 mSDsCounter, 0 mSdLazyCounter, 1225 mSolverCounterSat, 172 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 345 SdHoareTripleChecker+Valid, 201 SdHoareTripleChecker+Invalid, 1397 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 172 IncrementalHoareTripleChecker+Valid, 1225 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:39,941 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [345 Valid, 201 Invalid, 1397 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [172 Valid, 1225 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2023-11-29 04:18:39,943 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 765 states. [2023-11-29 04:18:40,011 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 765 to 754. [2023-11-29 04:18:40,013 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 754 states, 525 states have (on average 1.1866666666666668) internal successors, (623), 563 states have internal predecessors, (623), 117 states have call successors, (117), 86 states have call predecessors, (117), 111 states have return successors, (168), 123 states have call predecessors, (168), 117 states have call successors, (168) [2023-11-29 04:18:40,016 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 754 states to 754 states and 908 transitions. [2023-11-29 04:18:40,016 INFO L78 Accepts]: Start accepts. Automaton has 754 states and 908 transitions. Word has length 56 [2023-11-29 04:18:40,017 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:40,017 INFO L495 AbstractCegarLoop]: Abstraction has 754 states and 908 transitions. [2023-11-29 04:18:40,017 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 10 states have (on average 4.1) internal successors, (41), 7 states have internal predecessors, (41), 2 states have call successors, (8), 5 states have call predecessors, (8), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2023-11-29 04:18:40,017 INFO L276 IsEmpty]: Start isEmpty. Operand 754 states and 908 transitions. [2023-11-29 04:18:40,020 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 87 [2023-11-29 04:18:40,020 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:18:40,020 INFO L195 NwaCegarLoop]: trace histogram [4, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:40,020 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2023-11-29 04:18:40,020 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:18:40,021 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:18:40,021 INFO L85 PathProgramCache]: Analyzing trace with hash -1762287868, now seen corresponding path program 1 times [2023-11-29 04:18:40,021 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:18:40,021 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [560325980] [2023-11-29 04:18:40,021 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:40,021 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:18:40,032 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,144 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 04:18:40,145 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,156 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 04:18:40,160 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,220 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2023-11-29 04:18:40,224 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,249 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 04:18:40,255 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,318 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:18:40,320 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,401 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 04:18:40,403 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,424 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2023-11-29 04:18:40,425 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,430 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 64 [2023-11-29 04:18:40,431 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,434 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 04:18:40,435 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,436 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 73 [2023-11-29 04:18:40,437 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,438 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 78 [2023-11-29 04:18:40,439 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,441 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 2 proven. 15 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2023-11-29 04:18:40,441 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:18:40,441 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [560325980] [2023-11-29 04:18:40,441 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [560325980] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-29 04:18:40,441 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [148139162] [2023-11-29 04:18:40,441 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:18:40,457 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 04:18:40,457 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 04:18:40,458 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-29 04:18:40,473 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-29 04:18:40,558 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:18:40,560 INFO L262 TraceCheckSpWp]: Trace formula consists of 313 conjuncts, 12 conjunts are in the unsatisfiable core [2023-11-29 04:18:40,564 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-29 04:18:40,706 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 12 proven. 11 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2023-11-29 04:18:40,706 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-29 04:18:40,983 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 8 proven. 3 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2023-11-29 04:18:40,983 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [148139162] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-29 04:18:40,983 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-29 04:18:40,983 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 7, 8] total 22 [2023-11-29 04:18:40,983 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1499356677] [2023-11-29 04:18:40,983 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-29 04:18:40,984 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2023-11-29 04:18:40,984 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:18:40,985 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2023-11-29 04:18:40,985 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=75, Invalid=387, Unknown=0, NotChecked=0, Total=462 [2023-11-29 04:18:40,985 INFO L87 Difference]: Start difference. First operand 754 states and 908 transitions. Second operand has 22 states, 20 states have (on average 4.65) internal successors, (93), 15 states have internal predecessors, (93), 7 states have call successors, (25), 9 states have call predecessors, (25), 11 states have return successors, (25), 9 states have call predecessors, (25), 7 states have call successors, (25) [2023-11-29 04:18:43,031 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:18:43,031 INFO L93 Difference]: Finished difference Result 1573 states and 1958 transitions. [2023-11-29 04:18:43,032 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 62 states. [2023-11-29 04:18:43,032 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 20 states have (on average 4.65) internal successors, (93), 15 states have internal predecessors, (93), 7 states have call successors, (25), 9 states have call predecessors, (25), 11 states have return successors, (25), 9 states have call predecessors, (25), 7 states have call successors, (25) Word has length 86 [2023-11-29 04:18:43,032 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:18:43,033 INFO L225 Difference]: With dead ends: 1573 [2023-11-29 04:18:43,033 INFO L226 Difference]: Without dead ends: 0 [2023-11-29 04:18:43,039 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 281 GetRequests, 198 SyntacticMatches, 6 SemanticMatches, 77 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1742 ImplicationChecksByTransitivity, 1.1s TimeCoverageRelationStatistics Valid=1492, Invalid=4670, Unknown=0, NotChecked=0, Total=6162 [2023-11-29 04:18:43,040 INFO L413 NwaCegarLoop]: 36 mSDtfsCounter, 1552 mSDsluCounter, 423 mSDsCounter, 0 mSdLazyCounter, 1001 mSolverCounterSat, 759 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1555 SdHoareTripleChecker+Valid, 459 SdHoareTripleChecker+Invalid, 1760 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 759 IncrementalHoareTripleChecker+Valid, 1001 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2023-11-29 04:18:43,040 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1555 Valid, 459 Invalid, 1760 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [759 Valid, 1001 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2023-11-29 04:18:43,041 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-29 04:18:43,041 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-29 04:18:43,041 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-29 04:18:43,041 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-29 04:18:43,041 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 86 [2023-11-29 04:18:43,042 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:18:43,042 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-29 04:18:43,042 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 20 states have (on average 4.65) internal successors, (93), 15 states have internal predecessors, (93), 7 states have call successors, (25), 9 states have call predecessors, (25), 11 states have return successors, (25), 9 states have call predecessors, (25), 7 states have call successors, (25) [2023-11-29 04:18:43,042 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-29 04:18:43,042 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-29 04:18:43,044 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-29 04:18:43,050 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2023-11-29 04:18:43,245 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2023-11-29 04:18:43,247 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-29 04:18:45,807 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 266 273) no Hoare annotation was computed. [2023-11-29 04:18:45,807 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 266 273) the Hoare annotation is: (let ((.cse0 (< 1 ~waterLevel~0)) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0)) (.cse3 (= ~pumpRunning~0 1))) (and (or .cse0 .cse1 .cse2 (< ~methaneLevelCritical~0 1) .cse3) (or .cse0 (not (= ~methaneLevelCritical~0 0)) .cse1 .cse2 .cse3))) [2023-11-29 04:18:45,808 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 156 162) no Hoare annotation was computed. [2023-11-29 04:18:45,808 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 156 162) the Hoare annotation is: true [2023-11-29 04:18:45,808 INFO L895 garLoopResultBuilder]: At program point L209(line 209) the Hoare annotation is: (let ((.cse4 (< 2 ~waterLevel~0)) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (= ~pumpRunning~0 0)) (.cse3 (< ~methaneLevelCritical~0 1)) (.cse0 (< 1 ~waterLevel~0)) (.cse7 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse6 .cse7 .cse2) (or .cse4 .cse5 .cse6 .cse2 .cse3) (or .cse0 .cse7 .cse1 .cse2))) [2023-11-29 04:18:45,808 INFO L899 garLoopResultBuilder]: For program point L209-1(lines 190 214) no Hoare annotation was computed. [2023-11-29 04:18:45,808 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 190 214) the Hoare annotation is: (let ((.cse5 (< 2 ~waterLevel~0)) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (= ~pumpRunning~0 0)) (.cse3 (< ~methaneLevelCritical~0 1)) (.cse0 (< 1 ~waterLevel~0)) (.cse8 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0)) (.cse4 (= ~pumpRunning~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 .cse7 .cse8 .cse2) (or .cse5 .cse6 .cse7 .cse2 .cse3) (or .cse0 .cse8 .cse1 .cse2 .cse4))) [2023-11-29 04:18:45,808 INFO L899 garLoopResultBuilder]: For program point L358(lines 358 362) no Hoare annotation was computed. [2023-11-29 04:18:45,808 INFO L899 garLoopResultBuilder]: For program point L358-2(lines 358 362) no Hoare annotation was computed. [2023-11-29 04:18:45,809 INFO L895 garLoopResultBuilder]: At program point L204(line 204) the Hoare annotation is: (let ((.cse0 (< 1 ~waterLevel~0)) (.cse2 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (and (= |processEnvironment__wrappee__methaneQuery_~tmp~2#1| 0) (= ~pumpRunning~0 1))) (.cse7 (< ~methaneLevelCritical~0 1)) (.cse5 (< 2 ~waterLevel~0)) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~methaneLevelCritical~0 0))) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 .cse3 .cse7) (or .cse0 .cse2 .cse3 .cse4 .cse7) (or .cse5 .cse6 .cse1 .cse3))) [2023-11-29 04:18:45,809 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 190 214) no Hoare annotation was computed. [2023-11-29 04:18:45,809 INFO L895 garLoopResultBuilder]: At program point L200(line 200) the Hoare annotation is: (let ((.cse3 (< ~methaneLevelCritical~0 1)) (.cse5 (< 2 ~waterLevel~0)) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (< 1 ~waterLevel~0)) (.cse7 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0)) (.cse4 (= ~pumpRunning~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 .cse2 .cse3) (or .cse5 .cse6 .cse7 .cse2) (or .cse0 .cse7 .cse1 .cse2 .cse4))) [2023-11-29 04:18:45,809 INFO L899 garLoopResultBuilder]: For program point L198(lines 198 206) no Hoare annotation was computed. [2023-11-29 04:18:45,810 INFO L899 garLoopResultBuilder]: For program point L194(lines 194 211) no Hoare annotation was computed. [2023-11-29 04:18:45,810 INFO L899 garLoopResultBuilder]: For program point L400-1(lines 396 407) no Hoare annotation was computed. [2023-11-29 04:18:45,810 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 396 407) the Hoare annotation is: (let ((.cse3 (not (= ~pumpRunning~0 1))) (.cse1 (not (= |old(~methaneLevelCritical~0)| 0))) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse0 (< 2 ~waterLevel~0)) (.cse7 (not (= ~pumpRunning~0 0))) (.cse5 (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0)) (.cse6 (< |old(~methaneLevelCritical~0)| 1)) (.cse4 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse5 .cse6 .cse3 .cse4) (or .cse0 .cse1 .cse7 .cse2 .cse4) (or .cse0 .cse7 .cse5 .cse6 .cse4))) [2023-11-29 04:18:45,810 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 396 407) no Hoare annotation was computed. [2023-11-29 04:18:45,810 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 408 416) the Hoare annotation is: true [2023-11-29 04:18:45,810 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 408 416) no Hoare annotation was computed. [2023-11-29 04:18:45,811 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 483 512) no Hoare annotation was computed. [2023-11-29 04:18:45,811 INFO L899 garLoopResultBuilder]: For program point L508(lines 483 512) no Hoare annotation was computed. [2023-11-29 04:18:45,811 INFO L899 garLoopResultBuilder]: For program point L504(line 504) no Hoare annotation was computed. [2023-11-29 04:18:45,811 INFO L899 garLoopResultBuilder]: For program point L497(lines 497 501) no Hoare annotation was computed. [2023-11-29 04:18:45,811 INFO L902 garLoopResultBuilder]: At program point L497-1(lines 497 501) the Hoare annotation is: true [2023-11-29 04:18:45,811 INFO L902 garLoopResultBuilder]: At program point L493-2(lines 493 507) the Hoare annotation is: true [2023-11-29 04:18:45,811 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 483 512) the Hoare annotation is: true [2023-11-29 04:18:45,811 INFO L902 garLoopResultBuilder]: At program point L489(line 489) the Hoare annotation is: true [2023-11-29 04:18:45,811 INFO L899 garLoopResultBuilder]: For program point L489-1(line 489) no Hoare annotation was computed. [2023-11-29 04:18:45,812 INFO L899 garLoopResultBuilder]: For program point L477(line 477) no Hoare annotation was computed. [2023-11-29 04:18:45,812 INFO L899 garLoopResultBuilder]: For program point L143-1(lines 143 149) no Hoare annotation was computed. [2023-11-29 04:18:45,812 INFO L895 garLoopResultBuilder]: At program point L230(line 230) the Hoare annotation is: (let ((.cse4 (and (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1))) (.cse6 (not (= |old(~pumpRunning~0)| 1))) (.cse3 (< ~methaneLevelCritical~0 1)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (not (= ~methaneLevelCritical~0 0))) (.cse1 (= 0 ~systemActive~0)) (.cse2 (< 2 |old(~waterLevel~0)|))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse6 .cse1 .cse2) (or .cse4 .cse6 .cse1 .cse2 .cse3) (or .cse0 .cse5 .cse1 .cse2))) [2023-11-29 04:18:45,812 INFO L895 garLoopResultBuilder]: At program point L226(line 226) the Hoare annotation is: (let ((.cse4 (and (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1))) (.cse6 (not (= |old(~pumpRunning~0)| 1))) (.cse3 (< ~methaneLevelCritical~0 1)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (not (= ~methaneLevelCritical~0 0))) (.cse1 (= 0 ~systemActive~0)) (.cse2 (< 2 |old(~waterLevel~0)|))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse6 .cse1 .cse2) (or .cse4 .cse6 .cse1 .cse2 .cse3) (or .cse0 .cse5 .cse1 .cse2))) [2023-11-29 04:18:45,812 INFO L895 garLoopResultBuilder]: At program point L222(line 222) the Hoare annotation is: (let ((.cse4 (and (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1))) (.cse6 (not (= |old(~pumpRunning~0)| 1))) (.cse3 (< ~methaneLevelCritical~0 1)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (not (= ~methaneLevelCritical~0 0))) (.cse1 (= 0 ~systemActive~0)) (.cse2 (< 2 |old(~waterLevel~0)|))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse6 .cse1 .cse2) (or .cse4 .cse6 .cse1 .cse2 .cse3) (or .cse0 .cse5 .cse1 .cse2))) [2023-11-29 04:18:45,812 INFO L899 garLoopResultBuilder]: For program point L222-1(line 222) no Hoare annotation was computed. [2023-11-29 04:18:45,812 INFO L899 garLoopResultBuilder]: For program point L590(lines 590 610) no Hoare annotation was computed. [2023-11-29 04:18:45,813 INFO L895 garLoopResultBuilder]: At program point L235(line 235) the Hoare annotation is: (let ((.cse0 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0))) (.cse2 (= 0 ~systemActive~0)) (.cse3 (< 2 |old(~waterLevel~0)|)) (.cse6 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse0 .cse2 .cse3) (or .cse1 .cse2 .cse3 .cse6) (or .cse4 .cse5 .cse2 .cse3 .cse6))) [2023-11-29 04:18:45,813 INFO L899 garLoopResultBuilder]: For program point L235-1(lines 216 240) no Hoare annotation was computed. [2023-11-29 04:18:45,813 INFO L899 garLoopResultBuilder]: For program point L136-1(lines 135 154) no Hoare annotation was computed. [2023-11-29 04:18:45,813 INFO L899 garLoopResultBuilder]: For program point L376(lines 376 380) no Hoare annotation was computed. [2023-11-29 04:18:45,813 INFO L899 garLoopResultBuilder]: For program point L376-2(lines 372 383) no Hoare annotation was computed. [2023-11-29 04:18:45,813 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 132 155) the Hoare annotation is: (let ((.cse8 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse0 (not (= ~methaneLevelCritical~0 0))) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (and (= ~pumpRunning~0 0) .cse8)) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0)) (.cse3 (< 2 |old(~waterLevel~0)|)) (.cse7 (< ~methaneLevelCritical~0 1)) (.cse4 (and .cse8 (= ~pumpRunning~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 .cse0 .cse2 .cse3) (or .cse5 .cse6 .cse2 .cse3 .cse7) (or .cse1 .cse2 .cse3 .cse7 .cse4)))) [2023-11-29 04:18:45,813 INFO L899 garLoopResultBuilder]: For program point L224(lines 224 232) no Hoare annotation was computed. [2023-11-29 04:18:45,813 INFO L899 garLoopResultBuilder]: For program point L220(lines 220 237) no Hoare annotation was computed. [2023-11-29 04:18:45,813 INFO L899 garLoopResultBuilder]: For program point L600(lines 600 606) no Hoare annotation was computed. [2023-11-29 04:18:45,814 INFO L899 garLoopResultBuilder]: For program point L596(lines 596 609) no Hoare annotation was computed. [2023-11-29 04:18:45,814 INFO L899 garLoopResultBuilder]: For program point L596-1(lines 581 613) no Hoare annotation was computed. [2023-11-29 04:18:45,814 INFO L895 garLoopResultBuilder]: At program point L588(line 588) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (<= ~waterLevel~0 1)) (.cse12 (<= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse7 (= ~pumpRunning~0 1))) (let ((.cse8 (and .cse1 .cse12 .cse7)) (.cse4 (not (= ~methaneLevelCritical~0 0))) (.cse9 (not (= |old(~pumpRunning~0)| 1))) (.cse10 (and .cse0 .cse1 .cse12)) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse5 (= 0 ~systemActive~0)) (.cse6 (< 2 |old(~waterLevel~0)|)) (.cse11 (< ~methaneLevelCritical~0 1))) (and (or (and .cse0 .cse1 .cse2) .cse3 .cse4 .cse5 .cse6 (and .cse2 .cse7)) (or .cse8 .cse9 .cse10 .cse5 .cse6 .cse11) (or .cse8 .cse4 .cse9 .cse10 .cse5 .cse6) (or .cse3 (and .cse0 .cse2) .cse5 .cse6 .cse11)))) [2023-11-29 04:18:45,814 INFO L899 garLoopResultBuilder]: For program point L588-1(line 588) no Hoare annotation was computed. [2023-11-29 04:18:45,814 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 132 155) no Hoare annotation was computed. [2023-11-29 04:18:45,814 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 477) no Hoare annotation was computed. [2023-11-29 04:18:45,814 INFO L895 garLoopResultBuilder]: At program point L110(lines 63 111) the Hoare annotation is: false [2023-11-29 04:18:45,814 INFO L899 garLoopResultBuilder]: For program point L65(lines 64 109) no Hoare annotation was computed. [2023-11-29 04:18:45,815 INFO L899 garLoopResultBuilder]: For program point L94(lines 94 105) no Hoare annotation was computed. [2023-11-29 04:18:45,815 INFO L895 garLoopResultBuilder]: At program point L86(line 86) the Hoare annotation is: (let ((.cse2 (= ~methaneLevelCritical~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse7 (<= 1 ~methaneLevelCritical~0)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (<= ~waterLevel~0 2)) (.cse6 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse7 .cse3 .cse4 .cse5) (and .cse0 .cse7 .cse3 .cse4 .cse5 .cse6))) [2023-11-29 04:18:45,815 INFO L895 garLoopResultBuilder]: At program point L107(lines 64 109) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 1)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse2 (<= ~waterLevel~0 1)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse8 (= ~pumpRunning~0 0)) (.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse7 (<= ~waterLevel~0 2))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse6 .cse3 .cse4 .cse7 .cse5) (and .cse0 .cse8 .cse6 .cse2 .cse3 .cse4) (and .cse0 .cse8 .cse1 .cse3 .cse4 .cse7))) [2023-11-29 04:18:45,815 INFO L899 garLoopResultBuilder]: For program point L74(lines 74 80) no Hoare annotation was computed. [2023-11-29 04:18:45,815 INFO L899 garLoopResultBuilder]: For program point L74-1(lines 74 80) no Hoare annotation was computed. [2023-11-29 04:18:45,815 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-29 04:18:45,815 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-29 04:18:45,815 INFO L899 garLoopResultBuilder]: For program point L100(lines 100 104) no Hoare annotation was computed. [2023-11-29 04:18:45,815 INFO L895 garLoopResultBuilder]: At program point L100-2(lines 94 105) the Hoare annotation is: (let ((.cse2 (= ~methaneLevelCritical~0 0)) (.cse1 (= ~pumpRunning~0 0)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse7 (<= 1 ~methaneLevelCritical~0)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (<= ~waterLevel~0 2)) (.cse6 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse2 .cse3 .cse4 .cse5 .cse6) (and .cse0 .cse1 .cse7 .cse3 .cse4 .cse5) (and .cse0 .cse7 .cse3 .cse4 .cse5 .cse6))) [2023-11-29 04:18:45,816 INFO L899 garLoopResultBuilder]: For program point L567(lines 567 574) no Hoare annotation was computed. [2023-11-29 04:18:45,816 INFO L899 garLoopResultBuilder]: For program point L567-2(lines 567 574) no Hoare annotation was computed. [2023-11-29 04:18:45,816 INFO L899 garLoopResultBuilder]: For program point L84(lines 84 90) no Hoare annotation was computed. [2023-11-29 04:18:45,816 INFO L899 garLoopResultBuilder]: For program point L84-1(lines 84 90) no Hoare annotation was computed. [2023-11-29 04:18:45,816 INFO L899 garLoopResultBuilder]: For program point L113(lines 54 117) no Hoare annotation was computed. [2023-11-29 04:18:45,816 INFO L895 garLoopResultBuilder]: At program point L76(line 76) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 1)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse2 (<= ~waterLevel~0 1)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse8 (= ~pumpRunning~0 0)) (.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse7 (<= ~waterLevel~0 2))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse6 .cse3 .cse4 .cse7 .cse5) (and .cse0 .cse8 .cse6 .cse2 .cse3 .cse4) (and .cse0 .cse8 .cse1 .cse3 .cse4 .cse7))) [2023-11-29 04:18:45,816 INFO L899 garLoopResultBuilder]: For program point L256(lines 256 262) no Hoare annotation was computed. [2023-11-29 04:18:45,816 INFO L895 garLoopResultBuilder]: At program point L254(line 254) the Hoare annotation is: (let ((.cse9 (= ~pumpRunning~0 0)) (.cse10 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (< 1 ~waterLevel~0)) (.cse6 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (< 2 ~waterLevel~0)) (.cse5 (not .cse10)) (.cse2 (= 0 ~systemActive~0)) (.cse7 (and .cse9 (<= 1 |processEnvironment__wrappee__highWaterSensor_~tmp~1#1|) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0))) (.cse3 (< ~methaneLevelCritical~0 1)) (.cse8 (and .cse9 (<= ~waterLevel~0 1) .cse10))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse6 .cse2 .cse7 .cse8) (or .cse0 .cse6 .cse1 .cse2) (or .cse4 .cse5 .cse2 .cse7 .cse3 .cse8)))) [2023-11-29 04:18:45,817 INFO L899 garLoopResultBuilder]: For program point L256-2(lines 249 265) no Hoare annotation was computed. [2023-11-29 04:18:45,817 INFO L899 garLoopResultBuilder]: For program point L254-1(line 254) no Hoare annotation was computed. [2023-11-29 04:18:45,817 INFO L899 garLoopResultBuilder]: For program point L339(lines 339 343) no Hoare annotation was computed. [2023-11-29 04:18:45,817 INFO L895 garLoopResultBuilder]: At program point L178(line 178) the Hoare annotation is: (let ((.cse3 (< ~methaneLevelCritical~0 1)) (.cse0 (< 1 ~waterLevel~0)) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (< 2 ~waterLevel~0)) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (not (= ~methaneLevelCritical~0 0))) (.cse2 (= 0 ~systemActive~0)) (.cse6 (and (= ~pumpRunning~0 0) (<= ~waterLevel~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse2 .cse6 .cse3) (or .cse0 .cse7 .cse1 .cse2) (or .cse4 .cse5 .cse7 .cse2 .cse6))) [2023-11-29 04:18:45,817 INFO L899 garLoopResultBuilder]: For program point L339-2(lines 339 343) no Hoare annotation was computed. [2023-11-29 04:18:45,817 INFO L899 garLoopResultBuilder]: For program point L172(lines 172 180) no Hoare annotation was computed. [2023-11-29 04:18:45,817 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 164 188) the Hoare annotation is: (let ((.cse5 (< 2 ~waterLevel~0)) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (= ~pumpRunning~0 0)) (.cse3 (< ~methaneLevelCritical~0 1)) (.cse0 (< 1 ~waterLevel~0)) (.cse8 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0)) (.cse4 (= ~pumpRunning~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 .cse7 .cse8 .cse2) (or .cse5 .cse6 .cse7 .cse2 .cse3) (or .cse0 .cse8 .cse1 .cse2 .cse4))) [2023-11-29 04:18:45,817 INFO L899 garLoopResultBuilder]: For program point L168(lines 168 185) no Hoare annotation was computed. [2023-11-29 04:18:45,817 INFO L899 garLoopResultBuilder]: For program point L453(lines 453 459) no Hoare annotation was computed. [2023-11-29 04:18:45,818 INFO L899 garLoopResultBuilder]: For program point isHighWaterSensorDry_returnLabel#1(lines 449 462) no Hoare annotation was computed. [2023-11-29 04:18:45,818 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 164 188) no Hoare annotation was computed. [2023-11-29 04:18:45,818 INFO L895 garLoopResultBuilder]: At program point L183(line 183) the Hoare annotation is: (let ((.cse3 (< ~methaneLevelCritical~0 1)) (.cse5 (< 2 ~waterLevel~0)) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (< 1 ~waterLevel~0)) (.cse7 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 1))) (.cse2 (= 0 ~systemActive~0)) (.cse4 (= ~pumpRunning~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 .cse2 .cse3) (or .cse5 .cse6 .cse7 .cse2) (or .cse0 .cse7 .cse1 .cse2 .cse4))) [2023-11-29 04:18:45,818 INFO L899 garLoopResultBuilder]: For program point L183-1(lines 164 188) no Hoare annotation was computed. [2023-11-29 04:18:45,818 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 384 395) no Hoare annotation was computed. [2023-11-29 04:18:45,818 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 384 395) the Hoare annotation is: (let ((.cse1 (not (= ~pumpRunning~0 0))) (.cse0 (< 1 |old(~waterLevel~0)|)) (.cse6 (< ~methaneLevelCritical~0 1)) (.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse7 (not (= ~pumpRunning~0 1))) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse4 (= 0 ~systemActive~0)) (.cse5 (< 2 |old(~waterLevel~0)|))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse1 .cse3 .cse4 .cse5 .cse6) (or .cse0 .cse7 .cse3 .cse4 .cse6) (or .cse2 .cse7 .cse3 .cse4 .cse5))) [2023-11-29 04:18:45,818 INFO L899 garLoopResultBuilder]: For program point L388-1(lines 384 395) no Hoare annotation was computed. [2023-11-29 04:18:45,818 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 274 284) no Hoare annotation was computed. [2023-11-29 04:18:45,818 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 274 284) the Hoare annotation is: true [2023-11-29 04:18:45,818 INFO L902 garLoopResultBuilder]: At program point L279(line 279) the Hoare annotation is: true [2023-11-29 04:18:45,819 INFO L899 garLoopResultBuilder]: For program point L279-1(line 279) no Hoare annotation was computed. [2023-11-29 04:18:45,821 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:18:45,822 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-29 04:18:45,832 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 29.11 04:18:45 BoogieIcfgContainer [2023-11-29 04:18:45,832 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-29 04:18:45,833 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-29 04:18:45,833 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-29 04:18:45,833 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-29 04:18:45,833 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.11 04:18:33" (3/4) ... [2023-11-29 04:18:45,835 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-29 04:18:45,837 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-29 04:18:45,838 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-29 04:18:45,838 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-29 04:18:45,838 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2023-11-29 04:18:45,838 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-29 04:18:45,838 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-29 04:18:45,838 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-29 04:18:45,838 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-29 04:18:45,838 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2023-11-29 04:18:45,838 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2023-11-29 04:18:45,846 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 35 nodes and edges [2023-11-29 04:18:45,847 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2023-11-29 04:18:45,847 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-29 04:18:45,848 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-29 04:18:45,849 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-29 04:18:45,952 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/witness.graphml [2023-11-29 04:18:45,953 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/witness.yml [2023-11-29 04:18:45,953 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-29 04:18:45,954 INFO L158 Benchmark]: Toolchain (without parser) took 13310.35ms. Allocated memory was 151.0MB in the beginning and 220.2MB in the end (delta: 69.2MB). Free memory was 105.9MB in the beginning and 86.3MB in the end (delta: 19.6MB). Peak memory consumption was 90.3MB. Max. memory is 16.1GB. [2023-11-29 04:18:45,954 INFO L158 Benchmark]: CDTParser took 0.18ms. Allocated memory is still 111.1MB. Free memory is still 60.4MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-29 04:18:45,954 INFO L158 Benchmark]: CACSL2BoogieTranslator took 407.24ms. Allocated memory is still 151.0MB. Free memory was 105.9MB in the beginning and 86.0MB in the end (delta: 19.9MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2023-11-29 04:18:45,955 INFO L158 Benchmark]: Boogie Procedure Inliner took 49.27ms. Allocated memory is still 151.0MB. Free memory was 86.0MB in the beginning and 83.5MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-29 04:18:45,955 INFO L158 Benchmark]: Boogie Preprocessor took 49.44ms. Allocated memory is still 151.0MB. Free memory was 83.5MB in the beginning and 81.2MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-29 04:18:45,955 INFO L158 Benchmark]: RCFGBuilder took 448.44ms. Allocated memory is still 151.0MB. Free memory was 81.2MB in the beginning and 107.3MB in the end (delta: -26.2MB). Peak memory consumption was 14.9MB. Max. memory is 16.1GB. [2023-11-29 04:18:45,956 INFO L158 Benchmark]: TraceAbstraction took 12228.94ms. Allocated memory was 151.0MB in the beginning and 220.2MB in the end (delta: 69.2MB). Free memory was 106.5MB in the beginning and 94.7MB in the end (delta: 11.8MB). Peak memory consumption was 118.0MB. Max. memory is 16.1GB. [2023-11-29 04:18:45,956 INFO L158 Benchmark]: Witness Printer took 120.32ms. Allocated memory is still 220.2MB. Free memory was 94.7MB in the beginning and 86.3MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-29 04:18:45,958 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.18ms. Allocated memory is still 111.1MB. Free memory is still 60.4MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 407.24ms. Allocated memory is still 151.0MB. Free memory was 105.9MB in the beginning and 86.0MB in the end (delta: 19.9MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 49.27ms. Allocated memory is still 151.0MB. Free memory was 86.0MB in the beginning and 83.5MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 49.44ms. Allocated memory is still 151.0MB. Free memory was 83.5MB in the beginning and 81.2MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 448.44ms. Allocated memory is still 151.0MB. Free memory was 81.2MB in the beginning and 107.3MB in the end (delta: -26.2MB). Peak memory consumption was 14.9MB. Max. memory is 16.1GB. * TraceAbstraction took 12228.94ms. Allocated memory was 151.0MB in the beginning and 220.2MB in the end (delta: 69.2MB). Free memory was 106.5MB in the beginning and 94.7MB in the end (delta: 11.8MB). Peak memory consumption was 118.0MB. Max. memory is 16.1GB. * Witness Printer took 120.32ms. Allocated memory is still 220.2MB. Free memory was 94.7MB in the beginning and 86.3MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49] - GenericResultAtLocation [Line: 118]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [118] - GenericResultAtLocation [Line: 368]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [368] - GenericResultAtLocation [Line: 472]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [472] - GenericResultAtLocation [Line: 481]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [481] - GenericResultAtLocation [Line: 580]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification3_spec.i","") [580] - GenericResultAtLocation [Line: 614]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [614] - GenericResultAtLocation [Line: 649]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [649] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 477]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 11 procedures, 89 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 12.2s, OverallIterations: 12, TraceHistogramMax: 4, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 6.0s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.6s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 3190 SdHoareTripleChecker+Valid, 3.7s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 3149 mSDsluCounter, 2838 SdHoareTripleChecker+Invalid, 3.0s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2047 mSDsCounter, 1411 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 4316 IncrementalHoareTripleChecker+Invalid, 5727 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1411 mSolverCounterUnsat, 791 mSDtfsCounter, 4316 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 552 GetRequests, 361 SyntacticMatches, 6 SemanticMatches, 185 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2113 ImplicationChecksByTransitivity, 1.8s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=770occurred in iteration=10, InterpolantAutomatonStates: 168, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.4s AutomataMinimizationTime, 12 MinimizatonAttempts, 151 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 30 LocationsWithAnnotation, 1586 PreInvPairs, 1752 NumberOfFragments, 1597 HoareAnnotationTreeSize, 1586 FomulaSimplifications, 2296 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 30 FomulaSimplificationsInter, 6185 FormulaSimplificationTreeSizeReductionInter, 2.3s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 2.2s InterpolantComputationTime, 650 NumberOfCodeBlocks, 650 NumberOfCodeBlocksAsserted, 14 NumberOfCheckSat, 721 ConstructedInterpolants, 0 QuantifiedInterpolants, 1568 SizeOfPredicates, 5 NumberOfNonLiveVariables, 542 ConjunctsInSsa, 29 ConjunctsInUnsatCore, 15 InterpolantComputations, 11 PerfectInterpolantSequences, 74/104 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 63]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 493]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: (((((((((tmp == 1) && (1 <= methaneLevelCritical)) && (waterLevel <= 1)) && (1 == systemActive)) && (splverifierCounter == 0)) && (pumpRunning == 1)) || ((((((tmp == 1) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel <= 2)) && (pumpRunning == 1))) || ((((((tmp == 1) && (pumpRunning == 0)) && (methaneLevelCritical == 0)) && (waterLevel <= 1)) && (1 == systemActive)) && (splverifierCounter == 0))) || ((((((tmp == 1) && (pumpRunning == 0)) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel <= 2))) RESULT: Ultimate proved your program to be correct! [2023-11-29 04:18:45,974 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_4acc3a4b-da2c-4c7d-b854-e5db1f130142/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE