./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 0e0057cc Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 303db4082dd8b7a60cb4b5043655f09159321046818373497160cd54b8948d04 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-0e0057c [2023-11-29 04:32:44,154 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-29 04:32:44,219 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-29 04:32:44,224 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-29 04:32:44,224 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-29 04:32:44,249 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-29 04:32:44,250 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-29 04:32:44,250 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-29 04:32:44,251 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-29 04:32:44,251 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-29 04:32:44,252 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-29 04:32:44,252 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-29 04:32:44,253 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-29 04:32:44,254 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-29 04:32:44,254 INFO L153 SettingsManager]: * Use SBE=true [2023-11-29 04:32:44,255 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-29 04:32:44,255 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-29 04:32:44,256 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-29 04:32:44,256 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-29 04:32:44,257 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-29 04:32:44,257 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-29 04:32:44,258 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-29 04:32:44,259 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-29 04:32:44,259 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-29 04:32:44,259 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-29 04:32:44,260 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-29 04:32:44,260 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-29 04:32:44,261 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-29 04:32:44,261 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-29 04:32:44,261 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-29 04:32:44,262 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-29 04:32:44,262 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-29 04:32:44,262 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-29 04:32:44,263 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-29 04:32:44,263 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-29 04:32:44,263 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-29 04:32:44,263 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-29 04:32:44,263 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-29 04:32:44,264 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-29 04:32:44,264 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-29 04:32:44,264 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-29 04:32:44,264 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-29 04:32:44,265 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 303db4082dd8b7a60cb4b5043655f09159321046818373497160cd54b8948d04 [2023-11-29 04:32:44,505 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-29 04:32:44,526 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-29 04:32:44,528 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-29 04:32:44,529 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-29 04:32:44,530 INFO L274 PluginConnector]: CDTParser initialized [2023-11-29 04:32:44,531 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/../../sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c [2023-11-29 04:32:47,252 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-29 04:32:47,489 INFO L384 CDTParser]: Found 1 translation units. [2023-11-29 04:32:47,490 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c [2023-11-29 04:32:47,501 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/data/5fc791ff0/cbc18b37e2b14c6793ef5f7ae2f2ecbd/FLAGffe2e3002 [2023-11-29 04:32:47,515 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/data/5fc791ff0/cbc18b37e2b14c6793ef5f7ae2f2ecbd [2023-11-29 04:32:47,517 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-29 04:32:47,519 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-29 04:32:47,520 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-29 04:32:47,520 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-29 04:32:47,525 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-29 04:32:47,525 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:47,527 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@2d8906bb and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47, skipping insertion in model container [2023-11-29 04:32:47,527 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:47,576 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-29 04:32:47,697 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c[1605,1618] [2023-11-29 04:32:47,820 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-29 04:32:47,833 INFO L202 MainTranslator]: Completed pre-run [2023-11-29 04:32:47,845 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2023-11-29 04:32:47,846 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] [2023-11-29 04:32:47,847 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [283] [2023-11-29 04:32:47,847 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [353] [2023-11-29 04:32:47,847 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [454] [2023-11-29 04:32:47,847 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [820] [2023-11-29 04:32:47,847 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [855] [2023-11-29 04:32:47,848 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [905] [2023-11-29 04:32:47,852 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c[1605,1618] [2023-11-29 04:32:47,908 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-29 04:32:47,929 INFO L206 MainTranslator]: Completed translation [2023-11-29 04:32:47,929 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47 WrapperNode [2023-11-29 04:32:47,929 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-29 04:32:47,930 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-29 04:32:47,931 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-29 04:32:47,931 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-29 04:32:47,939 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:47,955 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:47,988 INFO L138 Inliner]: procedures = 57, calls = 104, calls flagged for inlining = 24, calls inlined = 21, statements flattened = 214 [2023-11-29 04:32:47,988 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-29 04:32:47,989 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-29 04:32:47,989 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-29 04:32:47,989 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-29 04:32:48,000 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:48,001 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:48,004 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:48,020 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-11-29 04:32:48,020 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:48,021 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:48,027 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:48,031 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:48,033 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:48,035 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:48,038 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-29 04:32:48,039 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-29 04:32:48,039 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-29 04:32:48,039 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-29 04:32:48,040 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (1/1) ... [2023-11-29 04:32:48,046 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-29 04:32:48,058 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 04:32:48,070 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-11-29 04:32:48,074 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-11-29 04:32:48,101 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-29 04:32:48,101 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-29 04:32:48,101 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-29 04:32:48,102 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-29 04:32:48,102 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-29 04:32:48,102 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-29 04:32:48,102 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-29 04:32:48,102 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-29 04:32:48,102 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-29 04:32:48,102 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2023-11-29 04:32:48,102 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2023-11-29 04:32:48,102 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2023-11-29 04:32:48,102 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2023-11-29 04:32:48,102 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2023-11-29 04:32:48,102 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2023-11-29 04:32:48,103 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-29 04:32:48,103 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-29 04:32:48,103 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-29 04:32:48,103 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-29 04:32:48,103 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-29 04:32:48,103 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-29 04:32:48,103 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-29 04:32:48,178 INFO L241 CfgBuilder]: Building ICFG [2023-11-29 04:32:48,180 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-29 04:32:48,424 INFO L282 CfgBuilder]: Performing block encoding [2023-11-29 04:32:48,493 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-29 04:32:48,493 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-29 04:32:48,494 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.11 04:32:48 BoogieIcfgContainer [2023-11-29 04:32:48,494 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-29 04:32:48,497 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-29 04:32:48,498 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-29 04:32:48,501 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-29 04:32:48,501 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 29.11 04:32:47" (1/3) ... [2023-11-29 04:32:48,502 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7b85d649 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 29.11 04:32:48, skipping insertion in model container [2023-11-29 04:32:48,502 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 04:32:47" (2/3) ... [2023-11-29 04:32:48,502 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7b85d649 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 29.11 04:32:48, skipping insertion in model container [2023-11-29 04:32:48,502 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.11 04:32:48" (3/3) ... [2023-11-29 04:32:48,503 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product47.cil.c [2023-11-29 04:32:48,519 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-29 04:32:48,520 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-29 04:32:48,570 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-29 04:32:48,577 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@2a7ecb14, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-29 04:32:48,577 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-29 04:32:48,581 INFO L276 IsEmpty]: Start isEmpty. Operand has 83 states, 56 states have (on average 1.5) internal successors, (84), 65 states have internal predecessors, (84), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 13 states have call predecessors, (16), 16 states have call successors, (16) [2023-11-29 04:32:48,591 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2023-11-29 04:32:48,591 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:32:48,592 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:48,592 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:32:48,598 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:32:48,598 INFO L85 PathProgramCache]: Analyzing trace with hash -1956255824, now seen corresponding path program 1 times [2023-11-29 04:32:48,606 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:32:48,606 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [277183778] [2023-11-29 04:32:48,607 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:48,607 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:32:48,712 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:48,794 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:32:48,799 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:48,805 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 04:32:48,807 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:48,827 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 04:32:48,828 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:32:48,829 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [277183778] [2023-11-29 04:32:48,829 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [277183778] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:32:48,830 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:32:48,830 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-29 04:32:48,832 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [856223468] [2023-11-29 04:32:48,833 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:32:48,838 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-29 04:32:48,839 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:32:48,869 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-29 04:32:48,870 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-29 04:32:48,873 INFO L87 Difference]: Start difference. First operand has 83 states, 56 states have (on average 1.5) internal successors, (84), 65 states have internal predecessors, (84), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 13 states have call predecessors, (16), 16 states have call successors, (16) Second operand has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 04:32:48,942 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:32:48,942 INFO L93 Difference]: Finished difference Result 164 states and 233 transitions. [2023-11-29 04:32:48,944 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-29 04:32:48,945 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 22 [2023-11-29 04:32:48,946 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:32:48,957 INFO L225 Difference]: With dead ends: 164 [2023-11-29 04:32:48,957 INFO L226 Difference]: Without dead ends: 78 [2023-11-29 04:32:48,962 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-29 04:32:48,966 INFO L413 NwaCegarLoop]: 96 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 15 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 96 SdHoareTripleChecker+Invalid, 15 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 15 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-29 04:32:48,968 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 96 Invalid, 15 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 15 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-29 04:32:48,988 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 78 states. [2023-11-29 04:32:49,016 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 78 to 78. [2023-11-29 04:32:49,017 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 78 states, 53 states have (on average 1.3962264150943395) internal successors, (74), 61 states have internal predecessors, (74), 16 states have call successors, (16), 9 states have call predecessors, (16), 8 states have return successors, (15), 12 states have call predecessors, (15), 15 states have call successors, (15) [2023-11-29 04:32:49,020 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 78 states to 78 states and 105 transitions. [2023-11-29 04:32:49,022 INFO L78 Accepts]: Start accepts. Automaton has 78 states and 105 transitions. Word has length 22 [2023-11-29 04:32:49,022 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:32:49,022 INFO L495 AbstractCegarLoop]: Abstraction has 78 states and 105 transitions. [2023-11-29 04:32:49,023 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 04:32:49,023 INFO L276 IsEmpty]: Start isEmpty. Operand 78 states and 105 transitions. [2023-11-29 04:32:49,026 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-11-29 04:32:49,026 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:32:49,026 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:49,027 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-29 04:32:49,027 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:32:49,028 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:32:49,028 INFO L85 PathProgramCache]: Analyzing trace with hash 497041587, now seen corresponding path program 1 times [2023-11-29 04:32:49,028 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:32:49,028 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1956277178] [2023-11-29 04:32:49,029 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:49,029 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:32:49,049 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,132 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-29 04:32:49,135 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,138 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-29 04:32:49,140 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,143 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 04:32:49,143 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:32:49,144 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1956277178] [2023-11-29 04:32:49,144 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1956277178] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:32:49,144 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:32:49,145 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-29 04:32:49,145 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [464409217] [2023-11-29 04:32:49,145 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:32:49,147 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-29 04:32:49,147 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:32:49,148 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-29 04:32:49,148 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-29 04:32:49,148 INFO L87 Difference]: Start difference. First operand 78 states and 105 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 04:32:49,193 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:32:49,193 INFO L93 Difference]: Finished difference Result 126 states and 168 transitions. [2023-11-29 04:32:49,194 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-29 04:32:49,194 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 23 [2023-11-29 04:32:49,194 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:32:49,196 INFO L225 Difference]: With dead ends: 126 [2023-11-29 04:32:49,196 INFO L226 Difference]: Without dead ends: 70 [2023-11-29 04:32:49,198 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-29 04:32:49,199 INFO L413 NwaCegarLoop]: 82 mSDtfsCounter, 14 mSDsluCounter, 65 mSDsCounter, 0 mSdLazyCounter, 21 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 147 SdHoareTripleChecker+Invalid, 21 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 21 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-29 04:32:49,200 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 147 Invalid, 21 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 21 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-29 04:32:49,202 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 70 states. [2023-11-29 04:32:49,211 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 70 to 70. [2023-11-29 04:32:49,211 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 70 states, 48 states have (on average 1.4166666666666667) internal successors, (68), 56 states have internal predecessors, (68), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2023-11-29 04:32:49,213 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 70 states to 70 states and 94 transitions. [2023-11-29 04:32:49,214 INFO L78 Accepts]: Start accepts. Automaton has 70 states and 94 transitions. Word has length 23 [2023-11-29 04:32:49,214 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:32:49,214 INFO L495 AbstractCegarLoop]: Abstraction has 70 states and 94 transitions. [2023-11-29 04:32:49,214 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 04:32:49,215 INFO L276 IsEmpty]: Start isEmpty. Operand 70 states and 94 transitions. [2023-11-29 04:32:49,216 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-11-29 04:32:49,216 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:32:49,216 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:49,217 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-29 04:32:49,217 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:32:49,218 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:32:49,218 INFO L85 PathProgramCache]: Analyzing trace with hash -1718675640, now seen corresponding path program 1 times [2023-11-29 04:32:49,218 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:32:49,218 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2135026556] [2023-11-29 04:32:49,219 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:49,219 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:32:49,245 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,346 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-29 04:32:49,348 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,351 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-11-29 04:32:49,353 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,355 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 04:32:49,356 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:32:49,356 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2135026556] [2023-11-29 04:32:49,356 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2135026556] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:32:49,357 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:32:49,357 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-11-29 04:32:49,357 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [517541434] [2023-11-29 04:32:49,357 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:32:49,358 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-29 04:32:49,358 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:32:49,359 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-29 04:32:49,359 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-29 04:32:49,359 INFO L87 Difference]: Start difference. First operand 70 states and 94 transitions. Second operand has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-29 04:32:49,513 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:32:49,513 INFO L93 Difference]: Finished difference Result 193 states and 266 transitions. [2023-11-29 04:32:49,513 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-11-29 04:32:49,514 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 26 [2023-11-29 04:32:49,514 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:32:49,516 INFO L225 Difference]: With dead ends: 193 [2023-11-29 04:32:49,516 INFO L226 Difference]: Without dead ends: 125 [2023-11-29 04:32:49,517 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-11-29 04:32:49,519 INFO L413 NwaCegarLoop]: 88 mSDtfsCounter, 104 mSDsluCounter, 126 mSDsCounter, 0 mSdLazyCounter, 69 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 104 SdHoareTripleChecker+Valid, 214 SdHoareTripleChecker+Invalid, 78 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 69 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-29 04:32:49,520 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [104 Valid, 214 Invalid, 78 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 69 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-29 04:32:49,521 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 125 states. [2023-11-29 04:32:49,538 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 125 to 108. [2023-11-29 04:32:49,539 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 108 states, 75 states have (on average 1.4266666666666667) internal successors, (107), 86 states have internal predecessors, (107), 19 states have call successors, (19), 13 states have call predecessors, (19), 13 states have return successors, (20), 15 states have call predecessors, (20), 19 states have call successors, (20) [2023-11-29 04:32:49,541 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 108 states to 108 states and 146 transitions. [2023-11-29 04:32:49,541 INFO L78 Accepts]: Start accepts. Automaton has 108 states and 146 transitions. Word has length 26 [2023-11-29 04:32:49,541 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:32:49,541 INFO L495 AbstractCegarLoop]: Abstraction has 108 states and 146 transitions. [2023-11-29 04:32:49,542 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-29 04:32:49,542 INFO L276 IsEmpty]: Start isEmpty. Operand 108 states and 146 transitions. [2023-11-29 04:32:49,544 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-11-29 04:32:49,544 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:32:49,544 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:49,544 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-29 04:32:49,545 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:32:49,545 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:32:49,545 INFO L85 PathProgramCache]: Analyzing trace with hash 1945094294, now seen corresponding path program 1 times [2023-11-29 04:32:49,545 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:32:49,546 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1625676376] [2023-11-29 04:32:49,546 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:49,546 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:32:49,561 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,657 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-11-29 04:32:49,659 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,662 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-11-29 04:32:49,663 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,677 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-29 04:32:49,677 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:32:49,678 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1625676376] [2023-11-29 04:32:49,678 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1625676376] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:32:49,678 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:32:49,678 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-29 04:32:49,678 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [414068059] [2023-11-29 04:32:49,679 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:32:49,679 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-29 04:32:49,679 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:32:49,680 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-29 04:32:49,680 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-29 04:32:49,680 INFO L87 Difference]: Start difference. First operand 108 states and 146 transitions. Second operand has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 04:32:49,852 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:32:49,852 INFO L93 Difference]: Finished difference Result 254 states and 348 transitions. [2023-11-29 04:32:49,853 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-11-29 04:32:49,853 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 29 [2023-11-29 04:32:49,853 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:32:49,855 INFO L225 Difference]: With dead ends: 254 [2023-11-29 04:32:49,855 INFO L226 Difference]: Without dead ends: 148 [2023-11-29 04:32:49,857 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2023-11-29 04:32:49,858 INFO L413 NwaCegarLoop]: 80 mSDtfsCounter, 51 mSDsluCounter, 265 mSDsCounter, 0 mSdLazyCounter, 119 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 345 SdHoareTripleChecker+Invalid, 129 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 119 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-29 04:32:49,858 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [52 Valid, 345 Invalid, 129 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 119 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-29 04:32:49,859 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 148 states. [2023-11-29 04:32:49,879 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 148 to 144. [2023-11-29 04:32:49,879 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 144 states, 101 states have (on average 1.3366336633663367) internal successors, (135), 112 states have internal predecessors, (135), 23 states have call successors, (23), 19 states have call predecessors, (23), 19 states have return successors, (29), 22 states have call predecessors, (29), 23 states have call successors, (29) [2023-11-29 04:32:49,881 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 144 states to 144 states and 187 transitions. [2023-11-29 04:32:49,881 INFO L78 Accepts]: Start accepts. Automaton has 144 states and 187 transitions. Word has length 29 [2023-11-29 04:32:49,882 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:32:49,882 INFO L495 AbstractCegarLoop]: Abstraction has 144 states and 187 transitions. [2023-11-29 04:32:49,882 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 04:32:49,882 INFO L276 IsEmpty]: Start isEmpty. Operand 144 states and 187 transitions. [2023-11-29 04:32:49,884 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2023-11-29 04:32:49,885 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:32:49,885 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:49,885 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-29 04:32:49,885 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:32:49,886 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:32:49,886 INFO L85 PathProgramCache]: Analyzing trace with hash 372359930, now seen corresponding path program 1 times [2023-11-29 04:32:49,886 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:32:49,886 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [254383037] [2023-11-29 04:32:49,886 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:49,887 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:32:49,903 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,938 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-11-29 04:32:49,940 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,946 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-29 04:32:49,951 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,956 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:32:49,957 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,959 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 40 [2023-11-29 04:32:49,961 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:49,963 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 04:32:49,963 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:32:49,963 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [254383037] [2023-11-29 04:32:49,963 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [254383037] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:32:49,963 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:32:49,964 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-11-29 04:32:49,964 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1102195814] [2023-11-29 04:32:49,964 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:32:49,964 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-29 04:32:49,965 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:32:49,965 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-29 04:32:49,965 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-29 04:32:49,966 INFO L87 Difference]: Start difference. First operand 144 states and 187 transitions. Second operand has 4 states, 4 states have (on average 9.25) internal successors, (37), 3 states have internal predecessors, (37), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2023-11-29 04:32:50,148 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:32:50,148 INFO L93 Difference]: Finished difference Result 309 states and 400 transitions. [2023-11-29 04:32:50,150 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-29 04:32:50,150 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.25) internal successors, (37), 3 states have internal predecessors, (37), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 47 [2023-11-29 04:32:50,150 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:32:50,152 INFO L225 Difference]: With dead ends: 309 [2023-11-29 04:32:50,152 INFO L226 Difference]: Without dead ends: 130 [2023-11-29 04:32:50,153 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-11-29 04:32:50,154 INFO L413 NwaCegarLoop]: 86 mSDtfsCounter, 84 mSDsluCounter, 97 mSDsCounter, 0 mSdLazyCounter, 104 mSolverCounterSat, 21 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 93 SdHoareTripleChecker+Valid, 183 SdHoareTripleChecker+Invalid, 125 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 21 IncrementalHoareTripleChecker+Valid, 104 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-29 04:32:50,154 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [93 Valid, 183 Invalid, 125 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [21 Valid, 104 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-29 04:32:50,155 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 130 states. [2023-11-29 04:32:50,172 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 130 to 128. [2023-11-29 04:32:50,173 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 128 states, 90 states have (on average 1.3) internal successors, (117), 98 states have internal predecessors, (117), 19 states have call successors, (19), 15 states have call predecessors, (19), 18 states have return successors, (26), 20 states have call predecessors, (26), 19 states have call successors, (26) [2023-11-29 04:32:50,174 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 128 states to 128 states and 162 transitions. [2023-11-29 04:32:50,174 INFO L78 Accepts]: Start accepts. Automaton has 128 states and 162 transitions. Word has length 47 [2023-11-29 04:32:50,174 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:32:50,175 INFO L495 AbstractCegarLoop]: Abstraction has 128 states and 162 transitions. [2023-11-29 04:32:50,175 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.25) internal successors, (37), 3 states have internal predecessors, (37), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2023-11-29 04:32:50,175 INFO L276 IsEmpty]: Start isEmpty. Operand 128 states and 162 transitions. [2023-11-29 04:32:50,176 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2023-11-29 04:32:50,176 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:32:50,177 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:50,177 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-29 04:32:50,177 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:32:50,177 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:32:50,177 INFO L85 PathProgramCache]: Analyzing trace with hash -1672378068, now seen corresponding path program 1 times [2023-11-29 04:32:50,178 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:32:50,178 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1700647008] [2023-11-29 04:32:50,178 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:50,178 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:32:50,194 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,239 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-29 04:32:50,240 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,244 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-29 04:32:50,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,272 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:32:50,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,275 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2023-11-29 04:32:50,277 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,278 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 04:32:50,278 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:32:50,278 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1700647008] [2023-11-29 04:32:50,279 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1700647008] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:32:50,279 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:32:50,279 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-29 04:32:50,279 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [933900790] [2023-11-29 04:32:50,279 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:32:50,280 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-29 04:32:50,280 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:32:50,281 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-29 04:32:50,281 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-29 04:32:50,281 INFO L87 Difference]: Start difference. First operand 128 states and 162 transitions. Second operand has 5 states, 5 states have (on average 6.8) internal successors, (34), 4 states have internal predecessors, (34), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-29 04:32:50,446 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:32:50,446 INFO L93 Difference]: Finished difference Result 260 states and 337 transitions. [2023-11-29 04:32:50,447 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-29 04:32:50,447 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 4 states have internal predecessors, (34), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 44 [2023-11-29 04:32:50,447 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:32:50,449 INFO L225 Difference]: With dead ends: 260 [2023-11-29 04:32:50,449 INFO L226 Difference]: Without dead ends: 134 [2023-11-29 04:32:50,449 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2023-11-29 04:32:50,450 INFO L413 NwaCegarLoop]: 61 mSDtfsCounter, 53 mSDsluCounter, 133 mSDsCounter, 0 mSdLazyCounter, 123 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 58 SdHoareTripleChecker+Valid, 194 SdHoareTripleChecker+Invalid, 141 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 123 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-29 04:32:50,451 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [58 Valid, 194 Invalid, 141 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 123 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-29 04:32:50,452 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 134 states. [2023-11-29 04:32:50,467 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 134 to 130. [2023-11-29 04:32:50,468 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 130 states, 92 states have (on average 1.2934782608695652) internal successors, (119), 100 states have internal predecessors, (119), 19 states have call successors, (19), 15 states have call predecessors, (19), 18 states have return successors, (26), 20 states have call predecessors, (26), 19 states have call successors, (26) [2023-11-29 04:32:50,470 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 130 states to 130 states and 164 transitions. [2023-11-29 04:32:50,470 INFO L78 Accepts]: Start accepts. Automaton has 130 states and 164 transitions. Word has length 44 [2023-11-29 04:32:50,470 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:32:50,470 INFO L495 AbstractCegarLoop]: Abstraction has 130 states and 164 transitions. [2023-11-29 04:32:50,471 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 4 states have internal predecessors, (34), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-29 04:32:50,471 INFO L276 IsEmpty]: Start isEmpty. Operand 130 states and 164 transitions. [2023-11-29 04:32:50,471 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2023-11-29 04:32:50,472 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:32:50,472 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:50,472 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-29 04:32:50,472 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:32:50,473 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:32:50,473 INFO L85 PathProgramCache]: Analyzing trace with hash -1249676242, now seen corresponding path program 1 times [2023-11-29 04:32:50,473 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:32:50,473 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2065914113] [2023-11-29 04:32:50,473 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:50,473 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:32:50,487 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,532 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-29 04:32:50,533 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,538 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-29 04:32:50,542 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,575 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:32:50,577 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,578 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2023-11-29 04:32:50,580 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,581 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 04:32:50,581 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:32:50,582 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2065914113] [2023-11-29 04:32:50,582 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2065914113] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:32:50,582 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:32:50,582 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-29 04:32:50,582 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1692697857] [2023-11-29 04:32:50,582 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:32:50,583 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-29 04:32:50,583 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:32:50,584 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-29 04:32:50,584 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-29 04:32:50,584 INFO L87 Difference]: Start difference. First operand 130 states and 164 transitions. Second operand has 6 states, 6 states have (on average 5.666666666666667) internal successors, (34), 5 states have internal predecessors, (34), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-29 04:32:50,766 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:32:50,766 INFO L93 Difference]: Finished difference Result 267 states and 345 transitions. [2023-11-29 04:32:50,767 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-29 04:32:50,767 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.666666666666667) internal successors, (34), 5 states have internal predecessors, (34), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 44 [2023-11-29 04:32:50,767 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:32:50,768 INFO L225 Difference]: With dead ends: 267 [2023-11-29 04:32:50,769 INFO L226 Difference]: Without dead ends: 139 [2023-11-29 04:32:50,769 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=24, Invalid=48, Unknown=0, NotChecked=0, Total=72 [2023-11-29 04:32:50,770 INFO L413 NwaCegarLoop]: 61 mSDtfsCounter, 71 mSDsluCounter, 181 mSDsCounter, 0 mSdLazyCounter, 165 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 81 SdHoareTripleChecker+Valid, 242 SdHoareTripleChecker+Invalid, 182 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 165 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-29 04:32:50,771 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [81 Valid, 242 Invalid, 182 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 165 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-29 04:32:50,772 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 139 states. [2023-11-29 04:32:50,785 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 139 to 132. [2023-11-29 04:32:50,785 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 132 states, 94 states have (on average 1.2872340425531914) internal successors, (121), 102 states have internal predecessors, (121), 19 states have call successors, (19), 15 states have call predecessors, (19), 18 states have return successors, (26), 20 states have call predecessors, (26), 19 states have call successors, (26) [2023-11-29 04:32:50,786 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 132 states to 132 states and 166 transitions. [2023-11-29 04:32:50,787 INFO L78 Accepts]: Start accepts. Automaton has 132 states and 166 transitions. Word has length 44 [2023-11-29 04:32:50,787 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:32:50,787 INFO L495 AbstractCegarLoop]: Abstraction has 132 states and 166 transitions. [2023-11-29 04:32:50,787 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.666666666666667) internal successors, (34), 5 states have internal predecessors, (34), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2023-11-29 04:32:50,787 INFO L276 IsEmpty]: Start isEmpty. Operand 132 states and 166 transitions. [2023-11-29 04:32:50,788 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2023-11-29 04:32:50,788 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:32:50,788 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:50,789 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-29 04:32:50,789 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:32:50,789 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:32:50,789 INFO L85 PathProgramCache]: Analyzing trace with hash 1239852720, now seen corresponding path program 1 times [2023-11-29 04:32:50,790 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:32:50,790 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1628314583] [2023-11-29 04:32:50,790 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:50,790 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:32:50,800 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,844 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-29 04:32:50,845 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,851 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-29 04:32:50,855 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,866 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:32:50,868 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,870 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2023-11-29 04:32:50,872 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:50,873 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 04:32:50,873 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:32:50,873 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1628314583] [2023-11-29 04:32:50,874 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1628314583] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:32:50,874 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:32:50,874 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-29 04:32:50,874 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2079656727] [2023-11-29 04:32:50,874 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:32:50,874 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-29 04:32:50,875 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:32:50,875 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-29 04:32:50,875 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-29 04:32:50,875 INFO L87 Difference]: Start difference. First operand 132 states and 166 transitions. Second operand has 5 states, 5 states have (on average 6.8) internal successors, (34), 4 states have internal predecessors, (34), 3 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2023-11-29 04:32:51,167 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:32:51,167 INFO L93 Difference]: Finished difference Result 419 states and 563 transitions. [2023-11-29 04:32:51,167 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-29 04:32:51,168 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 4 states have internal predecessors, (34), 3 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 44 [2023-11-29 04:32:51,168 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:32:51,170 INFO L225 Difference]: With dead ends: 419 [2023-11-29 04:32:51,170 INFO L226 Difference]: Without dead ends: 289 [2023-11-29 04:32:51,171 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2023-11-29 04:32:51,172 INFO L413 NwaCegarLoop]: 105 mSDtfsCounter, 191 mSDsluCounter, 142 mSDsCounter, 0 mSdLazyCounter, 210 mSolverCounterSat, 70 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 199 SdHoareTripleChecker+Valid, 247 SdHoareTripleChecker+Invalid, 280 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 70 IncrementalHoareTripleChecker+Valid, 210 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-29 04:32:51,172 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [199 Valid, 247 Invalid, 280 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [70 Valid, 210 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-29 04:32:51,173 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 289 states. [2023-11-29 04:32:51,199 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 289 to 285. [2023-11-29 04:32:51,200 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 285 states, 202 states have (on average 1.2673267326732673) internal successors, (256), 215 states have internal predecessors, (256), 45 states have call successors, (45), 38 states have call predecessors, (45), 37 states have return successors, (69), 43 states have call predecessors, (69), 45 states have call successors, (69) [2023-11-29 04:32:51,202 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 285 states to 285 states and 370 transitions. [2023-11-29 04:32:51,203 INFO L78 Accepts]: Start accepts. Automaton has 285 states and 370 transitions. Word has length 44 [2023-11-29 04:32:51,203 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:32:51,203 INFO L495 AbstractCegarLoop]: Abstraction has 285 states and 370 transitions. [2023-11-29 04:32:51,203 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 4 states have internal predecessors, (34), 3 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2023-11-29 04:32:51,203 INFO L276 IsEmpty]: Start isEmpty. Operand 285 states and 370 transitions. [2023-11-29 04:32:51,204 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2023-11-29 04:32:51,204 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:32:51,204 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:51,204 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-29 04:32:51,205 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:32:51,205 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:32:51,205 INFO L85 PathProgramCache]: Analyzing trace with hash 2101805846, now seen corresponding path program 1 times [2023-11-29 04:32:51,205 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:32:51,205 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [737433753] [2023-11-29 04:32:51,205 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:51,206 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:32:51,218 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:51,315 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 04:32:51,317 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:51,323 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 04:32:51,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:51,330 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-11-29 04:32:51,334 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:51,349 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:32:51,350 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:51,352 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2023-11-29 04:32:51,353 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:51,354 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 04:32:51,354 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:32:51,354 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [737433753] [2023-11-29 04:32:51,354 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [737433753] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 04:32:51,355 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 04:32:51,355 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2023-11-29 04:32:51,355 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [749348723] [2023-11-29 04:32:51,355 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 04:32:51,355 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-29 04:32:51,355 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:32:51,356 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-29 04:32:51,356 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2023-11-29 04:32:51,356 INFO L87 Difference]: Start difference. First operand 285 states and 370 transitions. Second operand has 8 states, 8 states have (on average 4.5) internal successors, (36), 6 states have internal predecessors, (36), 4 states have call successors, (6), 4 states have call predecessors, (6), 3 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2023-11-29 04:32:51,815 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:32:51,815 INFO L93 Difference]: Finished difference Result 616 states and 812 transitions. [2023-11-29 04:32:51,815 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2023-11-29 04:32:51,816 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.5) internal successors, (36), 6 states have internal predecessors, (36), 4 states have call successors, (6), 4 states have call predecessors, (6), 3 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) Word has length 48 [2023-11-29 04:32:51,816 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:32:51,818 INFO L225 Difference]: With dead ends: 616 [2023-11-29 04:32:51,819 INFO L226 Difference]: Without dead ends: 333 [2023-11-29 04:32:51,820 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 33 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 87 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=138, Invalid=324, Unknown=0, NotChecked=0, Total=462 [2023-11-29 04:32:51,821 INFO L413 NwaCegarLoop]: 69 mSDtfsCounter, 297 mSDsluCounter, 167 mSDsCounter, 0 mSdLazyCounter, 298 mSolverCounterSat, 108 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 300 SdHoareTripleChecker+Valid, 236 SdHoareTripleChecker+Invalid, 406 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 108 IncrementalHoareTripleChecker+Valid, 298 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-29 04:32:51,821 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [300 Valid, 236 Invalid, 406 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [108 Valid, 298 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-29 04:32:51,822 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 333 states. [2023-11-29 04:32:51,856 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 333 to 323. [2023-11-29 04:32:51,857 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 323 states, 229 states have (on average 1.2489082969432315) internal successors, (286), 246 states have internal predecessors, (286), 51 states have call successors, (51), 38 states have call predecessors, (51), 42 states have return successors, (86), 50 states have call predecessors, (86), 51 states have call successors, (86) [2023-11-29 04:32:51,860 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 323 states to 323 states and 423 transitions. [2023-11-29 04:32:51,860 INFO L78 Accepts]: Start accepts. Automaton has 323 states and 423 transitions. Word has length 48 [2023-11-29 04:32:51,861 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:32:51,861 INFO L495 AbstractCegarLoop]: Abstraction has 323 states and 423 transitions. [2023-11-29 04:32:51,861 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.5) internal successors, (36), 6 states have internal predecessors, (36), 4 states have call successors, (6), 4 states have call predecessors, (6), 3 states have return successors, (5), 4 states have call predecessors, (5), 4 states have call successors, (5) [2023-11-29 04:32:51,861 INFO L276 IsEmpty]: Start isEmpty. Operand 323 states and 423 transitions. [2023-11-29 04:32:51,863 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 85 [2023-11-29 04:32:51,863 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 04:32:51,863 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:51,863 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-11-29 04:32:51,863 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 04:32:51,864 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 04:32:51,864 INFO L85 PathProgramCache]: Analyzing trace with hash 66955684, now seen corresponding path program 1 times [2023-11-29 04:32:51,864 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 04:32:51,864 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [351483035] [2023-11-29 04:32:51,864 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:51,864 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 04:32:51,880 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,005 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 04:32:52,007 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,018 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 04:32:52,024 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,044 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 04:32:52,045 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,054 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-29 04:32:52,057 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,067 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 04:32:52,068 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,069 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 52 [2023-11-29 04:32:52,071 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,083 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 61 [2023-11-29 04:32:52,084 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,086 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2023-11-29 04:32:52,088 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,090 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 04:32:52,091 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,092 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 77 [2023-11-29 04:32:52,093 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,094 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 14 proven. 7 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2023-11-29 04:32:52,095 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 04:32:52,095 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [351483035] [2023-11-29 04:32:52,095 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [351483035] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-29 04:32:52,095 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [813831048] [2023-11-29 04:32:52,095 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 04:32:52,095 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 04:32:52,095 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 04:32:52,099 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-29 04:32:52,107 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-29 04:32:52,197 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 04:32:52,200 INFO L262 TraceCheckSpWp]: Trace formula consists of 318 conjuncts, 8 conjunts are in the unsatisfiable core [2023-11-29 04:32:52,208 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-29 04:32:52,356 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 22 proven. 7 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 04:32:52,356 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-29 04:32:52,545 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 15 proven. 6 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2023-11-29 04:32:52,545 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [813831048] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-29 04:32:52,545 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-29 04:32:52,546 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 6, 6] total 15 [2023-11-29 04:32:52,546 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [207781468] [2023-11-29 04:32:52,546 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-29 04:32:52,547 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2023-11-29 04:32:52,547 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 04:32:52,547 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2023-11-29 04:32:52,548 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=36, Invalid=174, Unknown=0, NotChecked=0, Total=210 [2023-11-29 04:32:52,548 INFO L87 Difference]: Start difference. First operand 323 states and 423 transitions. Second operand has 15 states, 12 states have (on average 7.916666666666667) internal successors, (95), 10 states have internal predecessors, (95), 5 states have call successors, (24), 7 states have call predecessors, (24), 6 states have return successors, (20), 7 states have call predecessors, (20), 5 states have call successors, (20) [2023-11-29 04:32:53,516 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 04:32:53,517 INFO L93 Difference]: Finished difference Result 722 states and 963 transitions. [2023-11-29 04:32:53,517 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 28 states. [2023-11-29 04:32:53,517 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 12 states have (on average 7.916666666666667) internal successors, (95), 10 states have internal predecessors, (95), 5 states have call successors, (24), 7 states have call predecessors, (24), 6 states have return successors, (20), 7 states have call predecessors, (20), 5 states have call successors, (20) Word has length 84 [2023-11-29 04:32:53,518 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 04:32:53,518 INFO L225 Difference]: With dead ends: 722 [2023-11-29 04:32:53,518 INFO L226 Difference]: Without dead ends: 0 [2023-11-29 04:32:53,522 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 229 GetRequests, 190 SyntacticMatches, 4 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 299 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=260, Invalid=1072, Unknown=0, NotChecked=0, Total=1332 [2023-11-29 04:32:53,523 INFO L413 NwaCegarLoop]: 116 mSDtfsCounter, 304 mSDsluCounter, 605 mSDsCounter, 0 mSdLazyCounter, 905 mSolverCounterSat, 135 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 310 SdHoareTripleChecker+Valid, 721 SdHoareTripleChecker+Invalid, 1040 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 135 IncrementalHoareTripleChecker+Valid, 905 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2023-11-29 04:32:53,523 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [310 Valid, 721 Invalid, 1040 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [135 Valid, 905 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2023-11-29 04:32:53,524 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-29 04:32:53,524 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-29 04:32:53,524 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-29 04:32:53,524 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-29 04:32:53,525 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 84 [2023-11-29 04:32:53,525 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 04:32:53,525 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-29 04:32:53,525 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 12 states have (on average 7.916666666666667) internal successors, (95), 10 states have internal predecessors, (95), 5 states have call successors, (24), 7 states have call predecessors, (24), 6 states have return successors, (20), 7 states have call predecessors, (20), 5 states have call successors, (20) [2023-11-29 04:32:53,525 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-29 04:32:53,526 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-29 04:32:53,528 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-29 04:32:53,539 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-29 04:32:53,729 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-29 04:32:53,731 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-29 04:32:55,729 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 185 192) no Hoare annotation was computed. [2023-11-29 04:32:55,729 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 185 192) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= 0 ~systemActive~0)) [2023-11-29 04:32:55,730 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 101 107) no Hoare annotation was computed. [2023-11-29 04:32:55,730 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 101 107) the Hoare annotation is: true [2023-11-29 04:32:55,730 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 932 943) the Hoare annotation is: true [2023-11-29 04:32:55,730 INFO L899 garLoopResultBuilder]: For program point L936-1(lines 932 943) no Hoare annotation was computed. [2023-11-29 04:32:55,730 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 932 943) no Hoare annotation was computed. [2023-11-29 04:32:55,730 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 355 384) no Hoare annotation was computed. [2023-11-29 04:32:55,730 INFO L899 garLoopResultBuilder]: For program point L380(lines 355 384) no Hoare annotation was computed. [2023-11-29 04:32:55,730 INFO L899 garLoopResultBuilder]: For program point L376(line 376) no Hoare annotation was computed. [2023-11-29 04:32:55,730 INFO L899 garLoopResultBuilder]: For program point L369(lines 369 373) no Hoare annotation was computed. [2023-11-29 04:32:55,731 INFO L902 garLoopResultBuilder]: At program point L369-1(lines 369 373) the Hoare annotation is: true [2023-11-29 04:32:55,731 INFO L902 garLoopResultBuilder]: At program point L365-2(lines 365 379) the Hoare annotation is: true [2023-11-29 04:32:55,731 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 355 384) the Hoare annotation is: true [2023-11-29 04:32:55,731 INFO L902 garLoopResultBuilder]: At program point L361(line 361) the Hoare annotation is: true [2023-11-29 04:32:55,731 INFO L899 garLoopResultBuilder]: For program point L361-1(line 361) no Hoare annotation was computed. [2023-11-29 04:32:55,731 INFO L895 garLoopResultBuilder]: At program point L886(line 886) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (<= ~waterLevel~0 1)) (.cse5 (<= 1 ~switchedOnBeforeTS~0)) (.cse6 (< |old(~pumpRunning~0)| 1)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not .cse2)) (or (and .cse1 .cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0 .cse2 (< 2 |old(~waterLevel~0)|)) (let ((.cse4 (<= ~waterLevel~0 2))) (or (and .cse1 .cse4 .cse5) (not (= |old(~waterLevel~0)| 2)) .cse6 .cse2 (and .cse7 .cse4 .cse5))) (or (< 1 |old(~waterLevel~0)|) (and .cse7 .cse3 .cse5) (< |old(~switchedOnBeforeTS~0)| 1) (and .cse1 .cse3 .cse5) .cse6 .cse2))) [2023-11-29 04:32:55,731 INFO L899 garLoopResultBuilder]: For program point L886-1(line 886) no Hoare annotation was computed. [2023-11-29 04:32:55,731 INFO L899 garLoopResultBuilder]: For program point L81(lines 81 87) no Hoare annotation was computed. [2023-11-29 04:32:55,731 INFO L899 garLoopResultBuilder]: For program point L81-2(lines 77 99) no Hoare annotation was computed. [2023-11-29 04:32:55,732 INFO L899 garLoopResultBuilder]: For program point L143(lines 143 151) no Hoare annotation was computed. [2023-11-29 04:32:55,732 INFO L899 garLoopResultBuilder]: For program point L139(lines 139 156) no Hoare annotation was computed. [2023-11-29 04:32:55,732 INFO L899 garLoopResultBuilder]: For program point L912(lines 912 916) no Hoare annotation was computed. [2023-11-29 04:32:55,732 INFO L899 garLoopResultBuilder]: For program point L912-2(lines 908 919) no Hoare annotation was computed. [2023-11-29 04:32:55,732 INFO L895 garLoopResultBuilder]: At program point L871(line 871) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse5 (< 2 |old(~waterLevel~0)|)) (.cse7 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse3 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse6 (< |old(~pumpRunning~0)| 1)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not .cse2)) (or (and .cse1 .cse3 .cse4) .cse0 .cse2 .cse5) (or (< |old(~switchedOnBeforeTS~0)| 1) .cse6 .cse2 (and .cse7 .cse3 .cse4) .cse5) (or (and .cse7 (= 2 ~waterLevel~0) .cse3) (not (= |old(~waterLevel~0)| 2)) .cse6 .cse2))) [2023-11-29 04:32:55,732 INFO L899 garLoopResultBuilder]: For program point L871-1(line 871) no Hoare annotation was computed. [2023-11-29 04:32:55,732 INFO L899 garLoopResultBuilder]: For program point L888(lines 888 898) no Hoare annotation was computed. [2023-11-29 04:32:55,732 INFO L899 garLoopResultBuilder]: For program point L54(line 54) no Hoare annotation was computed. [2023-11-29 04:32:55,733 INFO L895 garLoopResultBuilder]: At program point L149(line 149) the Hoare annotation is: (let ((.cse2 (< |old(~pumpRunning~0)| 1)) (.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (<= 1 ~switchedOnBeforeTS~0)) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= 0 ~systemActive~0))) (and (or (< 1 |old(~waterLevel~0)|) (and .cse0 (<= ~waterLevel~0 1) .cse1) (< |old(~switchedOnBeforeTS~0)| 1) .cse2 .cse3) (or (not (= |old(~waterLevel~0)| 2)) .cse2 .cse3 (and .cse0 (<= ~waterLevel~0 2) .cse1)) (or .cse4 (< 2 |old(~waterLevel~0)|)) (or .cse4 (not .cse3)))) [2023-11-29 04:32:55,733 INFO L899 garLoopResultBuilder]: For program point L884(lines 884 901) no Hoare annotation was computed. [2023-11-29 04:32:55,733 INFO L899 garLoopResultBuilder]: For program point L884-1(lines 876 904) no Hoare annotation was computed. [2023-11-29 04:32:55,733 INFO L895 garLoopResultBuilder]: At program point L145(line 145) the Hoare annotation is: (let ((.cse2 (< |old(~pumpRunning~0)| 1)) (.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (<= 1 ~switchedOnBeforeTS~0)) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= 0 ~systemActive~0))) (and (or (< 1 |old(~waterLevel~0)|) (and .cse0 (<= ~waterLevel~0 1) .cse1) (< |old(~switchedOnBeforeTS~0)| 1) .cse2 .cse3) (or (not (= |old(~waterLevel~0)| 2)) .cse2 .cse3 (and .cse0 (<= ~waterLevel~0 2) .cse1)) (or .cse4 (< 2 |old(~waterLevel~0)|)) (or .cse4 (not .cse3)))) [2023-11-29 04:32:55,733 INFO L895 garLoopResultBuilder]: At program point L141(line 141) the Hoare annotation is: (let ((.cse2 (< |old(~pumpRunning~0)| 1)) (.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (<= 1 ~switchedOnBeforeTS~0)) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= 0 ~systemActive~0))) (and (or (< 1 |old(~waterLevel~0)|) (and .cse0 (<= ~waterLevel~0 1) .cse1) (< |old(~switchedOnBeforeTS~0)| 1) .cse2 .cse3) (or (not (= |old(~waterLevel~0)| 2)) .cse2 .cse3 (and .cse0 (<= ~waterLevel~0 2) .cse1)) (or .cse4 (< 2 |old(~waterLevel~0)|)) (or .cse4 (not .cse3)))) [2023-11-29 04:32:55,733 INFO L899 garLoopResultBuilder]: For program point L141-1(line 141) no Hoare annotation was computed. [2023-11-29 04:32:55,734 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 74 100) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse5 (< 2 |old(~waterLevel~0)|)) (.cse7 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse3 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse6 (< |old(~pumpRunning~0)| 1)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not .cse2)) (or (and .cse1 .cse3 .cse4) .cse0 .cse2 .cse5) (or (< |old(~switchedOnBeforeTS~0)| 1) .cse6 .cse2 (and .cse7 .cse3 .cse4) .cse5) (or (and .cse7 (= 2 ~waterLevel~0) .cse3) (not (= |old(~waterLevel~0)| 2)) .cse6 .cse2))) [2023-11-29 04:32:55,734 INFO L895 garLoopResultBuilder]: At program point L154(line 154) the Hoare annotation is: (let ((.cse0 (< |old(~pumpRunning~0)| 1)) (.cse2 (< 2 |old(~waterLevel~0)|)) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or (< |old(~switchedOnBeforeTS~0)| 1) .cse0 .cse1 .cse2) (or (not (= |old(~waterLevel~0)| 2)) .cse0 .cse1) (or .cse3 (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse2) (or .cse3 (not .cse1)))) [2023-11-29 04:32:55,734 INFO L899 garLoopResultBuilder]: For program point L154-1(lines 135 159) no Hoare annotation was computed. [2023-11-29 04:32:55,734 INFO L899 garLoopResultBuilder]: For program point L889(lines 889 895) no Hoare annotation was computed. [2023-11-29 04:32:55,734 INFO L899 garLoopResultBuilder]: For program point L88-1(lines 88 94) no Hoare annotation was computed. [2023-11-29 04:32:55,734 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 74 100) no Hoare annotation was computed. [2023-11-29 04:32:55,734 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 54) no Hoare annotation was computed. [2023-11-29 04:32:55,734 INFO L895 garLoopResultBuilder]: At program point L345(lines 296 346) the Hoare annotation is: false [2023-11-29 04:32:55,735 INFO L899 garLoopResultBuilder]: For program point L333(lines 333 339) no Hoare annotation was computed. [2023-11-29 04:32:55,735 INFO L895 garLoopResultBuilder]: At program point L333-2(lines 327 340) the Hoare annotation is: (let ((.cse5 (= 0 ~systemActive~0))) (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (= |ULTIMATE.start_main_~tmp~5#1| 1)) (.cse3 (not .cse5)) (.cse4 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 (= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and .cse4 .cse1 (<= ~waterLevel~0 2) .cse2 .cse3) (and .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse3) (and .cse4 .cse1 .cse5)))) [2023-11-29 04:32:55,735 INFO L899 garLoopResultBuilder]: For program point L317(lines 317 323) no Hoare annotation was computed. [2023-11-29 04:32:55,735 INFO L899 garLoopResultBuilder]: For program point L317-1(lines 317 323) no Hoare annotation was computed. [2023-11-29 04:32:55,735 INFO L899 garLoopResultBuilder]: For program point L441(lines 441 448) no Hoare annotation was computed. [2023-11-29 04:32:55,735 INFO L899 garLoopResultBuilder]: For program point L441-2(lines 441 448) no Hoare annotation was computed. [2023-11-29 04:32:55,735 INFO L895 garLoopResultBuilder]: At program point L342(lines 297 344) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0))) (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse6 (<= ~waterLevel~0 1)) (.cse1 (= 2 ~waterLevel~0)) (.cse3 (= |ULTIMATE.start_main_~tmp~5#1| 1)) (.cse4 (not .cse7)) (.cse5 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse6 .cse2 .cse3 .cse4) (and .cse0 .cse6 .cse2 .cse3 (<= 1 ~switchedOnBeforeTS~0) .cse4) (and .cse5 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse2 .cse7)))) [2023-11-29 04:32:55,736 INFO L895 garLoopResultBuilder]: At program point L309(line 309) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0))) (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse6 (<= ~waterLevel~0 1)) (.cse1 (= 2 ~waterLevel~0)) (.cse3 (= |ULTIMATE.start_main_~tmp~5#1| 1)) (.cse4 (not .cse7)) (.cse5 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse6 .cse2 .cse3 .cse4) (and .cse0 .cse6 .cse2 .cse3 (<= 1 ~switchedOnBeforeTS~0) .cse4) (and .cse5 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse2 .cse7)))) [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point L272(lines 272 278) no Hoare annotation was computed. [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point L272-1(lines 272 278) no Hoare annotation was computed. [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point L298(lines 297 344) no Hoare annotation was computed. [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point L327(lines 327 340) no Hoare annotation was computed. [2023-11-29 04:32:55,736 INFO L895 garLoopResultBuilder]: At program point L319(line 319) the Hoare annotation is: (let ((.cse5 (= 0 ~systemActive~0))) (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (= |ULTIMATE.start_main_~tmp~5#1| 1)) (.cse3 (not .cse5)) (.cse4 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 (= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and .cse4 .cse1 (<= ~waterLevel~0 2) .cse2 .cse3) (and .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse3) (and .cse4 .cse1 .cse5)))) [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point L348(lines 287 352) no Hoare annotation was computed. [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point L307(lines 307 313) no Hoare annotation was computed. [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point L307-1(lines 307 313) no Hoare annotation was computed. [2023-11-29 04:32:55,736 INFO L895 garLoopResultBuilder]: At program point L274(line 274) the Hoare annotation is: (and (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (not (= 0 ~systemActive~0))) [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 920 931) no Hoare annotation was computed. [2023-11-29 04:32:55,736 INFO L899 garLoopResultBuilder]: For program point L924-1(lines 920 931) no Hoare annotation was computed. [2023-11-29 04:32:55,737 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 920 931) the Hoare annotation is: (let ((.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse0 (< ~pumpRunning~0 1)) (.cse3 (not (= ~pumpRunning~0 0))) (.cse4 (= 2 ~waterLevel~0)) (.cse5 (not (= |old(~waterLevel~0)| 2))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 (< ~switchedOnBeforeTS~0 1) .cse1 .cse2 (< 2 |old(~waterLevel~0)|)) (or (< 1 |old(~waterLevel~0)|) .cse3 .cse1 .cse2) (or .cse0 .cse4 .cse5 .cse2) (or .cse3 .cse4 .cse5 .cse2))) [2023-11-29 04:32:55,737 INFO L899 garLoopResultBuilder]: For program point L258-2(lines 258 262) no Hoare annotation was computed. [2023-11-29 04:32:55,737 INFO L895 garLoopResultBuilder]: At program point L128(line 128) the Hoare annotation is: (let ((.cse0 (< 2 ~waterLevel~0)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|) (< ~switchedOnBeforeTS~0 1) (< |old(~pumpRunning~0)| 1) .cse1) (or .cse0 (not (= |old(~pumpRunning~0)| 0)) .cse1))) [2023-11-29 04:32:55,737 INFO L899 garLoopResultBuilder]: For program point L128-1(lines 109 133) no Hoare annotation was computed. [2023-11-29 04:32:55,737 INFO L899 garLoopResultBuilder]: For program point L989(lines 989 995) no Hoare annotation was computed. [2023-11-29 04:32:55,737 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 109 133) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= 2 ~waterLevel~0)) .cse2) (or (< 2 ~waterLevel~0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (< ~switchedOnBeforeTS~0 1) (< |old(~pumpRunning~0)| 1) .cse2) (or .cse0 .cse1 (< 1 ~waterLevel~0) .cse2))) [2023-11-29 04:32:55,737 INFO L899 garLoopResultBuilder]: For program point isHighWaterSensorDry_returnLabel#1(lines 985 998) no Hoare annotation was computed. [2023-11-29 04:32:55,737 INFO L895 garLoopResultBuilder]: At program point L123(line 123) the Hoare annotation is: (let ((.cse3 (= |old(~pumpRunning~0)| 0))) (let ((.cse1 (not .cse3)) (.cse0 (= 0 ~systemActive~0)) (.cse2 (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__methaneQuery_~tmp~0#1| 0) .cse3))) (and (or (< 2 ~waterLevel~0) (< ~switchedOnBeforeTS~0 1) (< |old(~pumpRunning~0)| 1) .cse0) (or .cse1 (< 1 ~waterLevel~0) .cse0 .cse2) (or .cse1 (not (= 2 ~waterLevel~0)) .cse0 .cse2)))) [2023-11-29 04:32:55,738 INFO L899 garLoopResultBuilder]: For program point L117(lines 117 125) no Hoare annotation was computed. [2023-11-29 04:32:55,738 INFO L899 garLoopResultBuilder]: For program point L113(lines 113 130) no Hoare annotation was computed. [2023-11-29 04:32:55,738 INFO L899 garLoopResultBuilder]: For program point L175(lines 175 181) no Hoare annotation was computed. [2023-11-29 04:32:55,738 INFO L895 garLoopResultBuilder]: At program point L173(line 173) the Hoare annotation is: (let ((.cse0 (< 2 ~waterLevel~0)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (< ~switchedOnBeforeTS~0 1) (< |old(~pumpRunning~0)| 1) .cse1) (or .cse0 (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) (= 2 ~waterLevel~0)) .cse1))) [2023-11-29 04:32:55,738 INFO L899 garLoopResultBuilder]: For program point L175-2(lines 168 184) no Hoare annotation was computed. [2023-11-29 04:32:55,738 INFO L899 garLoopResultBuilder]: For program point L173-1(line 173) no Hoare annotation was computed. [2023-11-29 04:32:55,738 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 109 133) no Hoare annotation was computed. [2023-11-29 04:32:55,738 INFO L899 garLoopResultBuilder]: For program point L258(lines 258 262) no Hoare annotation was computed. [2023-11-29 04:32:55,738 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 204 212) no Hoare annotation was computed. [2023-11-29 04:32:55,738 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 204 212) the Hoare annotation is: true [2023-11-29 04:32:55,739 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 193 203) no Hoare annotation was computed. [2023-11-29 04:32:55,739 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 193 203) the Hoare annotation is: true [2023-11-29 04:32:55,740 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 04:32:55,742 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-29 04:32:55,752 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 29.11 04:32:55 BoogieIcfgContainer [2023-11-29 04:32:55,752 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-29 04:32:55,752 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-29 04:32:55,752 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-29 04:32:55,753 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-29 04:32:55,753 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.11 04:32:48" (3/4) ... [2023-11-29 04:32:55,755 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-29 04:32:55,757 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-29 04:32:55,757 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-29 04:32:55,757 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-29 04:32:55,757 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-29 04:32:55,757 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-29 04:32:55,758 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-29 04:32:55,758 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2023-11-29 04:32:55,758 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2023-11-29 04:32:55,758 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2023-11-29 04:32:55,765 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 34 nodes and edges [2023-11-29 04:32:55,766 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2023-11-29 04:32:55,767 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-29 04:32:55,767 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-29 04:32:55,768 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-29 04:32:55,860 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/witness.graphml [2023-11-29 04:32:55,861 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/witness.yml [2023-11-29 04:32:55,861 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-29 04:32:55,862 INFO L158 Benchmark]: Toolchain (without parser) took 8342.63ms. Allocated memory was 161.5MB in the beginning and 195.0MB in the end (delta: 33.6MB). Free memory was 127.6MB in the beginning and 146.7MB in the end (delta: -19.1MB). Peak memory consumption was 17.4MB. Max. memory is 16.1GB. [2023-11-29 04:32:55,862 INFO L158 Benchmark]: CDTParser took 0.19ms. Allocated memory is still 161.5MB. Free memory is still 135.3MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-29 04:32:55,862 INFO L158 Benchmark]: CACSL2BoogieTranslator took 409.56ms. Allocated memory is still 161.5MB. Free memory was 127.4MB in the beginning and 108.0MB in the end (delta: 19.4MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. [2023-11-29 04:32:55,863 INFO L158 Benchmark]: Boogie Procedure Inliner took 57.66ms. Allocated memory is still 161.5MB. Free memory was 107.4MB in the beginning and 105.3MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-29 04:32:55,863 INFO L158 Benchmark]: Boogie Preprocessor took 49.30ms. Allocated memory is still 161.5MB. Free memory was 105.3MB in the beginning and 103.2MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-29 04:32:55,864 INFO L158 Benchmark]: RCFGBuilder took 455.36ms. Allocated memory is still 161.5MB. Free memory was 103.2MB in the beginning and 80.1MB in the end (delta: 23.1MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. [2023-11-29 04:32:55,864 INFO L158 Benchmark]: TraceAbstraction took 7254.39ms. Allocated memory was 161.5MB in the beginning and 195.0MB in the end (delta: 33.6MB). Free memory was 79.6MB in the beginning and 155.1MB in the end (delta: -75.6MB). Peak memory consumption was 67.8MB. Max. memory is 16.1GB. [2023-11-29 04:32:55,865 INFO L158 Benchmark]: Witness Printer took 108.74ms. Allocated memory is still 195.0MB. Free memory was 155.1MB in the beginning and 146.7MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-29 04:32:55,867 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.19ms. Allocated memory is still 161.5MB. Free memory is still 135.3MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 409.56ms. Allocated memory is still 161.5MB. Free memory was 127.4MB in the beginning and 108.0MB in the end (delta: 19.4MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 57.66ms. Allocated memory is still 161.5MB. Free memory was 107.4MB in the beginning and 105.3MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 49.30ms. Allocated memory is still 161.5MB. Free memory was 105.3MB in the beginning and 103.2MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 455.36ms. Allocated memory is still 161.5MB. Free memory was 103.2MB in the beginning and 80.1MB in the end (delta: 23.1MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. * TraceAbstraction took 7254.39ms. Allocated memory was 161.5MB in the beginning and 195.0MB in the end (delta: 33.6MB). Free memory was 79.6MB in the beginning and 155.1MB in the end (delta: -75.6MB). Peak memory consumption was 67.8MB. Max. memory is 16.1GB. * Witness Printer took 108.74ms. Allocated memory is still 195.0MB. Free memory was 155.1MB in the beginning and 146.7MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] - GenericResultAtLocation [Line: 283]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [283] - GenericResultAtLocation [Line: 353]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [353] - GenericResultAtLocation [Line: 454]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [454] - GenericResultAtLocation [Line: 820]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [820] - GenericResultAtLocation [Line: 855]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [855] - GenericResultAtLocation [Line: 905]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [905] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 10 procedures, 83 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 7.2s, OverallIterations: 10, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1215 SdHoareTripleChecker+Valid, 1.8s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1169 mSDsluCounter, 2625 SdHoareTripleChecker+Invalid, 1.5s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1781 mSDsCounter, 388 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 2029 IncrementalHoareTripleChecker+Invalid, 2417 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 388 mSolverCounterUnsat, 844 mSDtfsCounter, 2029 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 356 GetRequests, 266 SyntacticMatches, 4 SemanticMatches, 86 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 393 ImplicationChecksByTransitivity, 0.7s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=323occurred in iteration=9, InterpolantAutomatonStates: 87, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 10 MinimizatonAttempts, 48 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 27 LocationsWithAnnotation, 686 PreInvPairs, 787 NumberOfFragments, 1030 HoareAnnotationTreeSize, 686 FomulaSimplifications, 1096 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 27 FomulaSimplificationsInter, 3947 FormulaSimplificationTreeSizeReductionInter, 1.8s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 1.4s InterpolantComputationTime, 495 NumberOfCodeBlocks, 495 NumberOfCodeBlocksAsserted, 11 NumberOfCheckSat, 567 ConstructedInterpolants, 0 QuantifiedInterpolants, 1092 SizeOfPredicates, 3 NumberOfNonLiveVariables, 318 ConjunctsInSsa, 8 ConjunctsInUnsatCore, 12 InterpolantComputations, 9 PerfectInterpolantSequences, 85/105 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 365]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: (((((((((1 <= pumpRunning) && (2 == waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive))) || (((((pumpRunning == 0) && (waterLevel <= 1)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive)))) || ((((((1 <= pumpRunning) && (waterLevel <= 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (1 <= switchedOnBeforeTS)) && !((0 == systemActive)))) || (((((pumpRunning == 0) && (2 == waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive)))) || (((pumpRunning == 0) && (splverifierCounter == 0)) && (0 == systemActive))) - InvariantResult [Line: 296]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 193]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2023-11-29 04:32:55,884 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_aefc3a73-52e2-4d14-8efb-9cec03813652/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE