./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec5_product64.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 0e0057cc Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec5_product64.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 323b2112d56f35ec9fc5a7837411d8e54d2d46e3d8981d77e080eaf0dd99497b --- Real Ultimate output --- This is Ultimate 0.2.4-dev-0e0057c [2023-11-29 00:05:08,535 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-11-29 00:05:08,615 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/config/svcomp-Reach-32bit-Automizer_Default.epf [2023-11-29 00:05:08,622 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-11-29 00:05:08,622 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-11-29 00:05:08,654 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-11-29 00:05:08,655 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-11-29 00:05:08,656 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-11-29 00:05:08,657 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-11-29 00:05:08,657 INFO L153 SettingsManager]: * Use memory slicer=true [2023-11-29 00:05:08,658 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-11-29 00:05:08,659 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-11-29 00:05:08,660 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-11-29 00:05:08,660 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-11-29 00:05:08,661 INFO L153 SettingsManager]: * Use SBE=true [2023-11-29 00:05:08,662 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-11-29 00:05:08,662 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-11-29 00:05:08,663 INFO L153 SettingsManager]: * sizeof long=4 [2023-11-29 00:05:08,663 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-11-29 00:05:08,664 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-11-29 00:05:08,664 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-11-29 00:05:08,665 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-11-29 00:05:08,666 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-11-29 00:05:08,666 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-11-29 00:05:08,667 INFO L153 SettingsManager]: * sizeof long double=12 [2023-11-29 00:05:08,667 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-11-29 00:05:08,668 INFO L153 SettingsManager]: * Use constant arrays=true [2023-11-29 00:05:08,668 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-11-29 00:05:08,669 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-11-29 00:05:08,669 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-11-29 00:05:08,670 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-11-29 00:05:08,671 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-29 00:05:08,671 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-11-29 00:05:08,672 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-11-29 00:05:08,672 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-11-29 00:05:08,673 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-11-29 00:05:08,673 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-11-29 00:05:08,673 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-11-29 00:05:08,674 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-11-29 00:05:08,674 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-11-29 00:05:08,674 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-11-29 00:05:08,675 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-11-29 00:05:08,675 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 323b2112d56f35ec9fc5a7837411d8e54d2d46e3d8981d77e080eaf0dd99497b [2023-11-29 00:05:08,958 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-11-29 00:05:08,984 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-11-29 00:05:08,987 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-11-29 00:05:08,989 INFO L270 PluginConnector]: Initializing CDTParser... [2023-11-29 00:05:08,989 INFO L274 PluginConnector]: CDTParser initialized [2023-11-29 00:05:08,990 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/../../sv-benchmarks/c/product-lines/minepump_spec5_product64.cil.c [2023-11-29 00:05:12,382 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-11-29 00:05:12,637 INFO L384 CDTParser]: Found 1 translation units. [2023-11-29 00:05:12,638 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/sv-benchmarks/c/product-lines/minepump_spec5_product64.cil.c [2023-11-29 00:05:12,652 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/data/671f67fec/33c313dad8c04a23bf1e04e504b1ffce/FLAG9e4175a7f [2023-11-29 00:05:12,666 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/data/671f67fec/33c313dad8c04a23bf1e04e504b1ffce [2023-11-29 00:05:12,669 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-11-29 00:05:12,670 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2023-11-29 00:05:12,672 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-11-29 00:05:12,672 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-11-29 00:05:12,679 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-11-29 00:05:12,680 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 29.11 12:05:12" (1/1) ... [2023-11-29 00:05:12,681 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@139c6802 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:12, skipping insertion in model container [2023-11-29 00:05:12,681 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 29.11 12:05:12" (1/1) ... [2023-11-29 00:05:12,739 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-11-29 00:05:12,970 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/sv-benchmarks/c/product-lines/minepump_spec5_product64.cil.c[9626,9639] [2023-11-29 00:05:13,040 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-29 00:05:13,053 INFO L202 MainTranslator]: Completed pre-run [2023-11-29 00:05:13,062 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [49] [2023-11-29 00:05:13,064 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [101] [2023-11-29 00:05:13,064 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [176] [2023-11-29 00:05:13,064 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [450] [2023-11-29 00:05:13,064 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [553] [2023-11-29 00:05:13,064 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [653] [2023-11-29 00:05:13,065 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [662] [2023-11-29 00:05:13,065 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [697] [2023-11-29 00:05:13,099 WARN L240 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/sv-benchmarks/c/product-lines/minepump_spec5_product64.cil.c[9626,9639] [2023-11-29 00:05:13,142 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-11-29 00:05:13,165 INFO L206 MainTranslator]: Completed translation [2023-11-29 00:05:13,165 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13 WrapperNode [2023-11-29 00:05:13,165 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-11-29 00:05:13,167 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-11-29 00:05:13,167 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-11-29 00:05:13,167 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-11-29 00:05:13,174 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,192 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,224 INFO L138 Inliner]: procedures = 61, calls = 110, calls flagged for inlining = 27, calls inlined = 24, statements flattened = 249 [2023-11-29 00:05:13,225 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-11-29 00:05:13,226 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-11-29 00:05:13,226 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-11-29 00:05:13,226 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-11-29 00:05:13,237 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,237 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,240 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,259 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-11-29 00:05:13,259 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,260 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,268 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,274 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,276 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,279 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,282 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-11-29 00:05:13,284 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-11-29 00:05:13,284 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-11-29 00:05:13,284 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-11-29 00:05:13,285 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (1/1) ... [2023-11-29 00:05:13,294 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-11-29 00:05:13,311 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 00:05:13,325 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-11-29 00:05:13,327 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-11-29 00:05:13,366 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-11-29 00:05:13,367 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-11-29 00:05:13,367 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-11-29 00:05:13,367 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-11-29 00:05:13,367 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-11-29 00:05:13,368 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-11-29 00:05:13,368 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-11-29 00:05:13,368 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-11-29 00:05:13,368 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-11-29 00:05:13,368 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-11-29 00:05:13,368 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-11-29 00:05:13,369 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2023-11-29 00:05:13,369 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2023-11-29 00:05:13,369 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2023-11-29 00:05:13,369 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2023-11-29 00:05:13,369 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2023-11-29 00:05:13,369 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2023-11-29 00:05:13,370 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-11-29 00:05:13,370 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-11-29 00:05:13,370 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-11-29 00:05:13,370 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-11-29 00:05:13,371 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-11-29 00:05:13,371 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-11-29 00:05:13,371 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-11-29 00:05:13,484 INFO L241 CfgBuilder]: Building ICFG [2023-11-29 00:05:13,487 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-11-29 00:05:13,845 INFO L282 CfgBuilder]: Performing block encoding [2023-11-29 00:05:13,912 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-11-29 00:05:13,913 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-11-29 00:05:13,913 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.11 12:05:13 BoogieIcfgContainer [2023-11-29 00:05:13,913 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-11-29 00:05:13,916 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-11-29 00:05:13,916 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-11-29 00:05:13,920 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-11-29 00:05:13,920 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 29.11 12:05:12" (1/3) ... [2023-11-29 00:05:13,921 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7a25f9d0 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 29.11 12:05:13, skipping insertion in model container [2023-11-29 00:05:13,922 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 29.11 12:05:13" (2/3) ... [2023-11-29 00:05:13,922 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7a25f9d0 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 29.11 12:05:13, skipping insertion in model container [2023-11-29 00:05:13,922 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.11 12:05:13" (3/3) ... [2023-11-29 00:05:13,924 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product64.cil.c [2023-11-29 00:05:13,947 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-11-29 00:05:13,947 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-11-29 00:05:14,009 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-11-29 00:05:14,017 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@1b8ee100, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-11-29 00:05:14,017 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-11-29 00:05:14,022 INFO L276 IsEmpty]: Start isEmpty. Operand has 93 states, 62 states have (on average 1.5) internal successors, (93), 73 states have internal predecessors, (93), 19 states have call successors, (19), 10 states have call predecessors, (19), 10 states have return successors, (19), 14 states have call predecessors, (19), 19 states have call successors, (19) [2023-11-29 00:05:14,032 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2023-11-29 00:05:14,033 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:14,034 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:14,034 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:14,039 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:14,040 INFO L85 PathProgramCache]: Analyzing trace with hash 1707050728, now seen corresponding path program 1 times [2023-11-29 00:05:14,048 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:14,049 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1841805134] [2023-11-29 00:05:14,049 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:14,049 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:14,171 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:14,246 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:14,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:14,254 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:14,257 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:14,262 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 00:05:14,262 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:14,263 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1841805134] [2023-11-29 00:05:14,263 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1841805134] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 00:05:14,264 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 00:05:14,264 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-11-29 00:05:14,266 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1427747368] [2023-11-29 00:05:14,267 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 00:05:14,272 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-11-29 00:05:14,273 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:14,306 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-11-29 00:05:14,306 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-29 00:05:14,309 INFO L87 Difference]: Start difference. First operand has 93 states, 62 states have (on average 1.5) internal successors, (93), 73 states have internal predecessors, (93), 19 states have call successors, (19), 10 states have call predecessors, (19), 10 states have return successors, (19), 14 states have call predecessors, (19), 19 states have call successors, (19) Second operand has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 00:05:14,386 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:14,386 INFO L93 Difference]: Finished difference Result 184 states and 263 transitions. [2023-11-29 00:05:14,389 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-11-29 00:05:14,390 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 22 [2023-11-29 00:05:14,391 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:14,403 INFO L225 Difference]: With dead ends: 184 [2023-11-29 00:05:14,403 INFO L226 Difference]: Without dead ends: 88 [2023-11-29 00:05:14,408 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-11-29 00:05:14,413 INFO L413 NwaCegarLoop]: 108 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 108 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:14,414 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 108 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-29 00:05:14,435 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 88 states. [2023-11-29 00:05:14,466 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 88 to 88. [2023-11-29 00:05:14,469 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 88 states, 59 states have (on average 1.4067796610169492) internal successors, (83), 69 states have internal predecessors, (83), 19 states have call successors, (19), 10 states have call predecessors, (19), 9 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) [2023-11-29 00:05:14,472 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 88 states to 88 states and 120 transitions. [2023-11-29 00:05:14,474 INFO L78 Accepts]: Start accepts. Automaton has 88 states and 120 transitions. Word has length 22 [2023-11-29 00:05:14,474 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:14,475 INFO L495 AbstractCegarLoop]: Abstraction has 88 states and 120 transitions. [2023-11-29 00:05:14,475 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 00:05:14,475 INFO L276 IsEmpty]: Start isEmpty. Operand 88 states and 120 transitions. [2023-11-29 00:05:14,478 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-11-29 00:05:14,479 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:14,479 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:14,479 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-11-29 00:05:14,480 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:14,480 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:14,481 INFO L85 PathProgramCache]: Analyzing trace with hash 1331224265, now seen corresponding path program 1 times [2023-11-29 00:05:14,481 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:14,481 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1764521000] [2023-11-29 00:05:14,481 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:14,482 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:14,503 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:14,593 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-29 00:05:14,596 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:14,599 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-11-29 00:05:14,601 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:14,604 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 00:05:14,604 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:14,605 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1764521000] [2023-11-29 00:05:14,605 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1764521000] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 00:05:14,605 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 00:05:14,605 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-11-29 00:05:14,606 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1648851388] [2023-11-29 00:05:14,606 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 00:05:14,608 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-29 00:05:14,608 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:14,609 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-29 00:05:14,609 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-29 00:05:14,610 INFO L87 Difference]: Start difference. First operand 88 states and 120 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 00:05:14,669 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:14,669 INFO L93 Difference]: Finished difference Result 146 states and 198 transitions. [2023-11-29 00:05:14,670 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-29 00:05:14,670 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 23 [2023-11-29 00:05:14,671 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:14,673 INFO L225 Difference]: With dead ends: 146 [2023-11-29 00:05:14,673 INFO L226 Difference]: Without dead ends: 80 [2023-11-29 00:05:14,674 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-11-29 00:05:14,676 INFO L413 NwaCegarLoop]: 94 mSDtfsCounter, 14 mSDsluCounter, 78 mSDsCounter, 0 mSdLazyCounter, 26 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 172 SdHoareTripleChecker+Invalid, 26 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 26 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:14,677 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 172 Invalid, 26 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 26 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-29 00:05:14,678 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 80 states. [2023-11-29 00:05:14,690 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 80 to 80. [2023-11-29 00:05:14,691 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 80 states, 54 states have (on average 1.4259259259259258) internal successors, (77), 64 states have internal predecessors, (77), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 11 states have call predecessors, (16), 16 states have call successors, (16) [2023-11-29 00:05:14,693 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 80 states to 80 states and 109 transitions. [2023-11-29 00:05:14,693 INFO L78 Accepts]: Start accepts. Automaton has 80 states and 109 transitions. Word has length 23 [2023-11-29 00:05:14,693 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:14,693 INFO L495 AbstractCegarLoop]: Abstraction has 80 states and 109 transitions. [2023-11-29 00:05:14,694 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 00:05:14,694 INFO L276 IsEmpty]: Start isEmpty. Operand 80 states and 109 transitions. [2023-11-29 00:05:14,696 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-11-29 00:05:14,696 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:14,696 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:14,697 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-11-29 00:05:14,697 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:14,698 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:14,698 INFO L85 PathProgramCache]: Analyzing trace with hash 2038534613, now seen corresponding path program 1 times [2023-11-29 00:05:14,698 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:14,698 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1896240961] [2023-11-29 00:05:14,699 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:14,699 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:14,725 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:14,854 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-29 00:05:14,856 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:14,861 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-11-29 00:05:14,863 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:14,865 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 00:05:14,865 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:14,866 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1896240961] [2023-11-29 00:05:14,866 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1896240961] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 00:05:14,866 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 00:05:14,867 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-11-29 00:05:14,867 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [378227576] [2023-11-29 00:05:14,867 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 00:05:14,868 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-11-29 00:05:14,868 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:14,869 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-11-29 00:05:14,869 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-11-29 00:05:14,869 INFO L87 Difference]: Start difference. First operand 80 states and 109 transitions. Second operand has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-29 00:05:14,994 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:14,994 INFO L93 Difference]: Finished difference Result 199 states and 272 transitions. [2023-11-29 00:05:14,995 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-29 00:05:14,995 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 26 [2023-11-29 00:05:14,996 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:14,998 INFO L225 Difference]: With dead ends: 199 [2023-11-29 00:05:14,999 INFO L226 Difference]: Without dead ends: 121 [2023-11-29 00:05:15,000 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-11-29 00:05:15,002 INFO L413 NwaCegarLoop]: 100 mSDtfsCounter, 129 mSDsluCounter, 131 mSDsCounter, 0 mSdLazyCounter, 43 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 133 SdHoareTripleChecker+Valid, 231 SdHoareTripleChecker+Invalid, 51 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 43 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:15,003 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [133 Valid, 231 Invalid, 51 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 43 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-11-29 00:05:15,004 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2023-11-29 00:05:15,027 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 118. [2023-11-29 00:05:15,028 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 118 states, 81 states have (on average 1.4320987654320987) internal successors, (116), 94 states have internal predecessors, (116), 22 states have call successors, (22), 14 states have call predecessors, (22), 14 states have return successors, (23), 16 states have call predecessors, (23), 22 states have call successors, (23) [2023-11-29 00:05:15,031 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 118 states to 118 states and 161 transitions. [2023-11-29 00:05:15,031 INFO L78 Accepts]: Start accepts. Automaton has 118 states and 161 transitions. Word has length 26 [2023-11-29 00:05:15,032 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:15,032 INFO L495 AbstractCegarLoop]: Abstraction has 118 states and 161 transitions. [2023-11-29 00:05:15,032 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-11-29 00:05:15,032 INFO L276 IsEmpty]: Start isEmpty. Operand 118 states and 161 transitions. [2023-11-29 00:05:15,035 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-11-29 00:05:15,035 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:15,035 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:15,036 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-11-29 00:05:15,036 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:15,037 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:15,037 INFO L85 PathProgramCache]: Analyzing trace with hash 17155639, now seen corresponding path program 1 times [2023-11-29 00:05:15,037 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:15,037 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1224713314] [2023-11-29 00:05:15,038 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:15,038 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:15,061 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:15,195 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-11-29 00:05:15,197 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:15,200 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-11-29 00:05:15,202 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:15,219 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-11-29 00:05:15,220 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:15,220 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1224713314] [2023-11-29 00:05:15,220 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1224713314] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 00:05:15,220 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 00:05:15,221 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-11-29 00:05:15,221 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [897786438] [2023-11-29 00:05:15,221 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 00:05:15,222 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-11-29 00:05:15,222 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:15,223 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-11-29 00:05:15,223 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-11-29 00:05:15,223 INFO L87 Difference]: Start difference. First operand 118 states and 161 transitions. Second operand has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 00:05:15,493 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:15,494 INFO L93 Difference]: Finished difference Result 278 states and 386 transitions. [2023-11-29 00:05:15,495 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-11-29 00:05:15,495 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 29 [2023-11-29 00:05:15,496 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:15,499 INFO L225 Difference]: With dead ends: 278 [2023-11-29 00:05:15,499 INFO L226 Difference]: Without dead ends: 162 [2023-11-29 00:05:15,501 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2023-11-29 00:05:15,503 INFO L413 NwaCegarLoop]: 91 mSDtfsCounter, 58 mSDsluCounter, 303 mSDsCounter, 0 mSdLazyCounter, 142 mSolverCounterSat, 12 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 59 SdHoareTripleChecker+Valid, 394 SdHoareTripleChecker+Invalid, 154 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 12 IncrementalHoareTripleChecker+Valid, 142 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:15,504 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [59 Valid, 394 Invalid, 154 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [12 Valid, 142 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-29 00:05:15,505 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 162 states. [2023-11-29 00:05:15,534 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 162 to 158. [2023-11-29 00:05:15,535 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 158 states, 110 states have (on average 1.3363636363636364) internal successors, (147), 122 states have internal predecessors, (147), 26 states have call successors, (26), 21 states have call predecessors, (26), 21 states have return successors, (34), 24 states have call predecessors, (34), 26 states have call successors, (34) [2023-11-29 00:05:15,538 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 158 states to 158 states and 207 transitions. [2023-11-29 00:05:15,538 INFO L78 Accepts]: Start accepts. Automaton has 158 states and 207 transitions. Word has length 29 [2023-11-29 00:05:15,539 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:15,539 INFO L495 AbstractCegarLoop]: Abstraction has 158 states and 207 transitions. [2023-11-29 00:05:15,539 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-11-29 00:05:15,540 INFO L276 IsEmpty]: Start isEmpty. Operand 158 states and 207 transitions. [2023-11-29 00:05:15,542 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2023-11-29 00:05:15,542 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:15,543 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:15,543 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-11-29 00:05:15,543 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:15,544 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:15,544 INFO L85 PathProgramCache]: Analyzing trace with hash 488870070, now seen corresponding path program 1 times [2023-11-29 00:05:15,544 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:15,545 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1226489794] [2023-11-29 00:05:15,545 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:15,545 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:15,565 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:15,623 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-29 00:05:15,625 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:15,630 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-29 00:05:15,636 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:15,652 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:15,657 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:15,685 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:15,687 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:15,689 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2023-11-29 00:05:15,691 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:15,693 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 00:05:15,693 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:15,693 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1226489794] [2023-11-29 00:05:15,694 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1226489794] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 00:05:15,694 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 00:05:15,694 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-29 00:05:15,694 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1307647674] [2023-11-29 00:05:15,694 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 00:05:15,695 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-29 00:05:15,695 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:15,696 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-29 00:05:15,696 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-29 00:05:15,696 INFO L87 Difference]: Start difference. First operand 158 states and 207 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2023-11-29 00:05:15,947 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:15,947 INFO L93 Difference]: Finished difference Result 343 states and 462 transitions. [2023-11-29 00:05:15,947 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-29 00:05:15,948 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 49 [2023-11-29 00:05:15,948 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:15,951 INFO L225 Difference]: With dead ends: 343 [2023-11-29 00:05:15,951 INFO L226 Difference]: Without dead ends: 187 [2023-11-29 00:05:15,952 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2023-11-29 00:05:15,954 INFO L413 NwaCegarLoop]: 76 mSDtfsCounter, 63 mSDsluCounter, 165 mSDsCounter, 0 mSdLazyCounter, 151 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 68 SdHoareTripleChecker+Valid, 241 SdHoareTripleChecker+Invalid, 174 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 151 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:15,955 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [68 Valid, 241 Invalid, 174 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 151 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-29 00:05:15,956 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 187 states. [2023-11-29 00:05:15,998 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 187 to 183. [2023-11-29 00:05:15,999 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 183 states, 128 states have (on average 1.3203125) internal successors, (169), 140 states have internal predecessors, (169), 28 states have call successors, (28), 21 states have call predecessors, (28), 26 states have return successors, (41), 30 states have call predecessors, (41), 28 states have call successors, (41) [2023-11-29 00:05:16,001 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 183 states to 183 states and 238 transitions. [2023-11-29 00:05:16,002 INFO L78 Accepts]: Start accepts. Automaton has 183 states and 238 transitions. Word has length 49 [2023-11-29 00:05:16,002 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:16,002 INFO L495 AbstractCegarLoop]: Abstraction has 183 states and 238 transitions. [2023-11-29 00:05:16,003 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2023-11-29 00:05:16,003 INFO L276 IsEmpty]: Start isEmpty. Operand 183 states and 238 transitions. [2023-11-29 00:05:16,005 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2023-11-29 00:05:16,005 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:16,006 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:16,006 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-11-29 00:05:16,006 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:16,007 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:16,007 INFO L85 PathProgramCache]: Analyzing trace with hash -1316568264, now seen corresponding path program 1 times [2023-11-29 00:05:16,007 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:16,007 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [817154446] [2023-11-29 00:05:16,007 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:16,007 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:16,025 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,093 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-29 00:05:16,095 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,100 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-29 00:05:16,105 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,126 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:16,131 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,171 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:16,173 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,175 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2023-11-29 00:05:16,177 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,179 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 00:05:16,179 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:16,179 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [817154446] [2023-11-29 00:05:16,179 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [817154446] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 00:05:16,180 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 00:05:16,180 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-29 00:05:16,180 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1238725778] [2023-11-29 00:05:16,180 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 00:05:16,181 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-29 00:05:16,181 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:16,181 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-29 00:05:16,182 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-29 00:05:16,182 INFO L87 Difference]: Start difference. First operand 183 states and 238 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2023-11-29 00:05:16,432 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:16,432 INFO L93 Difference]: Finished difference Result 373 states and 499 transitions. [2023-11-29 00:05:16,433 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-11-29 00:05:16,433 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 49 [2023-11-29 00:05:16,433 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:16,436 INFO L225 Difference]: With dead ends: 373 [2023-11-29 00:05:16,436 INFO L226 Difference]: Without dead ends: 192 [2023-11-29 00:05:16,437 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2023-11-29 00:05:16,438 INFO L413 NwaCegarLoop]: 75 mSDtfsCounter, 69 mSDsluCounter, 165 mSDsCounter, 0 mSdLazyCounter, 154 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 75 SdHoareTripleChecker+Valid, 240 SdHoareTripleChecker+Invalid, 177 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 154 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:16,439 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [75 Valid, 240 Invalid, 177 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 154 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-11-29 00:05:16,440 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 192 states. [2023-11-29 00:05:16,463 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 192 to 185. [2023-11-29 00:05:16,463 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 185 states, 130 states have (on average 1.3153846153846154) internal successors, (171), 142 states have internal predecessors, (171), 28 states have call successors, (28), 21 states have call predecessors, (28), 26 states have return successors, (41), 30 states have call predecessors, (41), 28 states have call successors, (41) [2023-11-29 00:05:16,466 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 185 states to 185 states and 240 transitions. [2023-11-29 00:05:16,466 INFO L78 Accepts]: Start accepts. Automaton has 185 states and 240 transitions. Word has length 49 [2023-11-29 00:05:16,466 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:16,467 INFO L495 AbstractCegarLoop]: Abstraction has 185 states and 240 transitions. [2023-11-29 00:05:16,467 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2023-11-29 00:05:16,467 INFO L276 IsEmpty]: Start isEmpty. Operand 185 states and 240 transitions. [2023-11-29 00:05:16,468 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2023-11-29 00:05:16,468 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:16,469 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:16,469 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-11-29 00:05:16,469 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:16,470 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:16,470 INFO L85 PathProgramCache]: Analyzing trace with hash -1176019654, now seen corresponding path program 1 times [2023-11-29 00:05:16,470 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:16,470 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1953835206] [2023-11-29 00:05:16,470 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:16,470 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:16,484 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,552 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-11-29 00:05:16,554 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,561 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-11-29 00:05:16,567 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,586 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:16,590 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,606 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:16,608 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,611 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 42 [2023-11-29 00:05:16,613 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:16,614 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 00:05:16,615 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:16,615 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1953835206] [2023-11-29 00:05:16,615 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1953835206] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 00:05:16,615 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 00:05:16,615 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-11-29 00:05:16,615 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [423665979] [2023-11-29 00:05:16,616 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 00:05:16,616 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-11-29 00:05:16,616 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:16,617 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-11-29 00:05:16,617 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-11-29 00:05:16,617 INFO L87 Difference]: Start difference. First operand 185 states and 240 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2023-11-29 00:05:17,002 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:17,002 INFO L93 Difference]: Finished difference Result 560 states and 758 transitions. [2023-11-29 00:05:17,003 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-11-29 00:05:17,003 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) Word has length 49 [2023-11-29 00:05:17,003 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:17,007 INFO L225 Difference]: With dead ends: 560 [2023-11-29 00:05:17,007 INFO L226 Difference]: Without dead ends: 377 [2023-11-29 00:05:17,008 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 14 SyntacticMatches, 1 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2023-11-29 00:05:17,010 INFO L413 NwaCegarLoop]: 111 mSDtfsCounter, 221 mSDsluCounter, 142 mSDsCounter, 0 mSdLazyCounter, 203 mSolverCounterSat, 79 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 229 SdHoareTripleChecker+Valid, 253 SdHoareTripleChecker+Invalid, 282 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 79 IncrementalHoareTripleChecker+Valid, 203 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:17,010 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [229 Valid, 253 Invalid, 282 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [79 Valid, 203 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-11-29 00:05:17,011 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 377 states. [2023-11-29 00:05:17,057 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 377 to 375. [2023-11-29 00:05:17,059 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 375 states, 265 states have (on average 1.2792452830188679) internal successors, (339), 285 states have internal predecessors, (339), 59 states have call successors, (59), 48 states have call predecessors, (59), 50 states have return successors, (92), 59 states have call predecessors, (92), 59 states have call successors, (92) [2023-11-29 00:05:17,063 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 375 states to 375 states and 490 transitions. [2023-11-29 00:05:17,064 INFO L78 Accepts]: Start accepts. Automaton has 375 states and 490 transitions. Word has length 49 [2023-11-29 00:05:17,064 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:17,064 INFO L495 AbstractCegarLoop]: Abstraction has 375 states and 490 transitions. [2023-11-29 00:05:17,064 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 4 states have internal predecessors, (37), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2023-11-29 00:05:17,065 INFO L276 IsEmpty]: Start isEmpty. Operand 375 states and 490 transitions. [2023-11-29 00:05:17,066 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2023-11-29 00:05:17,066 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:17,067 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:17,067 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-11-29 00:05:17,067 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:17,067 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:17,068 INFO L85 PathProgramCache]: Analyzing trace with hash -986343276, now seen corresponding path program 1 times [2023-11-29 00:05:17,068 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:17,068 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1042200504] [2023-11-29 00:05:17,068 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:17,068 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:17,086 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:17,234 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:17,237 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:17,298 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:17,300 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:17,310 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-11-29 00:05:17,315 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:17,322 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:17,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:17,328 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:17,330 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:17,332 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2023-11-29 00:05:17,334 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:17,335 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-11-29 00:05:17,336 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:17,336 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1042200504] [2023-11-29 00:05:17,336 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1042200504] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 00:05:17,336 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-11-29 00:05:17,336 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2023-11-29 00:05:17,337 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1225151063] [2023-11-29 00:05:17,337 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 00:05:17,337 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-11-29 00:05:17,337 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:17,338 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-11-29 00:05:17,338 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2023-11-29 00:05:17,339 INFO L87 Difference]: Start difference. First operand 375 states and 490 transitions. Second operand has 8 states, 8 states have (on average 4.875) internal successors, (39), 6 states have internal predecessors, (39), 4 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) [2023-11-29 00:05:18,249 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:18,249 INFO L93 Difference]: Finished difference Result 1114 states and 1507 transitions. [2023-11-29 00:05:18,250 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 23 states. [2023-11-29 00:05:18,250 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.875) internal successors, (39), 6 states have internal predecessors, (39), 4 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) Word has length 53 [2023-11-29 00:05:18,251 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:18,258 INFO L225 Difference]: With dead ends: 1114 [2023-11-29 00:05:18,259 INFO L226 Difference]: Without dead ends: 821 [2023-11-29 00:05:18,261 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 38 GetRequests, 16 SyntacticMatches, 0 SemanticMatches, 22 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 119 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=126, Invalid=426, Unknown=0, NotChecked=0, Total=552 [2023-11-29 00:05:18,262 INFO L413 NwaCegarLoop]: 82 mSDtfsCounter, 483 mSDsluCounter, 260 mSDsCounter, 0 mSdLazyCounter, 490 mSolverCounterSat, 198 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 491 SdHoareTripleChecker+Valid, 342 SdHoareTripleChecker+Invalid, 688 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 198 IncrementalHoareTripleChecker+Valid, 490 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:18,263 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [491 Valid, 342 Invalid, 688 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [198 Valid, 490 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2023-11-29 00:05:18,265 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 821 states. [2023-11-29 00:05:18,338 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 821 to 695. [2023-11-29 00:05:18,340 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 695 states, 490 states have (on average 1.2755102040816326) internal successors, (625), 531 states have internal predecessors, (625), 109 states have call successors, (109), 83 states have call predecessors, (109), 95 states have return successors, (169), 110 states have call predecessors, (169), 109 states have call successors, (169) [2023-11-29 00:05:18,346 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 695 states to 695 states and 903 transitions. [2023-11-29 00:05:18,347 INFO L78 Accepts]: Start accepts. Automaton has 695 states and 903 transitions. Word has length 53 [2023-11-29 00:05:18,347 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:18,347 INFO L495 AbstractCegarLoop]: Abstraction has 695 states and 903 transitions. [2023-11-29 00:05:18,348 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.875) internal successors, (39), 6 states have internal predecessors, (39), 4 states have call successors, (7), 4 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) [2023-11-29 00:05:18,348 INFO L276 IsEmpty]: Start isEmpty. Operand 695 states and 903 transitions. [2023-11-29 00:05:18,351 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 98 [2023-11-29 00:05:18,351 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:18,351 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:18,351 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-11-29 00:05:18,351 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:18,352 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:18,352 INFO L85 PathProgramCache]: Analyzing trace with hash 205241619, now seen corresponding path program 1 times [2023-11-29 00:05:18,352 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:18,352 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [12524881] [2023-11-29 00:05:18,352 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:18,352 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:18,370 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,487 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:18,488 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,503 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 00:05:18,510 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,535 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:18,536 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,546 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-29 00:05:18,550 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,561 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:18,565 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,574 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:18,575 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,577 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 57 [2023-11-29 00:05:18,578 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,594 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2023-11-29 00:05:18,595 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,598 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 71 [2023-11-29 00:05:18,600 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,605 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:18,606 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,607 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:18,608 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,609 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 90 [2023-11-29 00:05:18,610 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,612 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 14 proven. 9 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2023-11-29 00:05:18,612 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:18,612 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [12524881] [2023-11-29 00:05:18,613 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [12524881] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-29 00:05:18,613 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1060138849] [2023-11-29 00:05:18,613 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:18,613 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 00:05:18,613 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 00:05:18,617 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-29 00:05:18,619 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-11-29 00:05:18,771 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:18,773 INFO L262 TraceCheckSpWp]: Trace formula consists of 358 conjuncts, 8 conjunts are in the unsatisfiable core [2023-11-29 00:05:18,784 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-29 00:05:18,998 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 24 proven. 9 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-11-29 00:05:18,998 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-29 00:05:19,272 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 15 proven. 8 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2023-11-29 00:05:19,272 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1060138849] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-29 00:05:19,273 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-29 00:05:19,273 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 6, 6] total 15 [2023-11-29 00:05:19,273 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1902701282] [2023-11-29 00:05:19,273 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-29 00:05:19,275 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2023-11-29 00:05:19,275 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:19,276 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2023-11-29 00:05:19,276 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=36, Invalid=174, Unknown=0, NotChecked=0, Total=210 [2023-11-29 00:05:19,277 INFO L87 Difference]: Start difference. First operand 695 states and 903 transitions. Second operand has 15 states, 12 states have (on average 9.166666666666666) internal successors, (110), 10 states have internal predecessors, (110), 5 states have call successors, (29), 7 states have call predecessors, (29), 6 states have return successors, (23), 7 states have call predecessors, (23), 5 states have call successors, (23) [2023-11-29 00:05:20,936 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:20,937 INFO L93 Difference]: Finished difference Result 1578 states and 2146 transitions. [2023-11-29 00:05:20,937 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 39 states. [2023-11-29 00:05:20,938 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 12 states have (on average 9.166666666666666) internal successors, (110), 10 states have internal predecessors, (110), 5 states have call successors, (29), 7 states have call predecessors, (29), 6 states have return successors, (23), 7 states have call predecessors, (23), 5 states have call successors, (23) Word has length 97 [2023-11-29 00:05:20,939 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:20,948 INFO L225 Difference]: With dead ends: 1578 [2023-11-29 00:05:20,948 INFO L226 Difference]: Without dead ends: 961 [2023-11-29 00:05:20,953 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 274 GetRequests, 224 SyntacticMatches, 4 SemanticMatches, 46 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 609 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=403, Invalid=1853, Unknown=0, NotChecked=0, Total=2256 [2023-11-29 00:05:20,954 INFO L413 NwaCegarLoop]: 132 mSDtfsCounter, 375 mSDsluCounter, 734 mSDsCounter, 0 mSdLazyCounter, 1283 mSolverCounterSat, 179 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 381 SdHoareTripleChecker+Valid, 866 SdHoareTripleChecker+Invalid, 1462 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 179 IncrementalHoareTripleChecker+Valid, 1283 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:20,954 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [381 Valid, 866 Invalid, 1462 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [179 Valid, 1283 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2023-11-29 00:05:20,956 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 961 states. [2023-11-29 00:05:21,059 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 961 to 778. [2023-11-29 00:05:21,062 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 778 states, 541 states have (on average 1.2458410351201479) internal successors, (674), 594 states have internal predecessors, (674), 126 states have call successors, (126), 104 states have call predecessors, (126), 110 states have return successors, (178), 116 states have call predecessors, (178), 126 states have call successors, (178) [2023-11-29 00:05:21,069 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 778 states to 778 states and 978 transitions. [2023-11-29 00:05:21,070 INFO L78 Accepts]: Start accepts. Automaton has 778 states and 978 transitions. Word has length 97 [2023-11-29 00:05:21,071 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:21,071 INFO L495 AbstractCegarLoop]: Abstraction has 778 states and 978 transitions. [2023-11-29 00:05:21,071 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 12 states have (on average 9.166666666666666) internal successors, (110), 10 states have internal predecessors, (110), 5 states have call successors, (29), 7 states have call predecessors, (29), 6 states have return successors, (23), 7 states have call predecessors, (23), 5 states have call successors, (23) [2023-11-29 00:05:21,072 INFO L276 IsEmpty]: Start isEmpty. Operand 778 states and 978 transitions. [2023-11-29 00:05:21,078 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 175 [2023-11-29 00:05:21,078 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:21,079 INFO L195 NwaCegarLoop]: trace histogram [5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:21,087 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-11-29 00:05:21,279 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 00:05:21,280 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:21,280 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:21,281 INFO L85 PathProgramCache]: Analyzing trace with hash 657996977, now seen corresponding path program 1 times [2023-11-29 00:05:21,281 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:21,281 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [671404645] [2023-11-29 00:05:21,281 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:21,281 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:21,310 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,450 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:21,451 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,463 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 00:05:21,469 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,478 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:21,479 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,485 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-29 00:05:21,487 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,491 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:21,494 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,497 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:21,499 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,500 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2023-11-29 00:05:21,506 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,516 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:21,517 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,518 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 00:05:21,519 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,521 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:21,522 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,525 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:21,527 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,528 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:21,529 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,530 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 99 [2023-11-29 00:05:21,534 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,602 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:21,603 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,604 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 00:05:21,606 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,623 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:21,624 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,626 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 126 [2023-11-29 00:05:21,627 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,628 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 136 [2023-11-29 00:05:21,630 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,631 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 143 [2023-11-29 00:05:21,635 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,639 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:21,641 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,645 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:21,646 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,648 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 167 [2023-11-29 00:05:21,649 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,650 INFO L134 CoverageAnalysis]: Checked inductivity of 184 backedges. 67 proven. 1 refuted. 0 times theorem prover too weak. 116 trivial. 0 not checked. [2023-11-29 00:05:21,651 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:21,651 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [671404645] [2023-11-29 00:05:21,651 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [671404645] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-29 00:05:21,651 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1625214560] [2023-11-29 00:05:21,651 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:21,651 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 00:05:21,652 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 00:05:21,653 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-29 00:05:21,656 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-11-29 00:05:21,818 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:21,822 INFO L262 TraceCheckSpWp]: Trace formula consists of 571 conjuncts, 12 conjunts are in the unsatisfiable core [2023-11-29 00:05:21,831 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-29 00:05:22,050 INFO L134 CoverageAnalysis]: Checked inductivity of 184 backedges. 135 proven. 3 refuted. 0 times theorem prover too weak. 46 trivial. 0 not checked. [2023-11-29 00:05:22,050 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-29 00:05:22,590 INFO L134 CoverageAnalysis]: Checked inductivity of 184 backedges. 67 proven. 34 refuted. 0 times theorem prover too weak. 83 trivial. 0 not checked. [2023-11-29 00:05:22,591 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1625214560] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-29 00:05:22,591 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-29 00:05:22,591 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9, 10] total 23 [2023-11-29 00:05:22,591 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [361659386] [2023-11-29 00:05:22,591 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-29 00:05:22,593 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2023-11-29 00:05:22,593 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:22,594 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2023-11-29 00:05:22,594 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=100, Invalid=406, Unknown=0, NotChecked=0, Total=506 [2023-11-29 00:05:22,595 INFO L87 Difference]: Start difference. First operand 778 states and 978 transitions. Second operand has 23 states, 22 states have (on average 7.590909090909091) internal successors, (167), 18 states have internal predecessors, (167), 10 states have call successors, (42), 8 states have call predecessors, (42), 10 states have return successors, (42), 10 states have call predecessors, (42), 10 states have call successors, (42) [2023-11-29 00:05:25,042 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:25,042 INFO L93 Difference]: Finished difference Result 2393 states and 3161 transitions. [2023-11-29 00:05:25,043 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 47 states. [2023-11-29 00:05:25,043 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 22 states have (on average 7.590909090909091) internal successors, (167), 18 states have internal predecessors, (167), 10 states have call successors, (42), 8 states have call predecessors, (42), 10 states have return successors, (42), 10 states have call predecessors, (42), 10 states have call successors, (42) Word has length 174 [2023-11-29 00:05:25,044 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:25,058 INFO L225 Difference]: With dead ends: 2393 [2023-11-29 00:05:25,058 INFO L226 Difference]: Without dead ends: 1617 [2023-11-29 00:05:25,065 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 458 GetRequests, 389 SyntacticMatches, 3 SemanticMatches, 66 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1135 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=855, Invalid=3701, Unknown=0, NotChecked=0, Total=4556 [2023-11-29 00:05:25,066 INFO L413 NwaCegarLoop]: 105 mSDtfsCounter, 1423 mSDsluCounter, 660 mSDsCounter, 0 mSdLazyCounter, 1909 mSolverCounterSat, 713 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1423 SdHoareTripleChecker+Valid, 765 SdHoareTripleChecker+Invalid, 2622 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 713 IncrementalHoareTripleChecker+Valid, 1909 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.5s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:25,066 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1423 Valid, 765 Invalid, 2622 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [713 Valid, 1909 Invalid, 0 Unknown, 0 Unchecked, 1.5s Time] [2023-11-29 00:05:25,069 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1617 states. [2023-11-29 00:05:25,271 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1617 to 1583. [2023-11-29 00:05:25,275 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1583 states, 1112 states have (on average 1.185251798561151) internal successors, (1318), 1202 states have internal predecessors, (1318), 256 states have call successors, (256), 219 states have call predecessors, (256), 214 states have return successors, (342), 228 states have call predecessors, (342), 256 states have call successors, (342) [2023-11-29 00:05:25,286 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1583 states to 1583 states and 1916 transitions. [2023-11-29 00:05:25,287 INFO L78 Accepts]: Start accepts. Automaton has 1583 states and 1916 transitions. Word has length 174 [2023-11-29 00:05:25,288 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:25,288 INFO L495 AbstractCegarLoop]: Abstraction has 1583 states and 1916 transitions. [2023-11-29 00:05:25,288 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 22 states have (on average 7.590909090909091) internal successors, (167), 18 states have internal predecessors, (167), 10 states have call successors, (42), 8 states have call predecessors, (42), 10 states have return successors, (42), 10 states have call predecessors, (42), 10 states have call successors, (42) [2023-11-29 00:05:25,288 INFO L276 IsEmpty]: Start isEmpty. Operand 1583 states and 1916 transitions. [2023-11-29 00:05:25,297 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 192 [2023-11-29 00:05:25,297 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:25,297 INFO L195 NwaCegarLoop]: trace histogram [7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:25,305 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2023-11-29 00:05:25,498 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-11-29 00:05:25,498 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:25,499 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:25,499 INFO L85 PathProgramCache]: Analyzing trace with hash -1273784511, now seen corresponding path program 1 times [2023-11-29 00:05:25,499 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:25,499 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1689145795] [2023-11-29 00:05:25,499 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:25,499 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:25,524 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,761 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:25,763 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,775 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 00:05:25,781 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,801 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:25,802 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,809 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-29 00:05:25,813 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,822 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:25,825 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,834 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:25,836 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,837 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2023-11-29 00:05:25,843 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,900 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:25,901 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,902 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 00:05:25,903 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,905 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:25,908 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,915 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:25,917 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,920 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:25,921 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,923 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-11-29 00:05:25,924 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,948 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 102 [2023-11-29 00:05:25,950 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,951 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 108 [2023-11-29 00:05:25,956 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,961 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:25,962 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,963 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 00:05:25,964 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,966 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:25,967 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,968 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-29 00:05:25,968 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,970 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 140 [2023-11-29 00:05:25,971 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,972 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 153 [2023-11-29 00:05:25,973 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,974 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 160 [2023-11-29 00:05:25,977 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,981 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:25,983 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,987 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:25,988 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,990 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 184 [2023-11-29 00:05:25,991 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:25,993 INFO L134 CoverageAnalysis]: Checked inductivity of 215 backedges. 81 proven. 40 refuted. 0 times theorem prover too weak. 94 trivial. 0 not checked. [2023-11-29 00:05:25,993 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:25,993 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1689145795] [2023-11-29 00:05:25,993 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1689145795] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-29 00:05:25,994 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [788440736] [2023-11-29 00:05:25,994 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:25,994 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 00:05:25,994 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 00:05:25,995 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-29 00:05:25,998 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2023-11-29 00:05:26,203 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:26,207 INFO L262 TraceCheckSpWp]: Trace formula consists of 617 conjuncts, 3 conjunts are in the unsatisfiable core [2023-11-29 00:05:26,216 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-29 00:05:26,259 INFO L134 CoverageAnalysis]: Checked inductivity of 215 backedges. 91 proven. 0 refuted. 0 times theorem prover too weak. 124 trivial. 0 not checked. [2023-11-29 00:05:26,259 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2023-11-29 00:05:26,260 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [788440736] provided 1 perfect and 0 imperfect interpolant sequences [2023-11-29 00:05:26,260 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2023-11-29 00:05:26,260 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [12] total 13 [2023-11-29 00:05:26,260 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2090685752] [2023-11-29 00:05:26,260 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-11-29 00:05:26,261 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-11-29 00:05:26,261 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:26,262 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-11-29 00:05:26,263 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=26, Invalid=130, Unknown=0, NotChecked=0, Total=156 [2023-11-29 00:05:26,263 INFO L87 Difference]: Start difference. First operand 1583 states and 1916 transitions. Second operand has 3 states, 3 states have (on average 30.0) internal successors, (90), 3 states have internal predecessors, (90), 3 states have call successors, (19), 3 states have call predecessors, (19), 3 states have return successors, (18), 3 states have call predecessors, (18), 3 states have call successors, (18) [2023-11-29 00:05:26,492 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:26,492 INFO L93 Difference]: Finished difference Result 3188 states and 3854 transitions. [2023-11-29 00:05:26,492 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-11-29 00:05:26,493 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 30.0) internal successors, (90), 3 states have internal predecessors, (90), 3 states have call successors, (19), 3 states have call predecessors, (19), 3 states have return successors, (18), 3 states have call predecessors, (18), 3 states have call successors, (18) Word has length 191 [2023-11-29 00:05:26,494 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:26,507 INFO L225 Difference]: With dead ends: 3188 [2023-11-29 00:05:26,507 INFO L226 Difference]: Without dead ends: 1607 [2023-11-29 00:05:26,514 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 254 GetRequests, 243 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 18 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=26, Invalid=130, Unknown=0, NotChecked=0, Total=156 [2023-11-29 00:05:26,515 INFO L413 NwaCegarLoop]: 120 mSDtfsCounter, 32 mSDsluCounter, 92 mSDsCounter, 0 mSdLazyCounter, 37 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 32 SdHoareTripleChecker+Valid, 212 SdHoareTripleChecker+Invalid, 37 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 37 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:26,515 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [32 Valid, 212 Invalid, 37 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 37 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-11-29 00:05:26,518 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1607 states. [2023-11-29 00:05:26,706 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1607 to 1583. [2023-11-29 00:05:26,710 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1583 states, 1112 states have (on average 1.1744604316546763) internal successors, (1306), 1202 states have internal predecessors, (1306), 256 states have call successors, (256), 219 states have call predecessors, (256), 214 states have return successors, (300), 228 states have call predecessors, (300), 256 states have call successors, (300) [2023-11-29 00:05:26,722 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1583 states to 1583 states and 1862 transitions. [2023-11-29 00:05:26,723 INFO L78 Accepts]: Start accepts. Automaton has 1583 states and 1862 transitions. Word has length 191 [2023-11-29 00:05:26,724 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:26,724 INFO L495 AbstractCegarLoop]: Abstraction has 1583 states and 1862 transitions. [2023-11-29 00:05:26,724 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 30.0) internal successors, (90), 3 states have internal predecessors, (90), 3 states have call successors, (19), 3 states have call predecessors, (19), 3 states have return successors, (18), 3 states have call predecessors, (18), 3 states have call successors, (18) [2023-11-29 00:05:26,724 INFO L276 IsEmpty]: Start isEmpty. Operand 1583 states and 1862 transitions. [2023-11-29 00:05:26,732 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 189 [2023-11-29 00:05:26,732 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:26,732 INFO L195 NwaCegarLoop]: trace histogram [7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:26,740 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2023-11-29 00:05:26,933 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 00:05:26,933 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:26,934 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:26,934 INFO L85 PathProgramCache]: Analyzing trace with hash -1726904015, now seen corresponding path program 1 times [2023-11-29 00:05:26,934 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:26,934 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1823518497] [2023-11-29 00:05:26,934 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:26,934 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:26,955 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,140 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:27,141 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,150 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 00:05:27,154 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,169 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:27,170 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,176 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-29 00:05:27,179 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,186 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:27,188 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,195 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:27,195 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,197 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2023-11-29 00:05:27,201 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,246 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:27,247 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,248 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 00:05:27,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,251 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:27,253 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,258 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:27,259 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,262 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:27,263 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,264 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-11-29 00:05:27,265 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,285 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 102 [2023-11-29 00:05:27,286 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,287 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 108 [2023-11-29 00:05:27,290 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,293 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:27,295 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,296 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 00:05:27,297 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,298 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:27,299 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,299 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-29 00:05:27,300 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,301 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 140 [2023-11-29 00:05:27,302 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,303 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 150 [2023-11-29 00:05:27,304 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,304 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 157 [2023-11-29 00:05:27,307 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,310 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:27,312 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,314 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:27,315 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,316 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 181 [2023-11-29 00:05:27,317 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,318 INFO L134 CoverageAnalysis]: Checked inductivity of 215 backedges. 81 proven. 40 refuted. 0 times theorem prover too weak. 94 trivial. 0 not checked. [2023-11-29 00:05:27,319 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:27,319 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1823518497] [2023-11-29 00:05:27,319 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1823518497] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-29 00:05:27,319 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1753800085] [2023-11-29 00:05:27,319 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:27,320 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 00:05:27,320 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 00:05:27,323 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-29 00:05:27,324 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2023-11-29 00:05:27,457 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:27,460 INFO L262 TraceCheckSpWp]: Trace formula consists of 611 conjuncts, 12 conjunts are in the unsatisfiable core [2023-11-29 00:05:27,466 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-29 00:05:27,630 INFO L134 CoverageAnalysis]: Checked inductivity of 215 backedges. 166 proven. 9 refuted. 0 times theorem prover too weak. 40 trivial. 0 not checked. [2023-11-29 00:05:27,630 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-29 00:05:28,268 INFO L134 CoverageAnalysis]: Checked inductivity of 215 backedges. 87 proven. 50 refuted. 0 times theorem prover too weak. 78 trivial. 0 not checked. [2023-11-29 00:05:28,269 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1753800085] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-29 00:05:28,269 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-29 00:05:28,269 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 8, 8] total 22 [2023-11-29 00:05:28,270 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [292573398] [2023-11-29 00:05:28,270 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-29 00:05:28,271 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2023-11-29 00:05:28,271 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:28,273 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2023-11-29 00:05:28,273 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=68, Invalid=394, Unknown=0, NotChecked=0, Total=462 [2023-11-29 00:05:28,274 INFO L87 Difference]: Start difference. First operand 1583 states and 1862 transitions. Second operand has 22 states, 19 states have (on average 10.421052631578947) internal successors, (198), 15 states have internal predecessors, (198), 6 states have call successors, (54), 8 states have call predecessors, (54), 11 states have return successors, (47), 9 states have call predecessors, (47), 6 states have call successors, (47) [2023-11-29 00:05:30,135 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:30,136 INFO L93 Difference]: Finished difference Result 3094 states and 3660 transitions. [2023-11-29 00:05:30,136 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 30 states. [2023-11-29 00:05:30,137 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 19 states have (on average 10.421052631578947) internal successors, (198), 15 states have internal predecessors, (198), 6 states have call successors, (54), 8 states have call predecessors, (54), 11 states have return successors, (47), 9 states have call predecessors, (47), 6 states have call successors, (47) Word has length 188 [2023-11-29 00:05:30,137 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:30,147 INFO L225 Difference]: With dead ends: 3094 [2023-11-29 00:05:30,147 INFO L226 Difference]: Without dead ends: 1665 [2023-11-29 00:05:30,152 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 477 GetRequests, 431 SyntacticMatches, 1 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 392 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=399, Invalid=1763, Unknown=0, NotChecked=0, Total=2162 [2023-11-29 00:05:30,153 INFO L413 NwaCegarLoop]: 30 mSDtfsCounter, 417 mSDsluCounter, 281 mSDsCounter, 0 mSdLazyCounter, 1934 mSolverCounterSat, 156 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 422 SdHoareTripleChecker+Valid, 311 SdHoareTripleChecker+Invalid, 2090 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 156 IncrementalHoareTripleChecker+Valid, 1934 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.2s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:30,153 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [422 Valid, 311 Invalid, 2090 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [156 Valid, 1934 Invalid, 0 Unknown, 0 Unchecked, 1.2s Time] [2023-11-29 00:05:30,156 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1665 states. [2023-11-29 00:05:30,298 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1665 to 1531. [2023-11-29 00:05:30,300 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1531 states, 1078 states have (on average 1.1697588126159555) internal successors, (1261), 1158 states have internal predecessors, (1261), 234 states have call successors, (234), 215 states have call predecessors, (234), 218 states have return successors, (278), 222 states have call predecessors, (278), 234 states have call successors, (278) [2023-11-29 00:05:30,306 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1531 states to 1531 states and 1773 transitions. [2023-11-29 00:05:30,307 INFO L78 Accepts]: Start accepts. Automaton has 1531 states and 1773 transitions. Word has length 188 [2023-11-29 00:05:30,307 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:30,307 INFO L495 AbstractCegarLoop]: Abstraction has 1531 states and 1773 transitions. [2023-11-29 00:05:30,307 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 19 states have (on average 10.421052631578947) internal successors, (198), 15 states have internal predecessors, (198), 6 states have call successors, (54), 8 states have call predecessors, (54), 11 states have return successors, (47), 9 states have call predecessors, (47), 6 states have call successors, (47) [2023-11-29 00:05:30,308 INFO L276 IsEmpty]: Start isEmpty. Operand 1531 states and 1773 transitions. [2023-11-29 00:05:30,312 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 190 [2023-11-29 00:05:30,313 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:30,313 INFO L195 NwaCegarLoop]: trace histogram [7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:30,319 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2023-11-29 00:05:30,513 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 00:05:30,514 INFO L420 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:30,514 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:30,514 INFO L85 PathProgramCache]: Analyzing trace with hash -1959727266, now seen corresponding path program 1 times [2023-11-29 00:05:30,515 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:30,515 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1493182528] [2023-11-29 00:05:30,515 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:30,515 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:30,539 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,646 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:30,647 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,658 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 00:05:30,661 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,666 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:30,667 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,674 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-29 00:05:30,676 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,679 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:30,681 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,683 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:30,684 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,685 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2023-11-29 00:05:30,687 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,692 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:30,693 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,694 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 00:05:30,694 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,695 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:30,697 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,699 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:30,700 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,701 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:30,701 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,702 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-11-29 00:05:30,703 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,711 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 103 [2023-11-29 00:05:30,712 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,723 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 109 [2023-11-29 00:05:30,727 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,731 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:30,732 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,733 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 00:05:30,734 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,735 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:30,735 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,736 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-29 00:05:30,737 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,738 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 141 [2023-11-29 00:05:30,739 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,741 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 151 [2023-11-29 00:05:30,741 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,742 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 158 [2023-11-29 00:05:30,745 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,765 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:30,769 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,843 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:30,845 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,867 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 182 [2023-11-29 00:05:30,868 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:30,869 INFO L134 CoverageAnalysis]: Checked inductivity of 216 backedges. 74 proven. 3 refuted. 0 times theorem prover too weak. 139 trivial. 0 not checked. [2023-11-29 00:05:30,870 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:30,870 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1493182528] [2023-11-29 00:05:30,870 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1493182528] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-29 00:05:30,871 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1809478559] [2023-11-29 00:05:30,871 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:30,871 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 00:05:30,871 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 00:05:30,873 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-29 00:05:30,886 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2023-11-29 00:05:31,039 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:31,043 INFO L262 TraceCheckSpWp]: Trace formula consists of 611 conjuncts, 18 conjunts are in the unsatisfiable core [2023-11-29 00:05:31,048 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-29 00:05:31,341 INFO L134 CoverageAnalysis]: Checked inductivity of 216 backedges. 117 proven. 22 refuted. 0 times theorem prover too weak. 77 trivial. 0 not checked. [2023-11-29 00:05:31,341 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-29 00:05:31,922 INFO L134 CoverageAnalysis]: Checked inductivity of 216 backedges. 89 proven. 38 refuted. 0 times theorem prover too weak. 89 trivial. 0 not checked. [2023-11-29 00:05:31,923 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1809478559] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-29 00:05:31,923 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-29 00:05:31,923 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 8, 13] total 27 [2023-11-29 00:05:31,923 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1216681927] [2023-11-29 00:05:31,923 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-29 00:05:31,924 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2023-11-29 00:05:31,924 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:31,926 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2023-11-29 00:05:31,926 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=116, Invalid=586, Unknown=0, NotChecked=0, Total=702 [2023-11-29 00:05:31,926 INFO L87 Difference]: Start difference. First operand 1531 states and 1773 transitions. Second operand has 27 states, 26 states have (on average 8.192307692307692) internal successors, (213), 21 states have internal predecessors, (213), 13 states have call successors, (55), 12 states have call predecessors, (55), 15 states have return successors, (56), 15 states have call predecessors, (56), 13 states have call successors, (56) [2023-11-29 00:05:35,172 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:35,172 INFO L93 Difference]: Finished difference Result 3454 states and 4058 transitions. [2023-11-29 00:05:35,173 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 62 states. [2023-11-29 00:05:35,173 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 26 states have (on average 8.192307692307692) internal successors, (213), 21 states have internal predecessors, (213), 13 states have call successors, (55), 12 states have call predecessors, (55), 15 states have return successors, (56), 15 states have call predecessors, (56), 13 states have call successors, (56) Word has length 189 [2023-11-29 00:05:35,174 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:35,186 INFO L225 Difference]: With dead ends: 3454 [2023-11-29 00:05:35,186 INFO L226 Difference]: Without dead ends: 2085 [2023-11-29 00:05:35,195 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 526 GetRequests, 434 SyntacticMatches, 7 SemanticMatches, 85 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2091 ImplicationChecksByTransitivity, 1.2s TimeCoverageRelationStatistics Valid=1361, Invalid=6121, Unknown=0, NotChecked=0, Total=7482 [2023-11-29 00:05:35,196 INFO L413 NwaCegarLoop]: 104 mSDtfsCounter, 1554 mSDsluCounter, 898 mSDsCounter, 0 mSdLazyCounter, 4483 mSolverCounterSat, 780 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1554 SdHoareTripleChecker+Valid, 1002 SdHoareTripleChecker+Invalid, 5263 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 780 IncrementalHoareTripleChecker+Valid, 4483 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.1s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:35,196 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1554 Valid, 1002 Invalid, 5263 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [780 Valid, 4483 Invalid, 0 Unknown, 0 Unchecked, 2.1s Time] [2023-11-29 00:05:35,199 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2085 states. [2023-11-29 00:05:35,400 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2085 to 1895. [2023-11-29 00:05:35,404 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1895 states, 1337 states have (on average 1.169035153328347) internal successors, (1563), 1424 states have internal predecessors, (1563), 293 states have call successors, (293), 270 states have call predecessors, (293), 264 states have return successors, (332), 272 states have call predecessors, (332), 293 states have call successors, (332) [2023-11-29 00:05:35,413 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1895 states to 1895 states and 2188 transitions. [2023-11-29 00:05:35,413 INFO L78 Accepts]: Start accepts. Automaton has 1895 states and 2188 transitions. Word has length 189 [2023-11-29 00:05:35,414 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:35,414 INFO L495 AbstractCegarLoop]: Abstraction has 1895 states and 2188 transitions. [2023-11-29 00:05:35,415 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 26 states have (on average 8.192307692307692) internal successors, (213), 21 states have internal predecessors, (213), 13 states have call successors, (55), 12 states have call predecessors, (55), 15 states have return successors, (56), 15 states have call predecessors, (56), 13 states have call successors, (56) [2023-11-29 00:05:35,415 INFO L276 IsEmpty]: Start isEmpty. Operand 1895 states and 2188 transitions. [2023-11-29 00:05:35,423 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 220 [2023-11-29 00:05:35,423 INFO L187 NwaCegarLoop]: Found error trace [2023-11-29 00:05:35,423 INFO L195 NwaCegarLoop]: trace histogram [8, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:35,429 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2023-11-29 00:05:35,629 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 00:05:35,630 INFO L420 AbstractCegarLoop]: === Iteration 14 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-11-29 00:05:35,630 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-11-29 00:05:35,630 INFO L85 PathProgramCache]: Analyzing trace with hash -1136047169, now seen corresponding path program 1 times [2023-11-29 00:05:35,630 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-11-29 00:05:35,630 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [542582398] [2023-11-29 00:05:35,630 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:35,630 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-11-29 00:05:35,648 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,819 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:35,819 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,827 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-11-29 00:05:35,831 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,848 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:35,848 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,854 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-11-29 00:05:35,856 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,858 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:35,860 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,862 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:35,863 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,865 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2023-11-29 00:05:35,868 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,873 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:35,873 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,874 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 00:05:35,875 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,876 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:35,877 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,880 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-11-29 00:05:35,880 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,881 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:35,882 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,882 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-11-29 00:05:35,883 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,889 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 103 [2023-11-29 00:05:35,890 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,891 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 109 [2023-11-29 00:05:35,893 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,897 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:35,897 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,898 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2023-11-29 00:05:35,899 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,900 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-11-29 00:05:35,901 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,902 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-11-29 00:05:35,902 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,903 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 141 [2023-11-29 00:05:35,904 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,905 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 147 [2023-11-29 00:05:35,906 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,907 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 156 [2023-11-29 00:05:35,909 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,931 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-11-29 00:05:35,931 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,933 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 171 [2023-11-29 00:05:35,934 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,946 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 181 [2023-11-29 00:05:35,947 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,948 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 188 [2023-11-29 00:05:35,950 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,952 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-11-29 00:05:35,954 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,956 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-11-29 00:05:35,957 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,958 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 212 [2023-11-29 00:05:35,959 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:35,961 INFO L134 CoverageAnalysis]: Checked inductivity of 308 backedges. 91 proven. 26 refuted. 0 times theorem prover too weak. 191 trivial. 0 not checked. [2023-11-29 00:05:35,961 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-11-29 00:05:35,961 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [542582398] [2023-11-29 00:05:35,961 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [542582398] provided 0 perfect and 1 imperfect interpolant sequences [2023-11-29 00:05:35,961 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [563085583] [2023-11-29 00:05:35,961 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-11-29 00:05:35,961 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-11-29 00:05:35,962 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 [2023-11-29 00:05:35,962 INFO L229 MonitoredProcess]: Starting monitored process 7 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-11-29 00:05:35,965 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2023-11-29 00:05:36,121 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-11-29 00:05:36,125 INFO L262 TraceCheckSpWp]: Trace formula consists of 691 conjuncts, 20 conjunts are in the unsatisfiable core [2023-11-29 00:05:36,130 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-11-29 00:05:36,404 INFO L134 CoverageAnalysis]: Checked inductivity of 308 backedges. 188 proven. 13 refuted. 0 times theorem prover too weak. 107 trivial. 0 not checked. [2023-11-29 00:05:36,404 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-11-29 00:05:36,956 INFO L134 CoverageAnalysis]: Checked inductivity of 308 backedges. 118 proven. 63 refuted. 0 times theorem prover too weak. 127 trivial. 0 not checked. [2023-11-29 00:05:36,956 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [563085583] provided 0 perfect and 2 imperfect interpolant sequences [2023-11-29 00:05:36,956 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-11-29 00:05:36,956 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 10, 14] total 28 [2023-11-29 00:05:36,957 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [489106987] [2023-11-29 00:05:36,957 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-11-29 00:05:36,958 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2023-11-29 00:05:36,958 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-11-29 00:05:36,959 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2023-11-29 00:05:36,960 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=146, Invalid=610, Unknown=0, NotChecked=0, Total=756 [2023-11-29 00:05:36,960 INFO L87 Difference]: Start difference. First operand 1895 states and 2188 transitions. Second operand has 28 states, 28 states have (on average 8.178571428571429) internal successors, (229), 23 states have internal predecessors, (229), 13 states have call successors, (54), 11 states have call predecessors, (54), 15 states have return successors, (56), 13 states have call predecessors, (56), 13 states have call successors, (56) [2023-11-29 00:05:38,769 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-11-29 00:05:38,769 INFO L93 Difference]: Finished difference Result 3412 states and 4026 transitions. [2023-11-29 00:05:38,769 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 42 states. [2023-11-29 00:05:38,770 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 28 states have (on average 8.178571428571429) internal successors, (229), 23 states have internal predecessors, (229), 13 states have call successors, (54), 11 states have call predecessors, (54), 15 states have return successors, (56), 13 states have call predecessors, (56), 13 states have call successors, (56) Word has length 219 [2023-11-29 00:05:38,770 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-11-29 00:05:38,771 INFO L225 Difference]: With dead ends: 3412 [2023-11-29 00:05:38,771 INFO L226 Difference]: Without dead ends: 0 [2023-11-29 00:05:38,778 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 548 GetRequests, 480 SyntacticMatches, 6 SemanticMatches, 62 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 954 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=909, Invalid=3123, Unknown=0, NotChecked=0, Total=4032 [2023-11-29 00:05:38,778 INFO L413 NwaCegarLoop]: 48 mSDtfsCounter, 850 mSDsluCounter, 444 mSDsCounter, 0 mSdLazyCounter, 2602 mSolverCounterSat, 383 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 857 SdHoareTripleChecker+Valid, 492 SdHoareTripleChecker+Invalid, 2985 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 383 IncrementalHoareTripleChecker+Valid, 2602 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2023-11-29 00:05:38,778 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [857 Valid, 492 Invalid, 2985 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [383 Valid, 2602 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2023-11-29 00:05:38,779 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-11-29 00:05:38,779 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-11-29 00:05:38,779 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-11-29 00:05:38,779 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-11-29 00:05:38,780 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 219 [2023-11-29 00:05:38,780 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-11-29 00:05:38,780 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-11-29 00:05:38,780 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 28 states have (on average 8.178571428571429) internal successors, (229), 23 states have internal predecessors, (229), 13 states have call successors, (54), 11 states have call predecessors, (54), 15 states have return successors, (56), 13 states have call predecessors, (56), 13 states have call successors, (56) [2023-11-29 00:05:38,780 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-11-29 00:05:38,780 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-11-29 00:05:38,782 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-11-29 00:05:38,787 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2023-11-29 00:05:38,983 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2023-11-29 00:05:38,985 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-11-29 00:05:52,677 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 325 332) no Hoare annotation was computed. [2023-11-29 00:05:52,678 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 325 332) the Hoare annotation is: (let ((.cse4 (< ~methaneLevelCritical~0 1)) (.cse5 (< 1 ~waterLevel~0)) (.cse6 (< ~switchedOnBeforeTS~0 1)) (.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (not (= 2 ~waterLevel~0))) (.cse7 (not (= ~methaneLevelCritical~0 0))) (.cse2 (< |old(~pumpRunning~0)| 1)) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse5 .cse6 .cse2 .cse3 .cse4) (or .cse0 .cse5 .cse6 .cse7 .cse2 .cse3) (or .cse0 .cse1 .cse7 .cse2 .cse3))) [2023-11-29 00:05:52,678 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 215 221) no Hoare annotation was computed. [2023-11-29 00:05:52,678 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 215 221) the Hoare annotation is: true [2023-11-29 00:05:52,678 INFO L899 garLoopResultBuilder]: For program point L417(lines 417 421) no Hoare annotation was computed. [2023-11-29 00:05:52,678 INFO L899 garLoopResultBuilder]: For program point L417-2(lines 417 421) no Hoare annotation was computed. [2023-11-29 00:05:52,678 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 249 273) the Hoare annotation is: (let ((.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse2 (not (= 2 ~waterLevel~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (< 1 ~waterLevel~0)) (.cse4 (= 0 ~systemActive~0)) (.cse6 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse1 .cse5 .cse3 .cse4) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse5 (< ~switchedOnBeforeTS~0 1) .cse3 (< |old(~pumpRunning~0)| 1) .cse4) (or .cse0 .cse1 .cse2 .cse4 .cse6) (or .cse0 .cse1 .cse5 .cse4 .cse6))) [2023-11-29 00:05:52,679 INFO L895 garLoopResultBuilder]: At program point L263(line 263) the Hoare annotation is: (let ((.cse4 (< 1 ~waterLevel~0)) (.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 2 ~waterLevel~0))) (.cse3 (= 0 ~systemActive~0)) (.cse5 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse4 .cse2 .cse3) (or .cse0 .cse4 .cse3 .cse5) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse4 (< ~switchedOnBeforeTS~0 1) .cse2 (< |old(~pumpRunning~0)| 1) .cse3) (or .cse0 .cse1 .cse3 .cse5))) [2023-11-29 00:05:52,679 INFO L895 garLoopResultBuilder]: At program point L259(line 259) the Hoare annotation is: (let ((.cse4 (< 1 ~waterLevel~0)) (.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 2 ~waterLevel~0))) (.cse3 (= 0 ~systemActive~0)) (.cse5 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse4 .cse2 .cse3) (or .cse0 .cse4 .cse3 .cse5) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse4 (< ~switchedOnBeforeTS~0 1) .cse2 (< |old(~pumpRunning~0)| 1) .cse3) (or .cse0 .cse1 .cse3 .cse5))) [2023-11-29 00:05:52,679 INFO L899 garLoopResultBuilder]: For program point L257(lines 257 265) no Hoare annotation was computed. [2023-11-29 00:05:52,679 INFO L899 garLoopResultBuilder]: For program point L253(lines 253 270) no Hoare annotation was computed. [2023-11-29 00:05:52,679 INFO L895 garLoopResultBuilder]: At program point L268(line 268) the Hoare annotation is: (let ((.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse2 (not (= 2 ~waterLevel~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (< 1 ~waterLevel~0)) (.cse4 (= 0 ~systemActive~0)) (.cse6 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse1 .cse5 .cse3 .cse4) (or .cse5 (< ~switchedOnBeforeTS~0 1) .cse3 (< |old(~pumpRunning~0)| 1) .cse4) (or .cse0 .cse1 .cse2 .cse4 .cse6) (or .cse0 .cse1 .cse5 .cse4 .cse6))) [2023-11-29 00:05:52,679 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 249 273) no Hoare annotation was computed. [2023-11-29 00:05:52,679 INFO L899 garLoopResultBuilder]: For program point L268-1(lines 249 273) no Hoare annotation was computed. [2023-11-29 00:05:52,680 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 344 352) no Hoare annotation was computed. [2023-11-29 00:05:52,680 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 344 352) the Hoare annotation is: true [2023-11-29 00:05:52,680 INFO L899 garLoopResultBuilder]: For program point L481-1(lines 477 488) no Hoare annotation was computed. [2023-11-29 00:05:52,680 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 477 488) the Hoare annotation is: (let ((.cse6 (not (= ~pumpRunning~0 0))) (.cse3 (not (= 2 ~waterLevel~0))) (.cse5 (< 2 ~waterLevel~0)) (.cse0 (< ~pumpRunning~0 1)) (.cse1 (not (= |old(~methaneLevelCritical~0)| 0))) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse4 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0) (< |old(~methaneLevelCritical~0)| 1)) (or .cse1 .cse6 .cse2 (< 1 ~waterLevel~0)) (or .cse1 .cse6 .cse2 .cse3) (or .cse5 .cse0 .cse1 .cse2 (< ~switchedOnBeforeTS~0 1) .cse4))) [2023-11-29 00:05:52,680 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 477 488) no Hoare annotation was computed. [2023-11-29 00:05:52,680 INFO L899 garLoopResultBuilder]: For program point L576(line 576) no Hoare annotation was computed. [2023-11-29 00:05:52,680 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 555 584) no Hoare annotation was computed. [2023-11-29 00:05:52,680 INFO L899 garLoopResultBuilder]: For program point L569(lines 569 573) no Hoare annotation was computed. [2023-11-29 00:05:52,680 INFO L902 garLoopResultBuilder]: At program point L569-1(lines 569 573) the Hoare annotation is: true [2023-11-29 00:05:52,681 INFO L902 garLoopResultBuilder]: At program point L565-2(lines 565 579) the Hoare annotation is: true [2023-11-29 00:05:52,681 INFO L902 garLoopResultBuilder]: At program point L561(line 561) the Hoare annotation is: true [2023-11-29 00:05:52,681 INFO L899 garLoopResultBuilder]: For program point L561-1(line 561) no Hoare annotation was computed. [2023-11-29 00:05:52,681 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 555 584) the Hoare annotation is: true [2023-11-29 00:05:52,681 INFO L899 garLoopResultBuilder]: For program point L580(lines 555 584) no Hoare annotation was computed. [2023-11-29 00:05:52,681 INFO L899 garLoopResultBuilder]: For program point L283(lines 283 291) no Hoare annotation was computed. [2023-11-29 00:05:52,681 INFO L899 garLoopResultBuilder]: For program point L279(lines 279 296) no Hoare annotation was computed. [2023-11-29 00:05:52,681 INFO L899 garLoopResultBuilder]: For program point L85(lines 85 91) no Hoare annotation was computed. [2023-11-29 00:05:52,681 INFO L899 garLoopResultBuilder]: For program point L457(lines 457 461) no Hoare annotation was computed. [2023-11-29 00:05:52,681 INFO L899 garLoopResultBuilder]: For program point L457-2(lines 453 464) no Hoare annotation was computed. [2023-11-29 00:05:52,682 INFO L895 garLoopResultBuilder]: At program point L82(line 82) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0))) (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse20 (= ~methaneLevelCritical~0 0)) (.cse23 (<= ~waterLevel~0 0)) (.cse22 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse18 (<= (+ ~waterLevel~0 1) |old(~waterLevel~0)|)) (.cse21 (= ~pumpRunning~0 0)) (.cse17 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~0#1| ~waterLevel~0)) (.cse1 (= ~waterLevel~0 1)) (.cse2 (<= 1 ~switchedOnBeforeTS~0)) (.cse24 (not .cse7))) (let ((.cse3 (and .cse21 .cse17 .cse1 .cse2 .cse24)) (.cse14 (and .cse21 .cse17 .cse18 .cse2 .cse24)) (.cse11 (and .cse21 .cse17 .cse23 .cse22 .cse2)) (.cse5 (not (= |old(~waterLevel~0)| 2))) (.cse13 (< 2 |old(~waterLevel~0)|)) (.cse9 (< ~methaneLevelCritical~0 1)) (.cse10 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse15 (and .cse21 .cse17 .cse20 .cse23 .cse22 .cse2)) (.cse12 (< 0 |old(~waterLevel~0)|)) (.cse6 (< |old(~pumpRunning~0)| 1)) (.cse16 (and (<= 1 ~pumpRunning~0) .cse0 .cse17 .cse20 .cse23 .cse22 .cse2)) (.cse8 (not (= |old(~pumpRunning~0)| 0))) (.cse19 (and .cse21 .cse17 .cse22)) (.cse4 (not .cse20))) (and (or (and .cse0 .cse1 .cse2 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~0#1| 1)) .cse3 .cse4 .cse5 .cse6 .cse7) (or .cse8 .cse5 .cse9) (or .cse3 .cse5 .cse6 .cse7 .cse9) (or .cse10 .cse11 .cse12 .cse6 .cse7 .cse13 .cse9) (or .cse14 .cse10 .cse15 .cse4 .cse6 .cse7 .cse13 .cse16 (and .cse0 .cse17 .cse18 .cse2)) (or .cse14 .cse10 .cse11 .cse6 .cse7 .cse13 .cse9) (or .cse8 .cse4 .cse5) (or .cse8 .cse19 .cse13 .cse9) (or .cse10 .cse15 .cse12 .cse4 .cse6 .cse7 .cse16) (or (< 1 |old(~waterLevel~0)|) .cse8 .cse19 .cse4))))) [2023-11-29 00:05:52,682 INFO L899 garLoopResultBuilder]: For program point L82-1(line 82) no Hoare annotation was computed. [2023-11-29 00:05:52,682 INFO L899 garLoopResultBuilder]: For program point L202-1(lines 202 208) no Hoare annotation was computed. [2023-11-29 00:05:52,683 INFO L895 garLoopResultBuilder]: At program point L289(line 289) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse5 (= |timeShift_processEnvironment_~tmp~4#1| 0)) (.cse6 (<= 1 ~switchedOnBeforeTS~0))) (let ((.cse8 (and .cse4 .cse5 (<= ~waterLevel~0 0) (= |old(~waterLevel~0)| ~waterLevel~0) .cse6)) (.cse0 (not (= ~methaneLevelCritical~0 0))) (.cse7 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse1 (not (= |old(~waterLevel~0)| 2))) (.cse2 (< |old(~pumpRunning~0)| 1)) (.cse3 (= 0 ~systemActive~0)) (.cse9 (not (= |old(~pumpRunning~0)| 0))) (.cse10 (< 2 |old(~waterLevel~0)|)) (.cse11 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 (= ~waterLevel~0 1)) (or .cse0 .cse1 .cse2 .cse3 (and .cse4 .cse5 .cse6)) (or (< 1 |old(~waterLevel~0)|) .cse7 .cse0 .cse2 (and .cse4 (<= (+ ~waterLevel~0 1) |old(~waterLevel~0)|) .cse5 .cse6) .cse3 .cse8) (or .cse7 (< 0 |old(~waterLevel~0)|) .cse0 .cse2 .cse3 .cse8) (or .cse9 .cse0 .cse10) (or .cse7 .cse2 .cse3 .cse10 .cse11) (or .cse1 .cse2 .cse3 .cse11) (or .cse9 .cse10 .cse11)))) [2023-11-29 00:05:52,683 INFO L895 garLoopResultBuilder]: At program point L285(line 285) the Hoare annotation is: (let ((.cse8 (not (= ~methaneLevelCritical~0 0))) (.cse10 (not (= |old(~waterLevel~0)| 2))) (.cse7 (not (= |old(~pumpRunning~0)| 0))) (.cse9 (< 2 |old(~waterLevel~0)|)) (.cse1 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse2 (<= 1 ~switchedOnBeforeTS~0)) (.cse3 (= |timeShift_processEnvironment_~tmp~4#1| ~methaneLevelCritical~0)) (.cse0 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse4 (< |old(~pumpRunning~0)| 1)) (.cse5 (= 0 ~systemActive~0)) (.cse6 (< ~methaneLevelCritical~0 1))) (and (or .cse0 (< 0 |old(~waterLevel~0)|) (and .cse1 (= |old(~waterLevel~0)| ~waterLevel~0) .cse2 .cse3) .cse4 .cse5 .cse6) (or .cse7 .cse8 .cse9) (or .cse8 .cse10 .cse4 .cse5) (or (< 1 |old(~waterLevel~0)|) .cse0 .cse8 .cse4 .cse5) (or .cse10 (and .cse1 (= ~waterLevel~0 1) .cse2 .cse3) .cse4 .cse5 .cse6) (or .cse7 .cse9 .cse6) (or (and .cse1 (<= (+ ~waterLevel~0 1) |old(~waterLevel~0)|) .cse2 .cse3) (not (= |old(~waterLevel~0)| 1)) .cse0 .cse4 .cse5 .cse6))) [2023-11-29 00:05:52,683 INFO L895 garLoopResultBuilder]: At program point L281(line 281) the Hoare annotation is: (let ((.cse13 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse15 (= ~methaneLevelCritical~0 0)) (.cse12 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse14 (<= 1 ~switchedOnBeforeTS~0))) (let ((.cse8 (not (= |old(~pumpRunning~0)| 0))) (.cse9 (< 2 |old(~waterLevel~0)|)) (.cse10 (< 0 |old(~waterLevel~0)|)) (.cse0 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse1 (and .cse12 (<= (+ ~waterLevel~0 1) |old(~waterLevel~0)|) .cse14)) (.cse5 (not .cse15)) (.cse11 (and .cse12 .cse15 (<= ~waterLevel~0 0) .cse13 .cse14)) (.cse6 (and .cse12 (= ~waterLevel~0 1) .cse14)) (.cse7 (not (= |old(~waterLevel~0)| 2))) (.cse2 (< |old(~pumpRunning~0)| 1)) (.cse3 (= 0 ~systemActive~0)) (.cse4 (< ~methaneLevelCritical~0 1))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 .cse7 .cse2 .cse3) (or .cse8 .cse5 .cse9) (or .cse0 .cse10 .cse5 .cse2 .cse3 .cse11) (or .cse8 .cse9 .cse4) (or (and .cse12 .cse13 .cse14) .cse0 .cse10 .cse2 .cse3 .cse4) (or (< 1 |old(~waterLevel~0)|) .cse0 .cse1 .cse5 .cse2 .cse3 .cse11) (or .cse6 .cse7 .cse2 .cse3 .cse4)))) [2023-11-29 00:05:52,683 INFO L899 garLoopResultBuilder]: For program point L281-1(line 281) no Hoare annotation was computed. [2023-11-29 00:05:52,683 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 188 214) the Hoare annotation is: (let ((.cse13 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse11 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse12 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse0 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse3 (and .cse13 .cse11 .cse12)) (.cse4 (< 2 |old(~waterLevel~0)|)) (.cse9 (and .cse13 (= 2 ~waterLevel~0) .cse11)) (.cse1 (< |old(~pumpRunning~0)| 1)) (.cse2 (= 0 ~systemActive~0)) (.cse5 (< ~methaneLevelCritical~0 1)) (.cse6 (and (= ~pumpRunning~0 0) .cse11 .cse12)) (.cse7 (not (= |old(~pumpRunning~0)| 0))) (.cse8 (not (= ~methaneLevelCritical~0 0))) (.cse10 (not (= |old(~waterLevel~0)| 2)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (or .cse6 .cse7 .cse4 .cse5) (or (< 1 |old(~waterLevel~0)|) .cse6 .cse7 .cse8) (or .cse0 .cse8 .cse1 .cse2 .cse3 .cse4) (or .cse8 .cse9 .cse10 .cse1 .cse2) (or .cse9 .cse10 .cse1 .cse2 .cse5) (or .cse6 .cse7 .cse8 .cse10)))) [2023-11-29 00:05:52,684 INFO L895 garLoopResultBuilder]: At program point L294(line 294) the Hoare annotation is: (let ((.cse11 (= ~pumpRunning~0 0)) (.cse9 (= 0 ~systemActive~0))) (let ((.cse6 (not .cse9)) (.cse0 (< 1 |old(~waterLevel~0)|)) (.cse7 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse8 (< |old(~pumpRunning~0)| 1)) (.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse10 (not (= |old(~waterLevel~0)| 2))) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (and .cse11 (= |old(~waterLevel~0)| ~waterLevel~0))) (.cse4 (< 2 |old(~waterLevel~0)|)) (.cse5 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse4 .cse5 .cse6) (or .cse7 .cse8 .cse9 .cse4 .cse5) (or .cse1 .cse3 .cse4 .cse6) (or .cse3 .cse10 .cse8 .cse9) (or .cse0 .cse7 .cse3 .cse8 .cse9) (or .cse10 .cse8 .cse9 .cse5) (or .cse1 (and .cse11 (= 2 ~waterLevel~0)) .cse3 .cse10) (or .cse1 .cse2 .cse4 .cse5)))) [2023-11-29 00:05:52,684 INFO L899 garLoopResultBuilder]: For program point L294-1(lines 275 299) no Hoare annotation was computed. [2023-11-29 00:05:52,684 INFO L895 garLoopResultBuilder]: At program point L67(line 67) the Hoare annotation is: (let ((.cse13 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse11 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse12 (= |old(~waterLevel~0)| ~waterLevel~0))) (let ((.cse0 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse3 (and .cse13 .cse11 .cse12)) (.cse4 (< 2 |old(~waterLevel~0)|)) (.cse9 (and .cse13 (= 2 ~waterLevel~0) .cse11)) (.cse1 (< |old(~pumpRunning~0)| 1)) (.cse2 (= 0 ~systemActive~0)) (.cse5 (< ~methaneLevelCritical~0 1)) (.cse6 (and (= ~pumpRunning~0 0) .cse11 .cse12)) (.cse7 (not (= |old(~pumpRunning~0)| 0))) (.cse8 (not (= ~methaneLevelCritical~0 0))) (.cse10 (not (= |old(~waterLevel~0)| 2)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (or .cse6 .cse7 .cse4 .cse5) (or (< 1 |old(~waterLevel~0)|) .cse6 .cse7 .cse8) (or .cse0 .cse8 .cse1 .cse2 .cse3 .cse4) (or .cse8 .cse9 .cse10 .cse1 .cse2) (or .cse9 .cse10 .cse1 .cse2 .cse5) (or .cse6 .cse7 .cse8 .cse10)))) [2023-11-29 00:05:52,684 INFO L899 garLoopResultBuilder]: For program point L195(lines 195 201) no Hoare annotation was computed. [2023-11-29 00:05:52,684 INFO L899 garLoopResultBuilder]: For program point L67-1(line 67) no Hoare annotation was computed. [2023-11-29 00:05:52,684 INFO L899 garLoopResultBuilder]: For program point L195-2(lines 191 213) no Hoare annotation was computed. [2023-11-29 00:05:52,684 INFO L899 garLoopResultBuilder]: For program point L84(lines 84 94) no Hoare annotation was computed. [2023-11-29 00:05:52,684 INFO L899 garLoopResultBuilder]: For program point L658(line 658) no Hoare annotation was computed. [2023-11-29 00:05:52,684 INFO L899 garLoopResultBuilder]: For program point L80(lines 80 97) no Hoare annotation was computed. [2023-11-29 00:05:52,684 INFO L899 garLoopResultBuilder]: For program point L80-1(lines 72 100) no Hoare annotation was computed. [2023-11-29 00:05:52,685 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 188 214) no Hoare annotation was computed. [2023-11-29 00:05:52,685 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 658) no Hoare annotation was computed. [2023-11-29 00:05:52,685 INFO L895 garLoopResultBuilder]: At program point L168(lines 117 169) the Hoare annotation is: false [2023-11-29 00:05:52,685 INFO L899 garLoopResultBuilder]: For program point L156(lines 156 162) no Hoare annotation was computed. [2023-11-29 00:05:52,685 INFO L895 garLoopResultBuilder]: At program point L156-2(lines 148 163) the Hoare annotation is: (let ((.cse9 (= 0 ~systemActive~0))) (let ((.cse10 (<= ~waterLevel~0 1)) (.cse0 (= ~pumpRunning~0 0)) (.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse8 (<= ~waterLevel~0 2)) (.cse11 (<= 1 ~switchedOnBeforeTS~0)) (.cse7 (<= 1 ~pumpRunning~0)) (.cse2 (= 2 ~waterLevel~0)) (.cse6 (= ~methaneLevelCritical~0 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~8#1| 1)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (not .cse9))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse2 .cse6 .cse3 .cse4 .cse5) (and .cse7 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse6 .cse3 .cse4 .cse8 .cse9) (and .cse0 .cse1 .cse10 .cse3 .cse4 .cse5) (and .cse7 .cse1 .cse3 .cse4 .cse8 .cse11 .cse5) (and .cse0 .cse6 .cse10 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse10 .cse3 .cse4 .cse9) (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse9) (and .cse7 .cse6 .cse3 .cse4 .cse8 .cse11 .cse5) (and .cse7 .cse2 .cse6 .cse3 .cse4 .cse5)))) [2023-11-29 00:05:52,685 INFO L899 garLoopResultBuilder]: For program point L119(lines 118 167) no Hoare annotation was computed. [2023-11-29 00:05:52,685 INFO L899 garLoopResultBuilder]: For program point L148(lines 148 163) no Hoare annotation was computed. [2023-11-29 00:05:52,686 INFO L895 garLoopResultBuilder]: At program point L433(line 433) the Hoare annotation is: (let ((.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse6 (<= ~waterLevel~0 2)) (.cse7 (<= 1 ~switchedOnBeforeTS~0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (= 2 ~waterLevel~0)) (.cse8 (= ~methaneLevelCritical~0 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~8#1| 1)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse5 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse3 .cse4 .cse6 .cse7 .cse5) (and .cse0 .cse8 .cse3 .cse4 .cse6 .cse7 .cse5) (and .cse0 .cse2 .cse8 .cse3 .cse4 .cse5))) [2023-11-29 00:05:52,686 INFO L895 garLoopResultBuilder]: At program point L140(line 140) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse4 (<= ~waterLevel~0 2)) (.cse5 (<= 1 ~pumpRunning~0)) (.cse1 (= ~methaneLevelCritical~0 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~8#1| 1)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse6 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse1 .cse2 .cse3 .cse4 (<= 1 ~switchedOnBeforeTS~0) .cse6) (and .cse0 (<= 1 ~methaneLevelCritical~0) .cse2 .cse3 .cse4) (and .cse5 (= 2 ~waterLevel~0) .cse1 .cse2 .cse3 .cse6))) [2023-11-29 00:05:52,686 INFO L895 garLoopResultBuilder]: At program point L165(lines 118 167) the Hoare annotation is: (let ((.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse5 (<= ~waterLevel~0 1)) (.cse0 (= ~pumpRunning~0 0)) (.cse6 (<= 1 ~pumpRunning~0)) (.cse2 (= 2 ~waterLevel~0)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~8#1| 1)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse3 .cse4) (and .cse6 .cse7 .cse5 .cse3 .cse4 (<= 1 ~switchedOnBeforeTS~0) .cse8) (and .cse0 .cse2 .cse7 .cse3 .cse4) (and .cse0 .cse7 .cse3 .cse4 (= ~waterLevel~0 1)) (and .cse0 .cse7 .cse3 .cse4 (<= ~waterLevel~0 0)) (and .cse6 .cse2 .cse7 .cse3 .cse4 .cse8))) [2023-11-29 00:05:52,686 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-11-29 00:05:52,686 INFO L899 garLoopResultBuilder]: For program point L640(lines 640 647) no Hoare annotation was computed. [2023-11-29 00:05:52,686 INFO L899 garLoopResultBuilder]: For program point L128(lines 128 134) no Hoare annotation was computed. [2023-11-29 00:05:52,686 INFO L899 garLoopResultBuilder]: For program point L128-1(lines 128 134) no Hoare annotation was computed. [2023-11-29 00:05:52,686 INFO L899 garLoopResultBuilder]: For program point L640-2(lines 640 647) no Hoare annotation was computed. [2023-11-29 00:05:52,686 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-11-29 00:05:52,686 INFO L899 garLoopResultBuilder]: For program point L431(lines 431 437) no Hoare annotation was computed. [2023-11-29 00:05:52,686 INFO L899 garLoopResultBuilder]: For program point L431-1(lines 431 437) no Hoare annotation was computed. [2023-11-29 00:05:52,687 INFO L899 garLoopResultBuilder]: For program point L171(lines 108 175) no Hoare annotation was computed. [2023-11-29 00:05:52,687 INFO L899 garLoopResultBuilder]: For program point L138(lines 138 144) no Hoare annotation was computed. [2023-11-29 00:05:52,687 INFO L899 garLoopResultBuilder]: For program point L138-1(lines 138 144) no Hoare annotation was computed. [2023-11-29 00:05:52,687 INFO L895 garLoopResultBuilder]: At program point L130(line 130) the Hoare annotation is: (let ((.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse5 (<= ~waterLevel~0 1)) (.cse0 (= ~pumpRunning~0 0)) (.cse6 (<= 1 ~pumpRunning~0)) (.cse2 (= 2 ~waterLevel~0)) (.cse7 (= ~methaneLevelCritical~0 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~8#1| 1)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse8 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse5 .cse3 .cse4) (and .cse6 .cse7 .cse5 .cse3 .cse4 (<= 1 ~switchedOnBeforeTS~0) .cse8) (and .cse0 .cse2 .cse7 .cse3 .cse4) (and .cse0 .cse7 .cse3 .cse4 (= ~waterLevel~0 1)) (and .cse0 .cse7 .cse3 .cse4 (<= ~waterLevel~0 0)) (and .cse6 .cse2 .cse7 .cse3 .cse4 .cse8))) [2023-11-29 00:05:52,687 INFO L895 garLoopResultBuilder]: At program point L242(line 242) the Hoare annotation is: (let ((.cse4 (< 1 ~waterLevel~0)) (.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 2 ~waterLevel~0))) (.cse3 (= 0 ~systemActive~0)) (.cse5 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse4 .cse2 .cse3) (or .cse0 .cse4 .cse3 .cse5) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse4 (< ~switchedOnBeforeTS~0 1) .cse2 (< |old(~pumpRunning~0)| 1) .cse3) (or .cse0 .cse1 .cse3 .cse5))) [2023-11-29 00:05:52,687 INFO L899 garLoopResultBuilder]: For program point L242-1(lines 223 247) no Hoare annotation was computed. [2023-11-29 00:05:52,687 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 223 247) the Hoare annotation is: (let ((.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse2 (not (= 2 ~waterLevel~0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse5 (< 1 ~waterLevel~0)) (.cse4 (= 0 ~systemActive~0)) (.cse6 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse1 .cse5 .cse3 .cse4) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse5 (< ~switchedOnBeforeTS~0 1) .cse3 (< |old(~pumpRunning~0)| 1) .cse4) (or .cse0 .cse1 .cse2 .cse4 .cse6) (or .cse0 .cse1 .cse5 .cse4 .cse6))) [2023-11-29 00:05:52,687 INFO L899 garLoopResultBuilder]: For program point isHighWaterSensorDry_returnLabel#1(lines 530 543) no Hoare annotation was computed. [2023-11-29 00:05:52,688 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 223 247) no Hoare annotation was computed. [2023-11-29 00:05:52,688 INFO L899 garLoopResultBuilder]: For program point L315(lines 315 321) no Hoare annotation was computed. [2023-11-29 00:05:52,688 INFO L895 garLoopResultBuilder]: At program point L313(line 313) the Hoare annotation is: (let ((.cse5 (< 1 ~waterLevel~0)) (.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= 2 ~waterLevel~0))) (.cse4 (= 0 ~systemActive~0)) (.cse6 (< ~methaneLevelCritical~0 1))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse5 .cse3 .cse4) (or .cse0 .cse5 .cse4 .cse6) (or .cse5 (< ~switchedOnBeforeTS~0 1) .cse3 (< |old(~pumpRunning~0)| 1) .cse4) (or .cse0 .cse1 .cse2 .cse4 .cse6))) [2023-11-29 00:05:52,688 INFO L899 garLoopResultBuilder]: For program point L315-2(lines 308 324) no Hoare annotation was computed. [2023-11-29 00:05:52,688 INFO L899 garLoopResultBuilder]: For program point L313-1(line 313) no Hoare annotation was computed. [2023-11-29 00:05:52,688 INFO L899 garLoopResultBuilder]: For program point L534(lines 534 540) no Hoare annotation was computed. [2023-11-29 00:05:52,688 INFO L899 garLoopResultBuilder]: For program point L398(lines 398 402) no Hoare annotation was computed. [2023-11-29 00:05:52,688 INFO L895 garLoopResultBuilder]: At program point L237(line 237) the Hoare annotation is: (let ((.cse3 (= 0 ~systemActive~0)) (.cse7 (= |old(~pumpRunning~0)| 0))) (let ((.cse2 (< 1 ~waterLevel~0)) (.cse4 (< ~methaneLevelCritical~0 1)) (.cse0 (not .cse7)) (.cse1 (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~2#1| 0) .cse7 (not .cse3))) (.cse6 (not (= 2 ~waterLevel~0))) (.cse5 (not (= ~methaneLevelCritical~0 0)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse1 .cse2 .cse5 .cse3) (or .cse2 (< ~switchedOnBeforeTS~0 1) .cse5 (< |old(~pumpRunning~0)| 1) .cse3) (or .cse0 .cse1 .cse6 .cse3 .cse4) (or .cse0 .cse1 .cse6 .cse5 .cse3)))) [2023-11-29 00:05:52,688 INFO L899 garLoopResultBuilder]: For program point L398-2(lines 398 402) no Hoare annotation was computed. [2023-11-29 00:05:52,688 INFO L899 garLoopResultBuilder]: For program point L231(lines 231 239) no Hoare annotation was computed. [2023-11-29 00:05:52,689 INFO L899 garLoopResultBuilder]: For program point L227(lines 227 244) no Hoare annotation was computed. [2023-11-29 00:05:52,689 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 465 476) no Hoare annotation was computed. [2023-11-29 00:05:52,689 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 465 476) the Hoare annotation is: (let ((.cse9 (< ~methaneLevelCritical~0 1)) (.cse1 (< ~switchedOnBeforeTS~0 1)) (.cse0 (< ~pumpRunning~0 1)) (.cse6 (= 2 ~waterLevel~0)) (.cse7 (not (= |old(~waterLevel~0)| 2))) (.cse4 (= 0 ~systemActive~0)) (.cse8 (< 1 |old(~waterLevel~0)|)) (.cse5 (not (= ~pumpRunning~0 0))) (.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or .cse0 (< 0 |old(~waterLevel~0)|) .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 .cse2 .cse7) (or .cse8 .cse5 .cse3 .cse9) (or .cse5 .cse6 .cse7 .cse9) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 .cse2 .cse4 (= ~waterLevel~0 1)) (or .cse0 .cse6 .cse2 .cse7 .cse4) (or .cse8 .cse5 .cse2 .cse3))) [2023-11-29 00:05:52,689 INFO L899 garLoopResultBuilder]: For program point L469-1(lines 465 476) no Hoare annotation was computed. [2023-11-29 00:05:52,689 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 333 343) no Hoare annotation was computed. [2023-11-29 00:05:52,689 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 333 343) the Hoare annotation is: true [2023-11-29 00:05:52,691 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-11-29 00:05:52,693 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2023-11-29 00:05:52,705 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 29.11 12:05:52 BoogieIcfgContainer [2023-11-29 00:05:52,705 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-11-29 00:05:52,705 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2023-11-29 00:05:52,706 INFO L270 PluginConnector]: Initializing Witness Printer... [2023-11-29 00:05:52,706 INFO L274 PluginConnector]: Witness Printer initialized [2023-11-29 00:05:52,706 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 29.11 12:05:13" (3/4) ... [2023-11-29 00:05:52,708 INFO L137 WitnessPrinter]: Generating witness for correct program [2023-11-29 00:05:52,712 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2023-11-29 00:05:52,712 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2023-11-29 00:05:52,712 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2023-11-29 00:05:52,712 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2023-11-29 00:05:52,712 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2023-11-29 00:05:52,713 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2023-11-29 00:05:52,713 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2023-11-29 00:05:52,713 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2023-11-29 00:05:52,713 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2023-11-29 00:05:52,713 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2023-11-29 00:05:52,721 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 37 nodes and edges [2023-11-29 00:05:52,722 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 10 nodes and edges [2023-11-29 00:05:52,723 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2023-11-29 00:05:52,723 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-29 00:05:52,724 INFO L943 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2023-11-29 00:05:52,840 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/witness.graphml [2023-11-29 00:05:52,841 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/witness.yml [2023-11-29 00:05:52,841 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2023-11-29 00:05:52,842 INFO L158 Benchmark]: Toolchain (without parser) took 40171.28ms. Allocated memory was 134.2MB in the beginning and 453.0MB in the end (delta: 318.8MB). Free memory was 95.3MB in the beginning and 266.9MB in the end (delta: -171.5MB). Peak memory consumption was 150.4MB. Max. memory is 16.1GB. [2023-11-29 00:05:52,842 INFO L158 Benchmark]: CDTParser took 0.19ms. Allocated memory is still 134.2MB. Free memory is still 107.1MB. There was no memory consumed. Max. memory is 16.1GB. [2023-11-29 00:05:52,842 INFO L158 Benchmark]: CACSL2BoogieTranslator took 493.79ms. Allocated memory is still 134.2MB. Free memory was 95.3MB in the beginning and 74.8MB in the end (delta: 20.5MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. [2023-11-29 00:05:52,843 INFO L158 Benchmark]: Boogie Procedure Inliner took 58.51ms. Allocated memory is still 134.2MB. Free memory was 74.8MB in the beginning and 72.7MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-29 00:05:52,843 INFO L158 Benchmark]: Boogie Preprocessor took 57.00ms. Allocated memory is still 134.2MB. Free memory was 72.3MB in the beginning and 70.2MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2023-11-29 00:05:52,843 INFO L158 Benchmark]: RCFGBuilder took 629.66ms. Allocated memory is still 134.2MB. Free memory was 69.8MB in the beginning and 96.1MB in the end (delta: -26.4MB). Peak memory consumption was 22.5MB. Max. memory is 16.1GB. [2023-11-29 00:05:52,844 INFO L158 Benchmark]: TraceAbstraction took 38789.15ms. Allocated memory was 134.2MB in the beginning and 453.0MB in the end (delta: 318.8MB). Free memory was 95.3MB in the beginning and 275.3MB in the end (delta: -180.0MB). Peak memory consumption was 270.5MB. Max. memory is 16.1GB. [2023-11-29 00:05:52,844 INFO L158 Benchmark]: Witness Printer took 135.50ms. Allocated memory is still 453.0MB. Free memory was 275.3MB in the beginning and 266.9MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2023-11-29 00:05:52,847 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.19ms. Allocated memory is still 134.2MB. Free memory is still 107.1MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 493.79ms. Allocated memory is still 134.2MB. Free memory was 95.3MB in the beginning and 74.8MB in the end (delta: 20.5MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 58.51ms. Allocated memory is still 134.2MB. Free memory was 74.8MB in the beginning and 72.7MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 57.00ms. Allocated memory is still 134.2MB. Free memory was 72.3MB in the beginning and 70.2MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 629.66ms. Allocated memory is still 134.2MB. Free memory was 69.8MB in the beginning and 96.1MB in the end (delta: -26.4MB). Peak memory consumption was 22.5MB. Max. memory is 16.1GB. * TraceAbstraction took 38789.15ms. Allocated memory was 134.2MB in the beginning and 453.0MB in the end (delta: 318.8MB). Free memory was 95.3MB in the beginning and 275.3MB in the end (delta: -180.0MB). Peak memory consumption was 270.5MB. Max. memory is 16.1GB. * Witness Printer took 135.50ms. Allocated memory is still 453.0MB. Free memory was 275.3MB in the beginning and 266.9MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [49] - GenericResultAtLocation [Line: 101]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [101] - GenericResultAtLocation [Line: 176]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [176] - GenericResultAtLocation [Line: 450]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [450] - GenericResultAtLocation [Line: 553]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [553] - GenericResultAtLocation [Line: 653]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [653] - GenericResultAtLocation [Line: 662]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [662] - GenericResultAtLocation [Line: 697]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [697] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 658]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 11 procedures, 93 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 38.7s, OverallIterations: 14, TraceHistogramMax: 8, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.1s, AutomataDifference: 13.9s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 13.7s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 5742 SdHoareTripleChecker+Valid, 8.6s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 5688 mSDsluCounter, 5629 SdHoareTripleChecker+Invalid, 7.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 4353 mSDsCounter, 2554 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 13475 IncrementalHoareTripleChecker+Invalid, 16029 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 2554 mSolverCounterUnsat, 1276 mSDtfsCounter, 13475 mSolverCounterSat, 0.2s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 2666 GetRequests, 2281 SyntacticMatches, 22 SemanticMatches, 363 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5323 ImplicationChecksByTransitivity, 4.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1895occurred in iteration=13, InterpolantAutomatonStates: 281, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 1.2s AutomataMinimizationTime, 14 MinimizatonAttempts, 711 StatesRemovedByMinimization, 11 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 31 LocationsWithAnnotation, 3956 PreInvPairs, 4314 NumberOfFragments, 3057 HoareAnnotationTreeSize, 3956 FomulaSimplifications, 38709 FormulaSimplificationTreeSizeReduction, 2.5s HoareSimplificationTime, 31 FomulaSimplificationsInter, 55933 FormulaSimplificationTreeSizeReductionInter, 11.1s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.2s SsaConstructionTime, 0.7s SatisfiabilityAnalysisTime, 7.1s InterpolantComputationTime, 2416 NumberOfCodeBlocks, 2416 NumberOfCodeBlocksAsserted, 20 NumberOfCheckSat, 3258 ConstructedInterpolants, 0 QuantifiedInterpolants, 6763 SizeOfPredicates, 10 NumberOfNonLiveVariables, 3459 ConjunctsInSsa, 73 ConjunctsInUnsatCore, 25 InterpolantComputations, 9 PerfectInterpolantSequences, 2946/3314 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 565]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 333]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 117]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 118]: Loop Invariant Derived loop invariant: (((((((((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (tmp == 1)) && (splverifierCounter == 0)) || (((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (waterLevel <= 1)) && (tmp == 1)) && (splverifierCounter == 0))) || (((((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (waterLevel <= 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= switchedOnBeforeTS)) && !((0 == systemActive)))) || (((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (tmp == 1)) && (splverifierCounter == 0))) || (((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (tmp == 1)) && (splverifierCounter == 0)) && (waterLevel == 1))) || (((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (tmp == 1)) && (splverifierCounter == 0)) && (waterLevel <= 0))) || ((((((1 <= pumpRunning) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (tmp == 1)) && (splverifierCounter == 0)) && !((0 == systemActive)))) RESULT: Ultimate proved your program to be correct! [2023-11-29 00:05:52,866 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_154e09ac-760b-4afd-bde4-96e93dbc1711/bin/uautomizer-verify-BQ2R08f2Ya/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE