./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version a0165632 Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 303db4082dd8b7a60cb4b5043655f09159321046818373497160cd54b8948d04 --- Real Ultimate output --- This is Ultimate 0.2.5-dev-a016563 [2024-11-08 16:51:13,118 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-11-08 16:51:13,212 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-11-08 16:51:13,219 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-11-08 16:51:13,220 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-11-08 16:51:13,261 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-11-08 16:51:13,261 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-11-08 16:51:13,262 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-11-08 16:51:13,263 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-11-08 16:51:13,263 INFO L153 SettingsManager]: * Use memory slicer=true [2024-11-08 16:51:13,263 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-11-08 16:51:13,264 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-11-08 16:51:13,264 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-11-08 16:51:13,265 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-11-08 16:51:13,265 INFO L153 SettingsManager]: * Use SBE=true [2024-11-08 16:51:13,266 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-11-08 16:51:13,266 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-11-08 16:51:13,266 INFO L153 SettingsManager]: * sizeof long=4 [2024-11-08 16:51:13,267 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-11-08 16:51:13,267 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-11-08 16:51:13,267 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-11-08 16:51:13,268 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-11-08 16:51:13,269 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-11-08 16:51:13,269 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-11-08 16:51:13,269 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-11-08 16:51:13,270 INFO L153 SettingsManager]: * sizeof long double=12 [2024-11-08 16:51:13,270 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-11-08 16:51:13,270 INFO L153 SettingsManager]: * Use constant arrays=true [2024-11-08 16:51:13,271 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-11-08 16:51:13,271 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-11-08 16:51:13,272 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-11-08 16:51:13,272 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-11-08 16:51:13,272 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-11-08 16:51:13,273 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-11-08 16:51:13,273 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-11-08 16:51:13,273 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-11-08 16:51:13,273 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-11-08 16:51:13,274 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-11-08 16:51:13,274 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-11-08 16:51:13,274 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-11-08 16:51:13,275 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-11-08 16:51:13,275 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-11-08 16:51:13,276 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 303db4082dd8b7a60cb4b5043655f09159321046818373497160cd54b8948d04 [2024-11-08 16:51:13,545 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-11-08 16:51:13,576 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-11-08 16:51:13,579 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-11-08 16:51:13,580 INFO L270 PluginConnector]: Initializing CDTParser... [2024-11-08 16:51:13,581 INFO L274 PluginConnector]: CDTParser initialized [2024-11-08 16:51:13,582 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/../../sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c Unable to find full path for "g++" [2024-11-08 16:51:15,634 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-11-08 16:51:15,874 INFO L384 CDTParser]: Found 1 translation units. [2024-11-08 16:51:15,875 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c [2024-11-08 16:51:15,888 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/data/e9ac12f6a/f5b78158ed104e44868fd90dc1189ec8/FLAGfc689d5fa [2024-11-08 16:51:15,904 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/data/e9ac12f6a/f5b78158ed104e44868fd90dc1189ec8 [2024-11-08 16:51:15,908 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-11-08 16:51:15,909 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-11-08 16:51:15,911 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-11-08 16:51:15,911 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-11-08 16:51:15,922 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-11-08 16:51:15,923 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 08.11 04:51:15" (1/1) ... [2024-11-08 16:51:15,925 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6b0cfc29 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:15, skipping insertion in model container [2024-11-08 16:51:15,925 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 08.11 04:51:15" (1/1) ... [2024-11-08 16:51:15,974 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-11-08 16:51:16,205 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c[1605,1618] [2024-11-08 16:51:16,402 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-08 16:51:16,416 INFO L200 MainTranslator]: Completed pre-run [2024-11-08 16:51:16,428 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2024-11-08 16:51:16,430 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] [2024-11-08 16:51:16,430 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [283] [2024-11-08 16:51:16,431 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [353] [2024-11-08 16:51:16,431 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [454] [2024-11-08 16:51:16,431 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [820] [2024-11-08 16:51:16,431 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [855] [2024-11-08 16:51:16,432 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [905] [2024-11-08 16:51:16,439 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c[1605,1618] [2024-11-08 16:51:16,513 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-08 16:51:16,546 INFO L204 MainTranslator]: Completed translation [2024-11-08 16:51:16,546 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16 WrapperNode [2024-11-08 16:51:16,547 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-11-08 16:51:16,548 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-11-08 16:51:16,548 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-11-08 16:51:16,548 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-11-08 16:51:16,557 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,580 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,612 INFO L138 Inliner]: procedures = 57, calls = 104, calls flagged for inlining = 24, calls inlined = 21, statements flattened = 213 [2024-11-08 16:51:16,612 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-11-08 16:51:16,613 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-11-08 16:51:16,613 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-11-08 16:51:16,613 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-11-08 16:51:16,631 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,631 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,633 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,648 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-11-08 16:51:16,649 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,649 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,655 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,660 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,662 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,663 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,666 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-11-08 16:51:16,667 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-11-08 16:51:16,668 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-11-08 16:51:16,668 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-11-08 16:51:16,669 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (1/1) ... [2024-11-08 16:51:16,679 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-11-08 16:51:16,704 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 [2024-11-08 16:51:16,725 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-11-08 16:51:16,728 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-11-08 16:51:16,762 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-11-08 16:51:16,763 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2024-11-08 16:51:16,763 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2024-11-08 16:51:16,763 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2024-11-08 16:51:16,764 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2024-11-08 16:51:16,764 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2024-11-08 16:51:16,764 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2024-11-08 16:51:16,764 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2024-11-08 16:51:16,765 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2024-11-08 16:51:16,765 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2024-11-08 16:51:16,766 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2024-11-08 16:51:16,766 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2024-11-08 16:51:16,766 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2024-11-08 16:51:16,767 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2024-11-08 16:51:16,767 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2024-11-08 16:51:16,767 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2024-11-08 16:51:16,767 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2024-11-08 16:51:16,768 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-11-08 16:51:16,768 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2024-11-08 16:51:16,768 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2024-11-08 16:51:16,771 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-11-08 16:51:16,772 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-11-08 16:51:16,868 INFO L238 CfgBuilder]: Building ICFG [2024-11-08 16:51:16,871 INFO L264 CfgBuilder]: Building CFG for each procedure with an implementation [2024-11-08 16:51:17,194 INFO L? ?]: Removed 43 outVars from TransFormulas that were not future-live. [2024-11-08 16:51:17,195 INFO L287 CfgBuilder]: Performing block encoding [2024-11-08 16:51:17,211 INFO L311 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-11-08 16:51:17,211 INFO L316 CfgBuilder]: Removed 2 assume(true) statements. [2024-11-08 16:51:17,211 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 08.11 04:51:17 BoogieIcfgContainer [2024-11-08 16:51:17,212 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-11-08 16:51:17,214 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-11-08 16:51:17,215 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-11-08 16:51:17,218 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-11-08 16:51:17,219 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 08.11 04:51:15" (1/3) ... [2024-11-08 16:51:17,219 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@73b70ca3 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 08.11 04:51:17, skipping insertion in model container [2024-11-08 16:51:17,220 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 08.11 04:51:16" (2/3) ... [2024-11-08 16:51:17,220 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@73b70ca3 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 08.11 04:51:17, skipping insertion in model container [2024-11-08 16:51:17,220 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 08.11 04:51:17" (3/3) ... [2024-11-08 16:51:17,222 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product47.cil.c [2024-11-08 16:51:17,240 INFO L214 ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-11-08 16:51:17,240 INFO L154 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-11-08 16:51:17,308 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-11-08 16:51:17,315 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@78b8204b, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-11-08 16:51:17,316 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-11-08 16:51:17,321 INFO L276 IsEmpty]: Start isEmpty. Operand has 105 states, 78 states have (on average 1.358974358974359) internal successors, (106), 87 states have internal predecessors, (106), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 13 states have call predecessors, (16), 16 states have call successors, (16) [2024-11-08 16:51:17,331 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2024-11-08 16:51:17,331 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:17,332 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:17,333 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:17,354 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:17,362 INFO L85 PathProgramCache]: Analyzing trace with hash 1436695206, now seen corresponding path program 1 times [2024-11-08 16:51:17,373 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:17,374 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1763887002] [2024-11-08 16:51:17,374 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:17,375 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:17,542 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:17,635 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2024-11-08 16:51:17,638 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:17,648 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2024-11-08 16:51:17,652 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:17,660 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-08 16:51:17,664 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:17,664 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1763887002] [2024-11-08 16:51:17,665 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1763887002] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-08 16:51:17,666 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-08 16:51:17,670 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-11-08 16:51:17,671 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1730711525] [2024-11-08 16:51:17,672 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-08 16:51:17,684 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-11-08 16:51:17,685 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:17,713 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-11-08 16:51:17,714 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-08 16:51:17,718 INFO L87 Difference]: Start difference. First operand has 105 states, 78 states have (on average 1.358974358974359) internal successors, (106), 87 states have internal predecessors, (106), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 13 states have call predecessors, (16), 16 states have call successors, (16) Second operand has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-11-08 16:51:17,777 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:17,778 INFO L93 Difference]: Finished difference Result 201 states and 270 transitions. [2024-11-08 16:51:17,781 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-11-08 16:51:17,783 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 32 [2024-11-08 16:51:17,783 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:17,795 INFO L225 Difference]: With dead ends: 201 [2024-11-08 16:51:17,796 INFO L226 Difference]: Without dead ends: 96 [2024-11-08 16:51:17,801 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-08 16:51:17,806 INFO L432 NwaCegarLoop]: 132 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 132 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:17,811 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 132 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-08 16:51:17,832 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 96 states. [2024-11-08 16:51:17,869 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 96 to 96. [2024-11-08 16:51:17,871 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 96 states, 71 states have (on average 1.295774647887324) internal successors, (92), 79 states have internal predecessors, (92), 16 states have call successors, (16), 9 states have call predecessors, (16), 8 states have return successors, (15), 12 states have call predecessors, (15), 15 states have call successors, (15) [2024-11-08 16:51:17,875 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 96 states to 96 states and 123 transitions. [2024-11-08 16:51:17,881 INFO L78 Accepts]: Start accepts. Automaton has 96 states and 123 transitions. Word has length 32 [2024-11-08 16:51:17,883 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:17,883 INFO L471 AbstractCegarLoop]: Abstraction has 96 states and 123 transitions. [2024-11-08 16:51:17,884 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-11-08 16:51:17,884 INFO L276 IsEmpty]: Start isEmpty. Operand 96 states and 123 transitions. [2024-11-08 16:51:17,886 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-11-08 16:51:17,889 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:17,889 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:17,890 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-11-08 16:51:17,890 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:17,891 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:17,891 INFO L85 PathProgramCache]: Analyzing trace with hash 2029711, now seen corresponding path program 1 times [2024-11-08 16:51:17,892 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:17,892 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1988483196] [2024-11-08 16:51:17,893 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:17,893 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:17,935 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:18,070 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2024-11-08 16:51:18,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:18,076 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2024-11-08 16:51:18,083 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:18,089 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-08 16:51:18,090 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:18,090 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1988483196] [2024-11-08 16:51:18,090 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1988483196] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-08 16:51:18,090 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-08 16:51:18,091 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-08 16:51:18,091 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1152240221] [2024-11-08 16:51:18,091 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-08 16:51:18,092 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-08 16:51:18,094 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:18,096 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-08 16:51:18,098 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-08 16:51:18,098 INFO L87 Difference]: Start difference. First operand 96 states and 123 transitions. Second operand has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 3 states have internal predecessors, (25), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-11-08 16:51:18,122 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:18,122 INFO L93 Difference]: Finished difference Result 153 states and 195 transitions. [2024-11-08 16:51:18,123 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-08 16:51:18,123 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 3 states have internal predecessors, (25), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 33 [2024-11-08 16:51:18,124 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:18,125 INFO L225 Difference]: With dead ends: 153 [2024-11-08 16:51:18,125 INFO L226 Difference]: Without dead ends: 87 [2024-11-08 16:51:18,126 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-08 16:51:18,127 INFO L432 NwaCegarLoop]: 110 mSDtfsCounter, 16 mSDsluCounter, 89 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 199 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:18,128 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 199 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-08 16:51:18,129 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 87 states. [2024-11-08 16:51:18,138 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 87 to 87. [2024-11-08 16:51:18,139 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 87 states, 65 states have (on average 1.3076923076923077) internal successors, (85), 73 states have internal predecessors, (85), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2024-11-08 16:51:18,141 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 87 states to 87 states and 111 transitions. [2024-11-08 16:51:18,142 INFO L78 Accepts]: Start accepts. Automaton has 87 states and 111 transitions. Word has length 33 [2024-11-08 16:51:18,142 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:18,142 INFO L471 AbstractCegarLoop]: Abstraction has 87 states and 111 transitions. [2024-11-08 16:51:18,142 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 3 states have internal predecessors, (25), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-11-08 16:51:18,143 INFO L276 IsEmpty]: Start isEmpty. Operand 87 states and 111 transitions. [2024-11-08 16:51:18,146 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2024-11-08 16:51:18,146 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:18,147 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:18,147 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-11-08 16:51:18,147 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:18,148 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:18,148 INFO L85 PathProgramCache]: Analyzing trace with hash -2107511154, now seen corresponding path program 1 times [2024-11-08 16:51:18,149 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:18,149 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1409805685] [2024-11-08 16:51:18,149 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:18,149 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:18,176 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:18,332 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2024-11-08 16:51:18,335 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:18,338 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2024-11-08 16:51:18,340 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:18,343 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-08 16:51:18,343 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:18,343 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1409805685] [2024-11-08 16:51:18,343 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1409805685] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-08 16:51:18,344 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-08 16:51:18,344 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-11-08 16:51:18,344 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [749110938] [2024-11-08 16:51:18,344 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-08 16:51:18,345 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-08 16:51:18,345 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:18,346 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-08 16:51:18,346 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2024-11-08 16:51:18,346 INFO L87 Difference]: Start difference. First operand 87 states and 111 transitions. Second operand has 6 states, 6 states have (on average 5.0) internal successors, (30), 6 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-08 16:51:18,634 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:18,635 INFO L93 Difference]: Finished difference Result 291 states and 379 transitions. [2024-11-08 16:51:18,635 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-11-08 16:51:18,635 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.0) internal successors, (30), 6 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 37 [2024-11-08 16:51:18,636 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:18,637 INFO L225 Difference]: With dead ends: 291 [2024-11-08 16:51:18,638 INFO L226 Difference]: Without dead ends: 212 [2024-11-08 16:51:18,639 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=20, Invalid=36, Unknown=0, NotChecked=0, Total=56 [2024-11-08 16:51:18,640 INFO L432 NwaCegarLoop]: 124 mSDtfsCounter, 190 mSDsluCounter, 364 mSDsCounter, 0 mSdLazyCounter, 104 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 190 SdHoareTripleChecker+Valid, 488 SdHoareTripleChecker+Invalid, 105 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 104 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:18,640 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [190 Valid, 488 Invalid, 105 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 104 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-08 16:51:18,641 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 212 states. [2024-11-08 16:51:18,668 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 212 to 206. [2024-11-08 16:51:18,669 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 206 states, 152 states have (on average 1.3355263157894737) internal successors, (203), 170 states have internal predecessors, (203), 32 states have call successors, (32), 21 states have call predecessors, (32), 21 states have return successors, (33), 24 states have call predecessors, (33), 32 states have call successors, (33) [2024-11-08 16:51:18,671 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 206 states to 206 states and 268 transitions. [2024-11-08 16:51:18,671 INFO L78 Accepts]: Start accepts. Automaton has 206 states and 268 transitions. Word has length 37 [2024-11-08 16:51:18,672 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:18,672 INFO L471 AbstractCegarLoop]: Abstraction has 206 states and 268 transitions. [2024-11-08 16:51:18,672 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.0) internal successors, (30), 6 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-08 16:51:18,672 INFO L276 IsEmpty]: Start isEmpty. Operand 206 states and 268 transitions. [2024-11-08 16:51:18,674 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2024-11-08 16:51:18,674 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:18,674 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:18,674 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-11-08 16:51:18,675 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:18,675 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:18,675 INFO L85 PathProgramCache]: Analyzing trace with hash -338067580, now seen corresponding path program 1 times [2024-11-08 16:51:18,675 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:18,676 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [188106391] [2024-11-08 16:51:18,676 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:18,676 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:18,706 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:18,787 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2024-11-08 16:51:18,789 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:18,791 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 33 [2024-11-08 16:51:18,793 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:18,808 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-11-08 16:51:18,808 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:18,808 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [188106391] [2024-11-08 16:51:18,809 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [188106391] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-08 16:51:18,809 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-08 16:51:18,809 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-11-08 16:51:18,809 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [82609404] [2024-11-08 16:51:18,809 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-08 16:51:18,810 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-08 16:51:18,810 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:18,811 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-08 16:51:18,811 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-11-08 16:51:18,811 INFO L87 Difference]: Start difference. First operand 206 states and 268 transitions. Second operand has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-08 16:51:19,019 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:19,019 INFO L93 Difference]: Finished difference Result 497 states and 656 transitions. [2024-11-08 16:51:19,021 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-08 16:51:19,021 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 41 [2024-11-08 16:51:19,021 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:19,024 INFO L225 Difference]: With dead ends: 497 [2024-11-08 16:51:19,024 INFO L226 Difference]: Without dead ends: 299 [2024-11-08 16:51:19,029 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2024-11-08 16:51:19,031 INFO L432 NwaCegarLoop]: 105 mSDtfsCounter, 80 mSDsluCounter, 350 mSDsCounter, 0 mSdLazyCounter, 67 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 82 SdHoareTripleChecker+Valid, 455 SdHoareTripleChecker+Invalid, 76 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 67 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:19,031 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [82 Valid, 455 Invalid, 76 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 67 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-08 16:51:19,032 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 299 states. [2024-11-08 16:51:19,097 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 299 to 297. [2024-11-08 16:51:19,101 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 297 states, 221 states have (on average 1.2714932126696832) internal successors, (281), 240 states have internal predecessors, (281), 41 states have call successors, (41), 34 states have call predecessors, (41), 34 states have return successors, (51), 38 states have call predecessors, (51), 41 states have call successors, (51) [2024-11-08 16:51:19,103 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 297 states to 297 states and 373 transitions. [2024-11-08 16:51:19,104 INFO L78 Accepts]: Start accepts. Automaton has 297 states and 373 transitions. Word has length 41 [2024-11-08 16:51:19,104 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:19,104 INFO L471 AbstractCegarLoop]: Abstraction has 297 states and 373 transitions. [2024-11-08 16:51:19,109 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-08 16:51:19,109 INFO L276 IsEmpty]: Start isEmpty. Operand 297 states and 373 transitions. [2024-11-08 16:51:19,111 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-11-08 16:51:19,114 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:19,115 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:19,115 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-11-08 16:51:19,116 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:19,116 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:19,116 INFO L85 PathProgramCache]: Analyzing trace with hash -311685255, now seen corresponding path program 1 times [2024-11-08 16:51:19,116 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:19,117 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2048544930] [2024-11-08 16:51:19,120 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:19,121 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:19,154 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:19,219 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2024-11-08 16:51:19,224 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:19,231 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2024-11-08 16:51:19,243 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:19,296 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:19,298 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:19,304 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 51 [2024-11-08 16:51:19,307 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:19,309 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-08 16:51:19,312 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:19,312 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2048544930] [2024-11-08 16:51:19,312 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2048544930] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-08 16:51:19,312 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-08 16:51:19,313 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-11-08 16:51:19,314 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1908832373] [2024-11-08 16:51:19,314 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-08 16:51:19,315 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-08 16:51:19,315 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:19,316 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-08 16:51:19,318 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-11-08 16:51:19,318 INFO L87 Difference]: Start difference. First operand 297 states and 373 transitions. Second operand has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-08 16:51:19,560 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:19,560 INFO L93 Difference]: Finished difference Result 640 states and 823 transitions. [2024-11-08 16:51:19,561 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-11-08 16:51:19,562 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 59 [2024-11-08 16:51:19,563 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:19,566 INFO L225 Difference]: With dead ends: 640 [2024-11-08 16:51:19,569 INFO L226 Difference]: Without dead ends: 351 [2024-11-08 16:51:19,571 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2024-11-08 16:51:19,572 INFO L432 NwaCegarLoop]: 86 mSDtfsCounter, 59 mSDsluCounter, 288 mSDsCounter, 0 mSdLazyCounter, 137 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 65 SdHoareTripleChecker+Valid, 374 SdHoareTripleChecker+Invalid, 152 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 137 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:19,572 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [65 Valid, 374 Invalid, 152 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 137 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-08 16:51:19,574 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 351 states. [2024-11-08 16:51:19,628 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 351 to 349. [2024-11-08 16:51:19,629 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 349 states, 263 states have (on average 1.258555133079848) internal successors, (331), 282 states have internal predecessors, (331), 45 states have call successors, (45), 34 states have call predecessors, (45), 40 states have return successors, (61), 46 states have call predecessors, (61), 45 states have call successors, (61) [2024-11-08 16:51:19,631 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 349 states to 349 states and 437 transitions. [2024-11-08 16:51:19,634 INFO L78 Accepts]: Start accepts. Automaton has 349 states and 437 transitions. Word has length 59 [2024-11-08 16:51:19,635 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:19,635 INFO L471 AbstractCegarLoop]: Abstraction has 349 states and 437 transitions. [2024-11-08 16:51:19,636 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 5 states have internal predecessors, (48), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-08 16:51:19,636 INFO L276 IsEmpty]: Start isEmpty. Operand 349 states and 437 transitions. [2024-11-08 16:51:19,638 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-11-08 16:51:19,640 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:19,641 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:19,641 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-11-08 16:51:19,641 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:19,642 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:19,642 INFO L85 PathProgramCache]: Analyzing trace with hash 1611542779, now seen corresponding path program 1 times [2024-11-08 16:51:19,642 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:19,642 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1114512221] [2024-11-08 16:51:19,645 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:19,646 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:19,686 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:19,809 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2024-11-08 16:51:19,811 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:19,820 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2024-11-08 16:51:19,831 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:19,868 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:19,870 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:19,872 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 51 [2024-11-08 16:51:19,875 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:19,877 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-08 16:51:19,877 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:19,877 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1114512221] [2024-11-08 16:51:19,878 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1114512221] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-08 16:51:19,879 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-08 16:51:19,879 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2024-11-08 16:51:19,879 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1305602903] [2024-11-08 16:51:19,879 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-08 16:51:19,882 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2024-11-08 16:51:19,882 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:19,883 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2024-11-08 16:51:19,883 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2024-11-08 16:51:19,883 INFO L87 Difference]: Start difference. First operand 349 states and 437 transitions. Second operand has 7 states, 7 states have (on average 6.857142857142857) internal successors, (48), 6 states have internal predecessors, (48), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-08 16:51:20,134 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:20,135 INFO L93 Difference]: Finished difference Result 696 states and 891 transitions. [2024-11-08 16:51:20,136 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-08 16:51:20,137 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.857142857142857) internal successors, (48), 6 states have internal predecessors, (48), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 59 [2024-11-08 16:51:20,137 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:20,139 INFO L225 Difference]: With dead ends: 696 [2024-11-08 16:51:20,141 INFO L226 Difference]: Without dead ends: 355 [2024-11-08 16:51:20,143 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=53, Unknown=0, NotChecked=0, Total=72 [2024-11-08 16:51:20,143 INFO L432 NwaCegarLoop]: 85 mSDtfsCounter, 58 mSDsluCounter, 364 mSDsCounter, 0 mSdLazyCounter, 175 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 449 SdHoareTripleChecker+Invalid, 190 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 175 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:20,144 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [64 Valid, 449 Invalid, 190 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 175 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-08 16:51:20,149 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 355 states. [2024-11-08 16:51:20,198 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 355 to 353. [2024-11-08 16:51:20,199 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 353 states, 267 states have (on average 1.2546816479400749) internal successors, (335), 286 states have internal predecessors, (335), 45 states have call successors, (45), 34 states have call predecessors, (45), 40 states have return successors, (61), 46 states have call predecessors, (61), 45 states have call successors, (61) [2024-11-08 16:51:20,202 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 353 states to 353 states and 441 transitions. [2024-11-08 16:51:20,204 INFO L78 Accepts]: Start accepts. Automaton has 353 states and 441 transitions. Word has length 59 [2024-11-08 16:51:20,205 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:20,205 INFO L471 AbstractCegarLoop]: Abstraction has 353 states and 441 transitions. [2024-11-08 16:51:20,206 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.857142857142857) internal successors, (48), 6 states have internal predecessors, (48), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-08 16:51:20,206 INFO L276 IsEmpty]: Start isEmpty. Operand 353 states and 441 transitions. [2024-11-08 16:51:20,207 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-11-08 16:51:20,207 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:20,208 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:20,209 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-11-08 16:51:20,210 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:20,210 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:20,211 INFO L85 PathProgramCache]: Analyzing trace with hash -1297221123, now seen corresponding path program 1 times [2024-11-08 16:51:20,211 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:20,211 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1083322634] [2024-11-08 16:51:20,211 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:20,211 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:20,236 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:20,335 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2024-11-08 16:51:20,341 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:20,351 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2024-11-08 16:51:20,357 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:20,388 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:20,391 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:20,396 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 51 [2024-11-08 16:51:20,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:20,402 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-08 16:51:20,405 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:20,405 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1083322634] [2024-11-08 16:51:20,405 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1083322634] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-08 16:51:20,406 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-08 16:51:20,406 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-11-08 16:51:20,406 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [251277592] [2024-11-08 16:51:20,406 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-08 16:51:20,407 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-08 16:51:20,407 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:20,407 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-08 16:51:20,408 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-08 16:51:20,408 INFO L87 Difference]: Start difference. First operand 353 states and 441 transitions. Second operand has 5 states, 5 states have (on average 9.6) internal successors, (48), 4 states have internal predecessors, (48), 3 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-11-08 16:51:20,777 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:20,777 INFO L93 Difference]: Finished difference Result 1040 states and 1352 transitions. [2024-11-08 16:51:20,778 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-08 16:51:20,778 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.6) internal successors, (48), 4 states have internal predecessors, (48), 3 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 59 [2024-11-08 16:51:20,778 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:20,784 INFO L225 Difference]: With dead ends: 1040 [2024-11-08 16:51:20,784 INFO L226 Difference]: Without dead ends: 695 [2024-11-08 16:51:20,786 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 12 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-11-08 16:51:20,788 INFO L432 NwaCegarLoop]: 131 mSDtfsCounter, 237 mSDsluCounter, 180 mSDsCounter, 0 mSdLazyCounter, 147 mSolverCounterSat, 70 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 245 SdHoareTripleChecker+Valid, 311 SdHoareTripleChecker+Invalid, 217 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 70 IncrementalHoareTripleChecker+Valid, 147 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:20,790 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [245 Valid, 311 Invalid, 217 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [70 Valid, 147 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-11-08 16:51:20,792 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 695 states. [2024-11-08 16:51:20,874 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 695 to 688. [2024-11-08 16:51:20,876 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 688 states, 519 states have (on average 1.229287090558767) internal successors, (638), 550 states have internal predecessors, (638), 92 states have call successors, (92), 75 states have call predecessors, (92), 76 states have return successors, (137), 90 states have call predecessors, (137), 92 states have call successors, (137) [2024-11-08 16:51:20,884 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 688 states to 688 states and 867 transitions. [2024-11-08 16:51:20,885 INFO L78 Accepts]: Start accepts. Automaton has 688 states and 867 transitions. Word has length 59 [2024-11-08 16:51:20,886 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:20,886 INFO L471 AbstractCegarLoop]: Abstraction has 688 states and 867 transitions. [2024-11-08 16:51:20,886 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.6) internal successors, (48), 4 states have internal predecessors, (48), 3 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-11-08 16:51:20,886 INFO L276 IsEmpty]: Start isEmpty. Operand 688 states and 867 transitions. [2024-11-08 16:51:20,889 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-11-08 16:51:20,889 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:20,890 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:20,890 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-11-08 16:51:20,890 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:20,894 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:20,894 INFO L85 PathProgramCache]: Analyzing trace with hash 1527751395, now seen corresponding path program 1 times [2024-11-08 16:51:20,894 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:20,894 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1110613686] [2024-11-08 16:51:20,894 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:20,895 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:20,915 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:21,099 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:21,101 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:21,181 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2024-11-08 16:51:21,183 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:21,198 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2024-11-08 16:51:21,206 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:21,217 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:21,221 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:21,223 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2024-11-08 16:51:21,227 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:21,229 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-08 16:51:21,229 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:21,229 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1110613686] [2024-11-08 16:51:21,229 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1110613686] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-08 16:51:21,231 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-08 16:51:21,231 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2024-11-08 16:51:21,231 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [712447891] [2024-11-08 16:51:21,232 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-08 16:51:21,232 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-11-08 16:51:21,232 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:21,233 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-11-08 16:51:21,233 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=56, Unknown=0, NotChecked=0, Total=72 [2024-11-08 16:51:21,234 INFO L87 Difference]: Start difference. First operand 688 states and 867 transitions. Second operand has 9 states, 9 states have (on average 5.555555555555555) internal successors, (50), 7 states have internal predecessors, (50), 4 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2024-11-08 16:51:22,164 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:22,164 INFO L93 Difference]: Finished difference Result 2043 states and 2674 transitions. [2024-11-08 16:51:22,165 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-11-08 16:51:22,165 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 5.555555555555555) internal successors, (50), 7 states have internal predecessors, (50), 4 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) Word has length 63 [2024-11-08 16:51:22,166 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:22,175 INFO L225 Difference]: With dead ends: 2043 [2024-11-08 16:51:22,175 INFO L226 Difference]: Without dead ends: 1500 [2024-11-08 16:51:22,179 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 32 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 19 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 67 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=101, Invalid=319, Unknown=0, NotChecked=0, Total=420 [2024-11-08 16:51:22,180 INFO L432 NwaCegarLoop]: 105 mSDtfsCounter, 504 mSDsluCounter, 446 mSDsCounter, 0 mSdLazyCounter, 497 mSolverCounterSat, 158 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 512 SdHoareTripleChecker+Valid, 551 SdHoareTripleChecker+Invalid, 655 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 158 IncrementalHoareTripleChecker+Valid, 497 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:22,180 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [512 Valid, 551 Invalid, 655 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [158 Valid, 497 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2024-11-08 16:51:22,182 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1500 states. [2024-11-08 16:51:22,337 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1500 to 1308. [2024-11-08 16:51:22,339 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1308 states, 985 states have (on average 1.2243654822335026) internal successors, (1206), 1051 states have internal predecessors, (1206), 175 states have call successors, (175), 131 states have call predecessors, (175), 147 states have return successors, (263), 172 states have call predecessors, (263), 175 states have call successors, (263) [2024-11-08 16:51:22,346 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1308 states to 1308 states and 1644 transitions. [2024-11-08 16:51:22,348 INFO L78 Accepts]: Start accepts. Automaton has 1308 states and 1644 transitions. Word has length 63 [2024-11-08 16:51:22,349 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:22,349 INFO L471 AbstractCegarLoop]: Abstraction has 1308 states and 1644 transitions. [2024-11-08 16:51:22,349 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 5.555555555555555) internal successors, (50), 7 states have internal predecessors, (50), 4 states have call successors, (6), 4 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2024-11-08 16:51:22,349 INFO L276 IsEmpty]: Start isEmpty. Operand 1308 states and 1644 transitions. [2024-11-08 16:51:22,353 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 107 [2024-11-08 16:51:22,354 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:22,355 INFO L215 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:22,355 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2024-11-08 16:51:22,355 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:22,355 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:22,356 INFO L85 PathProgramCache]: Analyzing trace with hash 1536302152, now seen corresponding path program 1 times [2024-11-08 16:51:22,356 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:22,356 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1060005990] [2024-11-08 16:51:22,356 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:22,356 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:22,376 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,551 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:22,552 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,570 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-11-08 16:51:22,577 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,614 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:22,615 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,628 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-11-08 16:51:22,633 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,644 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:22,647 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,648 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 68 [2024-11-08 16:51:22,652 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,682 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 79 [2024-11-08 16:51:22,684 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,686 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 86 [2024-11-08 16:51:22,687 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,691 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-11-08 16:51:22,692 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,693 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 98 [2024-11-08 16:51:22,695 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,697 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 17 proven. 9 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2024-11-08 16:51:22,699 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:22,699 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1060005990] [2024-11-08 16:51:22,699 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1060005990] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-08 16:51:22,699 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [144378084] [2024-11-08 16:51:22,700 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:22,700 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-08 16:51:22,700 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 [2024-11-08 16:51:22,702 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-08 16:51:22,706 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-11-08 16:51:22,834 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:22,841 INFO L255 TraceCheckSpWp]: Trace formula consists of 341 conjuncts, 8 conjuncts are in the unsatisfiable core [2024-11-08 16:51:22,856 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-08 16:51:23,109 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 28 proven. 9 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-08 16:51:23,109 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-08 16:51:23,369 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 18 proven. 8 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2024-11-08 16:51:23,370 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [144378084] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-08 16:51:23,370 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-08 16:51:23,370 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 6, 6] total 16 [2024-11-08 16:51:23,370 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1749153551] [2024-11-08 16:51:23,371 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-08 16:51:23,371 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 16 states [2024-11-08 16:51:23,371 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:23,372 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 16 interpolants. [2024-11-08 16:51:23,372 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=38, Invalid=202, Unknown=0, NotChecked=0, Total=240 [2024-11-08 16:51:23,373 INFO L87 Difference]: Start difference. First operand 1308 states and 1644 transitions. Second operand has 16 states, 16 states have (on average 7.6875) internal successors, (123), 11 states have internal predecessors, (123), 5 states have call successors, (24), 7 states have call predecessors, (24), 6 states have return successors, (20), 7 states have call predecessors, (20), 5 states have call successors, (20) [2024-11-08 16:51:25,046 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:25,047 INFO L93 Difference]: Finished difference Result 2910 states and 3793 transitions. [2024-11-08 16:51:25,047 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 39 states. [2024-11-08 16:51:25,047 INFO L78 Accepts]: Start accepts. Automaton has has 16 states, 16 states have (on average 7.6875) internal successors, (123), 11 states have internal predecessors, (123), 5 states have call successors, (24), 7 states have call predecessors, (24), 6 states have return successors, (20), 7 states have call predecessors, (20), 5 states have call successors, (20) Word has length 106 [2024-11-08 16:51:25,048 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:25,059 INFO L225 Difference]: With dead ends: 2910 [2024-11-08 16:51:25,059 INFO L226 Difference]: Without dead ends: 1741 [2024-11-08 16:51:25,067 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 283 GetRequests, 234 SyntacticMatches, 4 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 553 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=400, Invalid=1762, Unknown=0, NotChecked=0, Total=2162 [2024-11-08 16:51:25,068 INFO L432 NwaCegarLoop]: 183 mSDtfsCounter, 338 mSDsluCounter, 1310 mSDsCounter, 0 mSdLazyCounter, 1241 mSolverCounterSat, 127 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 345 SdHoareTripleChecker+Valid, 1493 SdHoareTripleChecker+Invalid, 1368 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 127 IncrementalHoareTripleChecker+Valid, 1241 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:25,069 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [345 Valid, 1493 Invalid, 1368 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [127 Valid, 1241 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2024-11-08 16:51:25,072 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1741 states. [2024-11-08 16:51:25,238 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1741 to 1462. [2024-11-08 16:51:25,241 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1462 states, 1086 states have (on average 1.205340699815838) internal successors, (1309), 1172 states have internal predecessors, (1309), 202 states have call successors, (202), 166 states have call predecessors, (202), 173 states have return successors, (272), 183 states have call predecessors, (272), 202 states have call successors, (272) [2024-11-08 16:51:25,249 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1462 states to 1462 states and 1783 transitions. [2024-11-08 16:51:25,251 INFO L78 Accepts]: Start accepts. Automaton has 1462 states and 1783 transitions. Word has length 106 [2024-11-08 16:51:25,252 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:25,253 INFO L471 AbstractCegarLoop]: Abstraction has 1462 states and 1783 transitions. [2024-11-08 16:51:25,253 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 16 states, 16 states have (on average 7.6875) internal successors, (123), 11 states have internal predecessors, (123), 5 states have call successors, (24), 7 states have call predecessors, (24), 6 states have return successors, (20), 7 states have call predecessors, (20), 5 states have call successors, (20) [2024-11-08 16:51:25,253 INFO L276 IsEmpty]: Start isEmpty. Operand 1462 states and 1783 transitions. [2024-11-08 16:51:25,260 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 192 [2024-11-08 16:51:25,260 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:25,261 INFO L215 NwaCegarLoop]: trace histogram [5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:25,282 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-11-08 16:51:25,465 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-08 16:51:25,465 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:25,465 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:25,465 INFO L85 PathProgramCache]: Analyzing trace with hash -458244594, now seen corresponding path program 1 times [2024-11-08 16:51:25,466 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:25,466 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1116899211] [2024-11-08 16:51:25,466 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:25,466 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:25,497 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,700 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:25,701 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,713 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-11-08 16:51:25,717 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,725 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:25,726 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,732 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-11-08 16:51:25,735 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,766 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:25,768 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,771 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2024-11-08 16:51:25,777 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,860 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:25,861 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,863 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:25,866 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,895 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-11-08 16:51:25,897 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,899 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-11-08 16:51:25,901 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,902 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 109 [2024-11-08 16:51:25,908 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,969 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:25,971 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,972 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:25,975 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,988 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-11-08 16:51:25,990 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,993 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 150 [2024-11-08 16:51:25,994 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:25,996 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 159 [2024-11-08 16:51:26,001 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:26,007 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:26,009 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:26,011 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 183 [2024-11-08 16:51:26,013 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:26,015 INFO L134 CoverageAnalysis]: Checked inductivity of 212 backedges. 101 proven. 13 refuted. 0 times theorem prover too weak. 98 trivial. 0 not checked. [2024-11-08 16:51:26,015 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:26,016 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1116899211] [2024-11-08 16:51:26,016 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1116899211] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-08 16:51:26,017 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1481792494] [2024-11-08 16:51:26,017 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:26,017 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-08 16:51:26,017 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 [2024-11-08 16:51:26,020 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-08 16:51:26,023 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-11-08 16:51:26,195 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:26,200 INFO L255 TraceCheckSpWp]: Trace formula consists of 553 conjuncts, 13 conjuncts are in the unsatisfiable core [2024-11-08 16:51:26,210 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-08 16:51:26,477 INFO L134 CoverageAnalysis]: Checked inductivity of 212 backedges. 154 proven. 4 refuted. 0 times theorem prover too weak. 54 trivial. 0 not checked. [2024-11-08 16:51:26,477 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-08 16:51:27,075 INFO L134 CoverageAnalysis]: Checked inductivity of 212 backedges. 77 proven. 39 refuted. 0 times theorem prover too weak. 96 trivial. 0 not checked. [2024-11-08 16:51:27,076 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1481792494] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-08 16:51:27,076 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-08 16:51:27,076 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 10, 11] total 28 [2024-11-08 16:51:27,076 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1580581979] [2024-11-08 16:51:27,076 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-08 16:51:27,077 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2024-11-08 16:51:27,077 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:27,078 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2024-11-08 16:51:27,079 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=124, Invalid=632, Unknown=0, NotChecked=0, Total=756 [2024-11-08 16:51:27,079 INFO L87 Difference]: Start difference. First operand 1462 states and 1783 transitions. Second operand has 28 states, 28 states have (on average 7.642857142857143) internal successors, (214), 22 states have internal predecessors, (214), 10 states have call successors, (35), 8 states have call predecessors, (35), 11 states have return successors, (39), 11 states have call predecessors, (39), 10 states have call successors, (39) [2024-11-08 16:51:29,825 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:29,825 INFO L93 Difference]: Finished difference Result 4358 states and 5535 transitions. [2024-11-08 16:51:29,825 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 49 states. [2024-11-08 16:51:29,826 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 28 states have (on average 7.642857142857143) internal successors, (214), 22 states have internal predecessors, (214), 10 states have call successors, (35), 8 states have call predecessors, (35), 11 states have return successors, (39), 11 states have call predecessors, (39), 10 states have call successors, (39) Word has length 191 [2024-11-08 16:51:29,826 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:29,844 INFO L225 Difference]: With dead ends: 4358 [2024-11-08 16:51:29,844 INFO L226 Difference]: Without dead ends: 2904 [2024-11-08 16:51:29,852 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 491 GetRequests, 415 SyntacticMatches, 3 SemanticMatches, 73 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1429 ImplicationChecksByTransitivity, 1.2s TimeCoverageRelationStatistics Valid=985, Invalid=4565, Unknown=0, NotChecked=0, Total=5550 [2024-11-08 16:51:29,853 INFO L432 NwaCegarLoop]: 134 mSDtfsCounter, 1199 mSDsluCounter, 1125 mSDsCounter, 0 mSdLazyCounter, 1956 mSolverCounterSat, 489 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1199 SdHoareTripleChecker+Valid, 1259 SdHoareTripleChecker+Invalid, 2445 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 489 IncrementalHoareTripleChecker+Valid, 1956 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.5s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:29,854 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [1199 Valid, 1259 Invalid, 2445 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [489 Valid, 1956 Invalid, 0 Unknown, 0 Unchecked, 1.5s Time] [2024-11-08 16:51:29,858 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2904 states. [2024-11-08 16:51:30,137 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2904 to 2802. [2024-11-08 16:51:30,142 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 2802 states, 2101 states have (on average 1.1561161351737268) internal successors, (2429), 2232 states have internal predecessors, (2429), 384 states have call successors, (384), 330 states have call predecessors, (384), 316 states have return successors, (474), 332 states have call predecessors, (474), 384 states have call successors, (474) [2024-11-08 16:51:30,156 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 2802 states to 2802 states and 3287 transitions. [2024-11-08 16:51:30,159 INFO L78 Accepts]: Start accepts. Automaton has 2802 states and 3287 transitions. Word has length 191 [2024-11-08 16:51:30,159 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:30,160 INFO L471 AbstractCegarLoop]: Abstraction has 2802 states and 3287 transitions. [2024-11-08 16:51:30,160 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 28 states have (on average 7.642857142857143) internal successors, (214), 22 states have internal predecessors, (214), 10 states have call successors, (35), 8 states have call predecessors, (35), 11 states have return successors, (39), 11 states have call predecessors, (39), 10 states have call successors, (39) [2024-11-08 16:51:30,160 INFO L276 IsEmpty]: Start isEmpty. Operand 2802 states and 3287 transitions. [2024-11-08 16:51:30,170 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 212 [2024-11-08 16:51:30,170 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:30,170 INFO L215 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:30,193 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2024-11-08 16:51:30,375 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2024-11-08 16:51:30,375 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:30,376 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:30,376 INFO L85 PathProgramCache]: Analyzing trace with hash -1591866576, now seen corresponding path program 1 times [2024-11-08 16:51:30,376 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:30,376 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [331978557] [2024-11-08 16:51:30,376 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:30,376 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:30,410 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,653 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:30,654 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,672 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-11-08 16:51:30,678 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,746 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:30,747 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,758 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-11-08 16:51:30,763 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,777 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:30,779 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,782 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2024-11-08 16:51:30,789 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,863 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:30,865 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,866 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:30,869 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,872 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-11-08 16:51:30,874 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,879 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-11-08 16:51:30,880 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,882 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2024-11-08 16:51:30,887 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,923 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 113 [2024-11-08 16:51:30,925 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,927 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 119 [2024-11-08 16:51:30,935 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,943 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:30,945 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,946 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:30,948 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,950 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-11-08 16:51:30,951 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,953 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2024-11-08 16:51:30,954 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,956 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 160 [2024-11-08 16:51:30,959 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,961 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 170 [2024-11-08 16:51:30,966 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,967 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 179 [2024-11-08 16:51:30,972 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,978 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:30,979 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,982 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 203 [2024-11-08 16:51:30,983 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:30,986 INFO L134 CoverageAnalysis]: Checked inductivity of 258 backedges. 95 proven. 44 refuted. 0 times theorem prover too weak. 119 trivial. 0 not checked. [2024-11-08 16:51:30,986 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:30,987 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [331978557] [2024-11-08 16:51:30,987 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [331978557] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-08 16:51:30,987 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [590755565] [2024-11-08 16:51:30,987 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:30,988 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-08 16:51:30,988 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 [2024-11-08 16:51:30,990 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-08 16:51:30,992 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-11-08 16:51:31,206 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:31,209 INFO L255 TraceCheckSpWp]: Trace formula consists of 602 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-11-08 16:51:31,225 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-08 16:51:31,469 INFO L134 CoverageAnalysis]: Checked inductivity of 258 backedges. 195 proven. 9 refuted. 0 times theorem prover too weak. 54 trivial. 0 not checked. [2024-11-08 16:51:31,472 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-08 16:51:32,091 INFO L134 CoverageAnalysis]: Checked inductivity of 258 backedges. 99 proven. 54 refuted. 0 times theorem prover too weak. 105 trivial. 0 not checked. [2024-11-08 16:51:32,092 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [590755565] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-08 16:51:32,093 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-08 16:51:32,093 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 8, 8] total 23 [2024-11-08 16:51:32,093 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [643314168] [2024-11-08 16:51:32,093 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-08 16:51:32,094 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2024-11-08 16:51:32,094 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:32,095 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2024-11-08 16:51:32,096 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=70, Invalid=436, Unknown=0, NotChecked=0, Total=506 [2024-11-08 16:51:32,097 INFO L87 Difference]: Start difference. First operand 2802 states and 3287 transitions. Second operand has 23 states, 23 states have (on average 9.347826086956522) internal successors, (215), 16 states have internal predecessors, (215), 6 states have call successors, (48), 8 states have call predecessors, (48), 11 states have return successors, (41), 9 states have call predecessors, (41), 6 states have call successors, (41) [2024-11-08 16:51:34,534 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:34,534 INFO L93 Difference]: Finished difference Result 5472 states and 6492 transitions. [2024-11-08 16:51:34,535 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 31 states. [2024-11-08 16:51:34,535 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 23 states have (on average 9.347826086956522) internal successors, (215), 16 states have internal predecessors, (215), 6 states have call successors, (48), 8 states have call predecessors, (48), 11 states have return successors, (41), 9 states have call predecessors, (41), 6 states have call successors, (41) Word has length 211 [2024-11-08 16:51:34,536 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:34,557 INFO L225 Difference]: With dead ends: 5472 [2024-11-08 16:51:34,557 INFO L226 Difference]: Without dead ends: 2940 [2024-11-08 16:51:34,566 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 511 GetRequests, 464 SyntacticMatches, 1 SemanticMatches, 46 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 396 ImplicationChecksByTransitivity, 0.9s TimeCoverageRelationStatistics Valid=399, Invalid=1857, Unknown=0, NotChecked=0, Total=2256 [2024-11-08 16:51:34,567 INFO L432 NwaCegarLoop]: 44 mSDtfsCounter, 528 mSDsluCounter, 423 mSDsCounter, 0 mSdLazyCounter, 1835 mSolverCounterSat, 181 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 534 SdHoareTripleChecker+Valid, 467 SdHoareTripleChecker+Invalid, 2016 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 181 IncrementalHoareTripleChecker+Valid, 1835 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.5s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:34,568 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [534 Valid, 467 Invalid, 2016 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [181 Valid, 1835 Invalid, 0 Unknown, 0 Unchecked, 1.5s Time] [2024-11-08 16:51:34,572 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2940 states. [2024-11-08 16:51:34,916 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2940 to 2716. [2024-11-08 16:51:34,922 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 2716 states, 2045 states have (on average 1.1466992665036675) internal successors, (2345), 2164 states have internal predecessors, (2345), 350 states have call successors, (350), 322 states have call predecessors, (350), 320 states have return successors, (422), 322 states have call predecessors, (422), 350 states have call successors, (422) [2024-11-08 16:51:34,933 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 2716 states to 2716 states and 3117 transitions. [2024-11-08 16:51:34,937 INFO L78 Accepts]: Start accepts. Automaton has 2716 states and 3117 transitions. Word has length 211 [2024-11-08 16:51:34,938 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:34,938 INFO L471 AbstractCegarLoop]: Abstraction has 2716 states and 3117 transitions. [2024-11-08 16:51:34,938 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 23 states have (on average 9.347826086956522) internal successors, (215), 16 states have internal predecessors, (215), 6 states have call successors, (48), 8 states have call predecessors, (48), 11 states have return successors, (41), 9 states have call predecessors, (41), 6 states have call successors, (41) [2024-11-08 16:51:34,939 INFO L276 IsEmpty]: Start isEmpty. Operand 2716 states and 3117 transitions. [2024-11-08 16:51:34,948 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 213 [2024-11-08 16:51:34,949 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:34,949 INFO L215 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:34,975 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-11-08 16:51:35,150 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-11-08 16:51:35,151 INFO L396 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:35,152 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:35,152 INFO L85 PathProgramCache]: Analyzing trace with hash 368538726, now seen corresponding path program 1 times [2024-11-08 16:51:35,152 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:35,153 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1391630540] [2024-11-08 16:51:35,153 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:35,153 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:35,187 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,419 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:35,421 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,435 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-11-08 16:51:35,440 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,447 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:35,448 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,457 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-11-08 16:51:35,460 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,464 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:35,466 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,469 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2024-11-08 16:51:35,473 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,478 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:35,479 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,480 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:35,482 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,484 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-11-08 16:51:35,485 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,486 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-11-08 16:51:35,487 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,488 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2024-11-08 16:51:35,489 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,499 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 114 [2024-11-08 16:51:35,500 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,516 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 120 [2024-11-08 16:51:35,521 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,529 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:35,530 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,531 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:35,533 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,534 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-11-08 16:51:35,535 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,536 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2024-11-08 16:51:35,537 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,539 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 161 [2024-11-08 16:51:35,540 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,542 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 171 [2024-11-08 16:51:35,544 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,545 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 180 [2024-11-08 16:51:35,551 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,632 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:35,635 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,675 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 204 [2024-11-08 16:51:35,677 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,679 INFO L134 CoverageAnalysis]: Checked inductivity of 259 backedges. 86 proven. 3 refuted. 0 times theorem prover too weak. 170 trivial. 0 not checked. [2024-11-08 16:51:35,679 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:35,679 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1391630540] [2024-11-08 16:51:35,679 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1391630540] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-08 16:51:35,679 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [218438009] [2024-11-08 16:51:35,680 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:35,680 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-08 16:51:35,680 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 [2024-11-08 16:51:35,682 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-08 16:51:35,685 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-11-08 16:51:35,873 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:35,883 INFO L255 TraceCheckSpWp]: Trace formula consists of 602 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-11-08 16:51:35,889 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-08 16:51:36,288 INFO L134 CoverageAnalysis]: Checked inductivity of 259 backedges. 138 proven. 26 refuted. 0 times theorem prover too weak. 95 trivial. 0 not checked. [2024-11-08 16:51:36,289 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-08 16:51:37,308 INFO L134 CoverageAnalysis]: Checked inductivity of 259 backedges. 99 proven. 45 refuted. 0 times theorem prover too weak. 115 trivial. 0 not checked. [2024-11-08 16:51:37,308 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [218438009] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-08 16:51:37,308 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-08 16:51:37,309 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 8, 13] total 29 [2024-11-08 16:51:37,309 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1621789161] [2024-11-08 16:51:37,309 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-08 16:51:37,310 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 29 states [2024-11-08 16:51:37,310 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:37,311 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 29 interpolants. [2024-11-08 16:51:37,312 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=120, Invalid=692, Unknown=0, NotChecked=0, Total=812 [2024-11-08 16:51:37,313 INFO L87 Difference]: Start difference. First operand 2716 states and 3117 transitions. Second operand has 29 states, 29 states have (on average 8.724137931034482) internal successors, (253), 23 states have internal predecessors, (253), 13 states have call successors, (50), 12 states have call predecessors, (50), 15 states have return successors, (51), 14 states have call predecessors, (51), 13 states have call successors, (51) [2024-11-08 16:51:43,203 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:43,204 INFO L93 Difference]: Finished difference Result 6047 states and 7029 transitions. [2024-11-08 16:51:43,204 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 68 states. [2024-11-08 16:51:43,205 INFO L78 Accepts]: Start accepts. Automaton has has 29 states, 29 states have (on average 8.724137931034482) internal successors, (253), 23 states have internal predecessors, (253), 13 states have call successors, (50), 12 states have call predecessors, (50), 15 states have return successors, (51), 14 states have call predecessors, (51), 13 states have call successors, (51) Word has length 212 [2024-11-08 16:51:43,206 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:43,228 INFO L225 Difference]: With dead ends: 6047 [2024-11-08 16:51:43,228 INFO L226 Difference]: Without dead ends: 3619 [2024-11-08 16:51:43,238 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 571 GetRequests, 471 SyntacticMatches, 7 SemanticMatches, 93 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2471 ImplicationChecksByTransitivity, 2.1s TimeCoverageRelationStatistics Valid=1652, Invalid=7278, Unknown=0, NotChecked=0, Total=8930 [2024-11-08 16:51:43,239 INFO L432 NwaCegarLoop]: 142 mSDtfsCounter, 2028 mSDsluCounter, 1404 mSDsCounter, 0 mSdLazyCounter, 5317 mSolverCounterSat, 757 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 2028 SdHoareTripleChecker+Valid, 1546 SdHoareTripleChecker+Invalid, 6074 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.1s SdHoareTripleChecker+Time, 757 IncrementalHoareTripleChecker+Valid, 5317 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.7s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:43,240 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [2028 Valid, 1546 Invalid, 6074 Unknown, 0 Unchecked, 0.1s Time], IncrementalHoareTripleChecker [757 Valid, 5317 Invalid, 0 Unknown, 0 Unchecked, 3.7s Time] [2024-11-08 16:51:43,244 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 3619 states. [2024-11-08 16:51:43,685 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 3619 to 3291. [2024-11-08 16:51:43,691 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 3291 states, 2482 states have (on average 1.145044319097502) internal successors, (2842), 2600 states have internal predecessors, (2842), 429 states have call successors, (429), 397 states have call predecessors, (429), 379 states have return successors, (488), 386 states have call predecessors, (488), 429 states have call successors, (488) [2024-11-08 16:51:43,701 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3291 states to 3291 states and 3759 transitions. [2024-11-08 16:51:43,707 INFO L78 Accepts]: Start accepts. Automaton has 3291 states and 3759 transitions. Word has length 212 [2024-11-08 16:51:43,708 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:43,708 INFO L471 AbstractCegarLoop]: Abstraction has 3291 states and 3759 transitions. [2024-11-08 16:51:43,708 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 29 states, 29 states have (on average 8.724137931034482) internal successors, (253), 23 states have internal predecessors, (253), 13 states have call successors, (50), 12 states have call predecessors, (50), 15 states have return successors, (51), 14 states have call predecessors, (51), 13 states have call successors, (51) [2024-11-08 16:51:43,709 INFO L276 IsEmpty]: Start isEmpty. Operand 3291 states and 3759 transitions. [2024-11-08 16:51:43,721 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 249 [2024-11-08 16:51:43,721 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:43,721 INFO L215 NwaCegarLoop]: trace histogram [8, 8, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:43,746 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2024-11-08 16:51:43,922 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-11-08 16:51:43,922 INFO L396 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:43,923 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:43,923 INFO L85 PathProgramCache]: Analyzing trace with hash -1675563618, now seen corresponding path program 1 times [2024-11-08 16:51:43,923 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:43,923 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [498203278] [2024-11-08 16:51:43,923 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:43,924 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:43,962 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,288 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:44,289 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,303 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-11-08 16:51:44,308 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,345 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:44,346 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,356 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-11-08 16:51:44,359 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,365 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:44,366 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,368 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2024-11-08 16:51:44,374 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,384 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:44,385 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,386 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:44,388 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,389 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-11-08 16:51:44,390 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,392 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-11-08 16:51:44,393 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,394 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2024-11-08 16:51:44,395 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,409 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 114 [2024-11-08 16:51:44,410 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,411 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 120 [2024-11-08 16:51:44,415 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,421 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:44,424 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,425 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:44,428 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,429 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-11-08 16:51:44,430 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,431 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2024-11-08 16:51:44,433 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,434 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 161 [2024-11-08 16:51:44,435 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,436 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 167 [2024-11-08 16:51:44,438 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,440 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 177 [2024-11-08 16:51:44,442 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,521 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:44,522 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,523 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 197 [2024-11-08 16:51:44,525 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,559 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 207 [2024-11-08 16:51:44,560 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,561 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 216 [2024-11-08 16:51:44,566 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,572 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:44,574 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,576 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 240 [2024-11-08 16:51:44,577 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,579 INFO L134 CoverageAnalysis]: Checked inductivity of 373 backedges. 107 proven. 34 refuted. 0 times theorem prover too weak. 232 trivial. 0 not checked. [2024-11-08 16:51:44,579 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:44,580 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [498203278] [2024-11-08 16:51:44,580 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [498203278] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-08 16:51:44,580 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [525968945] [2024-11-08 16:51:44,580 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:44,580 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-08 16:51:44,581 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 [2024-11-08 16:51:44,583 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-08 16:51:44,584 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-11-08 16:51:44,784 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:44,787 INFO L255 TraceCheckSpWp]: Trace formula consists of 688 conjuncts, 3 conjuncts are in the unsatisfiable core [2024-11-08 16:51:44,794 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-08 16:51:44,874 INFO L134 CoverageAnalysis]: Checked inductivity of 373 backedges. 208 proven. 0 refuted. 0 times theorem prover too weak. 165 trivial. 0 not checked. [2024-11-08 16:51:44,874 INFO L307 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-11-08 16:51:44,874 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [525968945] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-08 16:51:44,874 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-11-08 16:51:44,875 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [13] total 14 [2024-11-08 16:51:44,875 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2002073028] [2024-11-08 16:51:44,875 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-08 16:51:44,876 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-08 16:51:44,877 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:44,877 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-08 16:51:44,878 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=32, Invalid=150, Unknown=0, NotChecked=0, Total=182 [2024-11-08 16:51:44,879 INFO L87 Difference]: Start difference. First operand 3291 states and 3759 transitions. Second operand has 3 states, 3 states have (on average 41.333333333333336) internal successors, (124), 3 states have internal predecessors, (124), 3 states have call successors, (17), 3 states have call predecessors, (17), 3 states have return successors, (17), 3 states have call predecessors, (17), 3 states have call successors, (17) [2024-11-08 16:51:45,233 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:45,233 INFO L93 Difference]: Finished difference Result 4020 states and 4602 transitions. [2024-11-08 16:51:45,234 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-08 16:51:45,234 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 41.333333333333336) internal successors, (124), 3 states have internal predecessors, (124), 3 states have call successors, (17), 3 states have call predecessors, (17), 3 states have return successors, (17), 3 states have call predecessors, (17), 3 states have call successors, (17) Word has length 248 [2024-11-08 16:51:45,235 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:45,246 INFO L225 Difference]: With dead ends: 4020 [2024-11-08 16:51:45,246 INFO L226 Difference]: Without dead ends: 1297 [2024-11-08 16:51:45,253 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 310 GetRequests, 298 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 26 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=32, Invalid=150, Unknown=0, NotChecked=0, Total=182 [2024-11-08 16:51:45,254 INFO L432 NwaCegarLoop]: 142 mSDtfsCounter, 17 mSDsluCounter, 106 mSDsCounter, 0 mSdLazyCounter, 3 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 17 SdHoareTripleChecker+Valid, 248 SdHoareTripleChecker+Invalid, 3 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 3 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:45,255 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [17 Valid, 248 Invalid, 3 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 3 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-08 16:51:45,257 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1297 states. [2024-11-08 16:51:45,416 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1297 to 1272. [2024-11-08 16:51:45,419 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1272 states, 960 states have (on average 1.1010416666666667) internal successors, (1057), 998 states have internal predecessors, (1057), 166 states have call successors, (166), 153 states have call predecessors, (166), 145 states have return successors, (183), 148 states have call predecessors, (183), 166 states have call successors, (183) [2024-11-08 16:51:45,424 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1272 states to 1272 states and 1406 transitions. [2024-11-08 16:51:45,429 INFO L78 Accepts]: Start accepts. Automaton has 1272 states and 1406 transitions. Word has length 248 [2024-11-08 16:51:45,430 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:45,430 INFO L471 AbstractCegarLoop]: Abstraction has 1272 states and 1406 transitions. [2024-11-08 16:51:45,430 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 41.333333333333336) internal successors, (124), 3 states have internal predecessors, (124), 3 states have call successors, (17), 3 states have call predecessors, (17), 3 states have return successors, (17), 3 states have call predecessors, (17), 3 states have call successors, (17) [2024-11-08 16:51:45,430 INFO L276 IsEmpty]: Start isEmpty. Operand 1272 states and 1406 transitions. [2024-11-08 16:51:45,437 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 267 [2024-11-08 16:51:45,438 INFO L207 NwaCegarLoop]: Found error trace [2024-11-08 16:51:45,438 INFO L215 NwaCegarLoop]: trace histogram [9, 9, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:45,463 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2024-11-08 16:51:45,638 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2024-11-08 16:51:45,639 INFO L396 AbstractCegarLoop]: === Iteration 14 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-08 16:51:45,640 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-08 16:51:45,640 INFO L85 PathProgramCache]: Analyzing trace with hash 793644819, now seen corresponding path program 1 times [2024-11-08 16:51:45,640 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-08 16:51:45,640 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [641632911] [2024-11-08 16:51:45,641 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:45,641 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-08 16:51:45,679 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,376 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:46,378 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,394 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2024-11-08 16:51:46,399 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,442 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:46,443 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,458 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-11-08 16:51:46,461 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,464 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:46,466 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,467 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2024-11-08 16:51:46,473 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,558 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:46,560 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,562 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:46,564 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,568 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-11-08 16:51:46,569 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,571 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2024-11-08 16:51:46,572 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,573 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2024-11-08 16:51:46,574 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,593 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 114 [2024-11-08 16:51:46,594 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,597 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 120 [2024-11-08 16:51:46,603 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,693 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:46,695 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,696 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2024-11-08 16:51:46,698 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,703 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2024-11-08 16:51:46,704 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,708 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2024-11-08 16:51:46,710 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,713 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 161 [2024-11-08 16:51:46,715 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,767 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 167 [2024-11-08 16:51:46,769 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,771 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 173 [2024-11-08 16:51:46,776 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,796 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2024-11-08 16:51:46,797 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,799 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-11-08 16:51:46,802 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,806 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:46,807 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,807 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2024-11-08 16:51:46,809 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,810 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 215 [2024-11-08 16:51:46,812 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,857 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 225 [2024-11-08 16:51:46,858 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,860 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 234 [2024-11-08 16:51:46,864 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,870 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2024-11-08 16:51:46,871 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,873 INFO L368 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 258 [2024-11-08 16:51:46,874 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:46,876 INFO L134 CoverageAnalysis]: Checked inductivity of 442 backedges. 99 proven. 131 refuted. 0 times theorem prover too weak. 212 trivial. 0 not checked. [2024-11-08 16:51:46,877 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-08 16:51:46,877 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [641632911] [2024-11-08 16:51:46,877 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [641632911] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-08 16:51:46,877 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1801315130] [2024-11-08 16:51:46,877 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-08 16:51:46,878 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-08 16:51:46,878 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 [2024-11-08 16:51:46,880 INFO L229 MonitoredProcess]: Starting monitored process 7 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-08 16:51:46,882 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-11-08 16:51:47,129 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-08 16:51:47,132 INFO L255 TraceCheckSpWp]: Trace formula consists of 733 conjuncts, 30 conjuncts are in the unsatisfiable core [2024-11-08 16:51:47,139 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-08 16:51:47,662 INFO L134 CoverageAnalysis]: Checked inductivity of 442 backedges. 155 proven. 89 refuted. 0 times theorem prover too weak. 198 trivial. 0 not checked. [2024-11-08 16:51:47,662 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-08 16:51:49,024 INFO L134 CoverageAnalysis]: Checked inductivity of 442 backedges. 96 proven. 136 refuted. 0 times theorem prover too weak. 210 trivial. 0 not checked. [2024-11-08 16:51:49,025 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1801315130] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-08 16:51:49,025 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-08 16:51:49,025 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 11, 16] total 32 [2024-11-08 16:51:49,025 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [99322561] [2024-11-08 16:51:49,026 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-08 16:51:49,027 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2024-11-08 16:51:49,027 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-08 16:51:49,029 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2024-11-08 16:51:49,029 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=165, Invalid=827, Unknown=0, NotChecked=0, Total=992 [2024-11-08 16:51:49,030 INFO L87 Difference]: Start difference. First operand 1272 states and 1406 transitions. Second operand has 32 states, 32 states have (on average 9.8125) internal successors, (314), 28 states have internal predecessors, (314), 19 states have call successors, (62), 13 states have call predecessors, (62), 20 states have return successors, (65), 19 states have call predecessors, (65), 19 states have call successors, (65) [2024-11-08 16:51:51,934 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-08 16:51:51,935 INFO L93 Difference]: Finished difference Result 2005 states and 2234 transitions. [2024-11-08 16:51:51,935 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 41 states. [2024-11-08 16:51:51,936 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 32 states have (on average 9.8125) internal successors, (314), 28 states have internal predecessors, (314), 19 states have call successors, (62), 13 states have call predecessors, (62), 20 states have return successors, (65), 19 states have call predecessors, (65), 19 states have call successors, (65) Word has length 266 [2024-11-08 16:51:51,937 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-08 16:51:51,941 INFO L225 Difference]: With dead ends: 2005 [2024-11-08 16:51:51,941 INFO L226 Difference]: Without dead ends: 0 [2024-11-08 16:51:51,947 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 652 GetRequests, 577 SyntacticMatches, 9 SemanticMatches, 66 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 942 ImplicationChecksByTransitivity, 1.6s TimeCoverageRelationStatistics Valid=933, Invalid=3623, Unknown=0, NotChecked=0, Total=4556 [2024-11-08 16:51:51,948 INFO L432 NwaCegarLoop]: 53 mSDtfsCounter, 932 mSDsluCounter, 615 mSDsCounter, 0 mSdLazyCounter, 2704 mSolverCounterSat, 379 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 934 SdHoareTripleChecker+Valid, 668 SdHoareTripleChecker+Invalid, 3083 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 379 IncrementalHoareTripleChecker+Valid, 2704 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.8s IncrementalHoareTripleChecker+Time [2024-11-08 16:51:51,948 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [934 Valid, 668 Invalid, 3083 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [379 Valid, 2704 Invalid, 0 Unknown, 0 Unchecked, 1.8s Time] [2024-11-08 16:51:51,949 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-11-08 16:51:51,949 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-11-08 16:51:51,950 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-08 16:51:51,950 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-11-08 16:51:51,953 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 266 [2024-11-08 16:51:51,953 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-08 16:51:51,953 INFO L471 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-11-08 16:51:51,954 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 32 states have (on average 9.8125) internal successors, (314), 28 states have internal predecessors, (314), 19 states have call successors, (62), 13 states have call predecessors, (62), 20 states have return successors, (65), 19 states have call predecessors, (65), 19 states have call successors, (65) [2024-11-08 16:51:51,954 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-11-08 16:51:51,954 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-11-08 16:51:51,957 INFO L782 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-11-08 16:51:51,986 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2024-11-08 16:51:52,159 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2024-11-08 16:51:52,162 INFO L407 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-08 16:51:52,167 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-11-08 16:52:25,965 INFO L170 ceAbstractionStarter]: Computing trace abstraction results [2024-11-08 16:52:25,998 WARN L162 FloydHoareUtils]: Requires clause for deactivatePump contained old-variable. Original clause: (and (let ((.cse5 (<= 1 ~methaneLevelCritical~0)) (.cse1 (<= 2 ~waterLevel~0)) (.cse0 (= ~methaneLevelCritical~0 0)) (.cse2 (<= ~waterLevel~0 2)) (.cse6 (<= 1 ~switchedOnBeforeTS~0)) (.cse3 (<= 1 |old(~pumpRunning~0)|)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse2 .cse6 .cse3 .cse4) (and .cse5 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse2 .cse6 .cse3 .cse4))) (= ~pumpRunning~0 |old(~pumpRunning~0)|)) Eliminated clause: (let ((.cse2 (<= ~waterLevel~0 2)) (.cse3 (<= 1 ~switchedOnBeforeTS~0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse6 (= 2 ~waterLevel~0)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse5 .cse2 .cse3 .cse4) (and .cse0 .cse6 .cse5 .cse4) (and .cse0 .cse1 .cse6 .cse4))) [2024-11-08 16:52:26,083 WARN L162 FloydHoareUtils]: Requires clause for changeMethaneLevel contained old-variable. Original clause: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 2 ~waterLevel~0))) (and (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0) (let ((.cse5 (<= 1 ~switchedOnBeforeTS~0)) (.cse8 (= ~waterLevel~0 1)) (.cse6 (= ~waterLevel~0 0)) (.cse7 (<= 1 |old(~methaneLevelCritical~0)|)) (.cse9 (= 0 ~systemActive~0)) (.cse4 (<= 1 ~pumpRunning~0)) (.cse2 (= |old(~methaneLevelCritical~0)| 0)) (.cse3 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse2 .cse3 .cse5 .cse6) (and .cse0 .cse2 .cse3 .cse6) (and .cse1 .cse7 .cse3) (and .cse4 .cse2 .cse3 .cse8 .cse5) (and .cse7 .cse3 .cse8) (and .cse0 .cse2 .cse3 .cse8) (and .cse0 .cse2 .cse9) (and .cse7 .cse3 .cse6) (and .cse7 .cse9) (and .cse4 .cse2 (<= 2 ~waterLevel~0) .cse3))) (or .cse0 (< |old(~methaneLevelCritical~0)| 1)) (or .cse1 (< ~waterLevel~0 2)))) Eliminated clause: (let ((.cse5 (= ~pumpRunning~0 0)) (.cse8 (= 2 ~waterLevel~0))) (and (let ((.cse3 (<= 1 ~switchedOnBeforeTS~0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse1 (= ~methaneLevelCritical~0 0)) (.cse4 (= ~waterLevel~0 0)) (.cse7 (= ~waterLevel~0 1)) (.cse6 (= 0 ~systemActive~0)) (.cse9 (<= 1 ~methaneLevelCritical~0)) (.cse2 (= 1 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse1 .cse2 .cse4) (and .cse5 .cse1 .cse6) (and .cse5 .cse1 .cse2 .cse7) (and .cse0 .cse1 .cse2 .cse7 .cse3) (and .cse5 .cse8 .cse1 .cse2) (and .cse0 .cse1 (<= 2 ~waterLevel~0) .cse2) (and .cse9 .cse2 .cse4) (and .cse9 .cse2 .cse7) (and .cse9 .cse6) (and .cse9 .cse8 .cse2))) (or .cse5 (< ~methaneLevelCritical~0 1)) (or .cse8 (< ~waterLevel~0 2)))) [2024-11-08 16:52:26,150 WARN L162 FloydHoareUtils]: Requires clause for timeShift contained old-variable. Original clause: (let ((.cse0 (= 0 ~systemActive~0)) (.cse7 (= |old(~waterLevel~0)| 1)) (.cse4 (= 1 ~systemActive~0)) (.cse5 (= |old(~waterLevel~0)| 2)) (.cse9 (= |old(~waterLevel~0)| 0)) (.cse11 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (= ~pumpRunning~0 0)) (.cse12 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse2 (= |old(~pumpRunning~0)| 0))) (and (or (not .cse0) (and .cse1 .cse2)) (let ((.cse6 (= ~methaneLevelCritical~0 0)) (.cse3 (<= 1 ~methaneLevelCritical~0)) (.cse8 (<= 1 |old(~switchedOnBeforeTS~0)|)) (.cse10 (<= 1 |old(~pumpRunning~0)|))) (or (and .cse3 .cse4 .cse2 .cse5) (and .cse6 .cse0 (<= |old(~waterLevel~0)| 2)) (and .cse7 .cse6 .cse4 .cse2) (and .cse6 .cse4 .cse8 .cse9 .cse10) (and .cse6 .cse4 .cse10 .cse5) (and .cse3 .cse4 .cse10 .cse5) (and .cse6 .cse4 .cse2 .cse5) (and .cse3 .cse7 .cse4 .cse2) (and .cse3 .cse0 .cse5) (and .cse3 .cse7 .cse10) (and .cse7 .cse6 .cse10) (and .cse3 .cse0 (<= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse2 .cse9) (and .cse6 .cse4 .cse2 .cse9) (and .cse3 .cse4 .cse8 .cse9 .cse10))) (or (not .cse7) (and .cse11 .cse12 .cse4 (= ~waterLevel~0 1) (<= 1 ~switchedOnBeforeTS~0)) (< |old(~pumpRunning~0)| 1)) (or (and .cse11 (= 2 ~waterLevel~0) .cse12) (not .cse5)) (or (not .cse9) (and .cse11 .cse12 (= ~waterLevel~0 0))) (or (not .cse2) (and .cse1 .cse12 .cse2 (= |old(~waterLevel~0)| ~waterLevel~0))))) Eliminated clause: (exists ((|old(~pumpRunning~0)| Int) (|old(~switchedOnBeforeTS~0)| Int) (|old(~waterLevel~0)| Int)) (let ((.cse0 (= 0 ~systemActive~0)) (.cse7 (= |old(~waterLevel~0)| 1)) (.cse4 (= 1 ~systemActive~0)) (.cse5 (= |old(~waterLevel~0)| 2)) (.cse9 (= |old(~waterLevel~0)| 0)) (.cse11 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (= ~pumpRunning~0 0)) (.cse12 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse2 (= |old(~pumpRunning~0)| 0))) (and (or (not .cse0) (and .cse1 .cse2)) (let ((.cse6 (= ~methaneLevelCritical~0 0)) (.cse3 (<= 1 ~methaneLevelCritical~0)) (.cse8 (<= 1 |old(~switchedOnBeforeTS~0)|)) (.cse10 (<= 1 |old(~pumpRunning~0)|))) (or (and .cse3 .cse4 .cse2 .cse5) (and .cse6 .cse0 (<= |old(~waterLevel~0)| 2)) (and .cse7 .cse6 .cse4 .cse2) (and .cse6 .cse4 .cse8 .cse9 .cse10) (and .cse6 .cse4 .cse10 .cse5) (and .cse3 .cse4 .cse10 .cse5) (and .cse6 .cse4 .cse2 .cse5) (and .cse3 .cse7 .cse4 .cse2) (and .cse3 .cse0 .cse5) (and .cse3 .cse7 .cse10) (and .cse7 .cse6 .cse10) (and .cse3 .cse0 (<= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse2 .cse9) (and .cse6 .cse4 .cse2 .cse9) (and .cse3 .cse4 .cse8 .cse9 .cse10))) (or (not .cse7) (and .cse11 .cse12 .cse4 (= ~waterLevel~0 1) (<= 1 ~switchedOnBeforeTS~0)) (< |old(~pumpRunning~0)| 1)) (or (and .cse11 (= 2 ~waterLevel~0) .cse12) (not .cse5)) (or (not .cse9) (and .cse11 .cse12 (= ~waterLevel~0 0))) (or (and .cse1 .cse12 (= |old(~waterLevel~0)| ~waterLevel~0)) (not .cse2))))) [2024-11-08 16:52:26,211 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-08 16:52:26,235 WARN L162 FloydHoareUtils]: Requires clause for waterRise contained old-variable. Original clause: (and (let ((.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse6 (= 0 ~systemActive~0)) (.cse7 (<= |old(~waterLevel~0)| 2)) (.cse4 (<= 1 ~pumpRunning~0)) (.cse10 (= |old(~waterLevel~0)| 1)) (.cse9 (<= 1 ~switchedOnBeforeTS~0)) (.cse3 (= |old(~waterLevel~0)| 2)) (.cse0 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse2 (= 1 ~systemActive~0)) (.cse8 (= |old(~waterLevel~0)| 0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse5 .cse2 .cse3) (and .cse0 .cse1 .cse6 .cse7) (and .cse0 .cse1 .cse2 .cse8) (and .cse4 .cse5 .cse2 .cse9 .cse8) (and .cse0 .cse10 .cse5 .cse2) (and .cse0 .cse1 .cse10 .cse2) (and .cse0 .cse5 .cse6 .cse7) (and .cse4 .cse10 .cse5 .cse2 .cse9) (and .cse0 .cse5 .cse2 .cse3) (and .cse0 .cse5 .cse2 .cse8))) (= |old(~waterLevel~0)| ~waterLevel~0)) Eliminated clause: (let ((.cse9 (= ~waterLevel~0 1)) (.cse7 (<= 1 ~switchedOnBeforeTS~0)) (.cse4 (<= 1 ~pumpRunning~0)) (.cse10 (= 2 ~waterLevel~0)) (.cse1 (<= 1 ~methaneLevelCritical~0)) (.cse6 (= 1 ~systemActive~0)) (.cse8 (= ~waterLevel~0 0)) (.cse0 (= ~pumpRunning~0 0)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse2 (<= ~waterLevel~0 2)) (.cse3 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse0 .cse5 .cse6 .cse8) (and .cse0 .cse1 .cse6 .cse9) (and .cse0 .cse5 .cse6 .cse9) (and .cse0 .cse1 .cse10 .cse6) (and .cse4 .cse5 .cse6 .cse9 .cse7) (and .cse0 .cse10 .cse5 .cse6) (and .cse4 .cse10 .cse5 .cse6) (and .cse0 .cse1 .cse6 .cse8) (and .cse0 .cse5 .cse2 .cse3))) [2024-11-08 16:52:26,296 WARN L162 FloydHoareUtils]: Requires clause for processEnvironment__wrappee__methaneQuery contained old-variable. Original clause: (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (let ((.cse3 (= ~waterLevel~0 1)) (.cse7 (<= 1 ~methaneLevelCritical~0)) (.cse2 (= |old(~pumpRunning~0)| 0)) (.cse0 (= ~methaneLevelCritical~0 0)) (.cse1 (= 1 ~systemActive~0)) (.cse4 (<= 1 ~switchedOnBeforeTS~0)) (.cse6 (= ~waterLevel~0 0)) (.cse5 (<= 1 |old(~pumpRunning~0)|))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse0 .cse1 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse6) (and .cse7 .cse1 .cse2 .cse3) (and .cse7 .cse1 .cse2 .cse6) (and .cse7 (= 2 ~waterLevel~0) .cse1 .cse2) (and .cse0 (<= 2 ~waterLevel~0) .cse1 .cse2 (<= ~waterLevel~0 2)) (and .cse0 .cse1 .cse4 .cse6 .cse5)))) Eliminated clause: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse7 (= ~waterLevel~0 1)) (.cse3 (<= 1 ~switchedOnBeforeTS~0)) (.cse8 (= 2 ~waterLevel~0)) (.cse1 (= ~methaneLevelCritical~0 0)) (.cse5 (= ~pumpRunning~0 0)) (.cse6 (<= 1 ~methaneLevelCritical~0)) (.cse2 (= 1 ~systemActive~0)) (.cse4 (= ~waterLevel~0 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse1 .cse2 .cse4) (and .cse5 .cse6 .cse2 .cse7) (and .cse5 .cse1 .cse2 .cse7) (and .cse5 .cse6 .cse8 .cse2) (and .cse0 .cse1 .cse2 .cse7 .cse3) (and .cse5 .cse8 .cse1 .cse2) (and .cse5 .cse6 .cse2 .cse4))) [2024-11-08 16:52:26,449 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 08.11 04:52:26 BoogieIcfgContainer [2024-11-08 16:52:26,449 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-11-08 16:52:26,450 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-11-08 16:52:26,450 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-11-08 16:52:26,450 INFO L274 PluginConnector]: Witness Printer initialized [2024-11-08 16:52:26,451 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 08.11 04:51:17" (3/4) ... [2024-11-08 16:52:26,454 INFO L142 WitnessPrinter]: Generating witness for correct program [2024-11-08 16:52:26,460 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2024-11-08 16:52:26,460 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2024-11-08 16:52:26,461 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2024-11-08 16:52:26,461 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2024-11-08 16:52:26,461 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2024-11-08 16:52:26,461 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2024-11-08 16:52:26,462 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2024-11-08 16:52:26,462 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2024-11-08 16:52:26,462 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2024-11-08 16:52:26,475 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 20 nodes and edges [2024-11-08 16:52:26,475 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2024-11-08 16:52:26,476 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2024-11-08 16:52:26,476 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-08 16:52:26,477 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-08 16:52:26,651 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/witness.graphml [2024-11-08 16:52:26,652 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/witness.yml [2024-11-08 16:52:26,652 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-11-08 16:52:26,657 INFO L158 Benchmark]: Toolchain (without parser) took 70743.55ms. Allocated memory was 155.2MB in the beginning and 599.8MB in the end (delta: 444.6MB). Free memory was 115.7MB in the beginning and 515.5MB in the end (delta: -399.7MB). Peak memory consumption was 46.7MB. Max. memory is 16.1GB. [2024-11-08 16:52:26,657 INFO L158 Benchmark]: CDTParser took 0.32ms. Allocated memory is still 155.2MB. Free memory is still 97.5MB. There was no memory consumed. Max. memory is 16.1GB. [2024-11-08 16:52:26,657 INFO L158 Benchmark]: CACSL2BoogieTranslator took 636.11ms. Allocated memory is still 155.2MB. Free memory was 115.7MB in the beginning and 94.1MB in the end (delta: 21.7MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. [2024-11-08 16:52:26,658 INFO L158 Benchmark]: Boogie Procedure Inliner took 64.52ms. Allocated memory is still 155.2MB. Free memory was 94.1MB in the beginning and 91.5MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-11-08 16:52:26,658 INFO L158 Benchmark]: Boogie Preprocessor took 53.81ms. Allocated memory is still 155.2MB. Free memory was 91.5MB in the beginning and 89.4MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-11-08 16:52:26,659 INFO L158 Benchmark]: RCFGBuilder took 544.29ms. Allocated memory is still 155.2MB. Free memory was 89.4MB in the beginning and 70.3MB in the end (delta: 19.1MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2024-11-08 16:52:26,659 INFO L158 Benchmark]: TraceAbstraction took 69235.05ms. Allocated memory was 155.2MB in the beginning and 599.8MB in the end (delta: 444.6MB). Free memory was 69.4MB in the beginning and 525.9MB in the end (delta: -456.5MB). Peak memory consumption was 317.2MB. Max. memory is 16.1GB. [2024-11-08 16:52:26,659 INFO L158 Benchmark]: Witness Printer took 202.11ms. Allocated memory is still 599.8MB. Free memory was 525.9MB in the beginning and 515.5MB in the end (delta: 10.5MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2024-11-08 16:52:26,661 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.32ms. Allocated memory is still 155.2MB. Free memory is still 97.5MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 636.11ms. Allocated memory is still 155.2MB. Free memory was 115.7MB in the beginning and 94.1MB in the end (delta: 21.7MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 64.52ms. Allocated memory is still 155.2MB. Free memory was 94.1MB in the beginning and 91.5MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 53.81ms. Allocated memory is still 155.2MB. Free memory was 91.5MB in the beginning and 89.4MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 544.29ms. Allocated memory is still 155.2MB. Free memory was 89.4MB in the beginning and 70.3MB in the end (delta: 19.1MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * TraceAbstraction took 69235.05ms. Allocated memory was 155.2MB in the beginning and 599.8MB in the end (delta: 444.6MB). Free memory was 69.4MB in the beginning and 525.9MB in the end (delta: -456.5MB). Peak memory consumption was 317.2MB. Max. memory is 16.1GB. * Witness Printer took 202.11ms. Allocated memory is still 599.8MB. Free memory was 525.9MB in the beginning and 515.5MB in the end (delta: 10.5MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] - GenericResultAtLocation [Line: 283]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [283] - GenericResultAtLocation [Line: 353]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [353] - GenericResultAtLocation [Line: 454]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [454] - GenericResultAtLocation [Line: 820]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [820] - GenericResultAtLocation [Line: 855]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [855] - GenericResultAtLocation [Line: 905]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [905] - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 10 procedures, 105 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 34.9s, OverallIterations: 14, TraceHistogramMax: 9, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.1s, AutomataDifference: 18.7s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 6235 SdHoareTripleChecker+Valid, 11.0s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 6186 mSDsluCounter, 8640 SdHoareTripleChecker+Invalid, 9.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 7064 mSDsCounter, 2201 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 14184 IncrementalHoareTripleChecker+Invalid, 16385 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 2201 mSolverCounterUnsat, 1576 mSDtfsCounter, 14184 mSolverCounterSat, 0.2s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 2938 GetRequests, 2527 SyntacticMatches, 24 SemanticMatches, 387 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5893 ImplicationChecksByTransitivity, 7.0s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=3291occurred in iteration=12, InterpolantAutomatonStates: 287, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 2.0s AutomataMinimizationTime, 14 MinimizatonAttempts, 1169 StatesRemovedByMinimization, 11 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.3s SsaConstructionTime, 0.8s SatisfiabilityAnalysisTime, 10.8s InterpolantComputationTime, 2851 NumberOfCodeBlocks, 2851 NumberOfCodeBlocksAsserted, 20 NumberOfCheckSat, 3812 ConstructedInterpolants, 0 QuantifiedInterpolants, 8475 SizeOfPredicates, 5 NumberOfNonLiveVariables, 3519 ConjunctsInSsa, 82 ConjunctsInUnsatCore, 25 InterpolantComputations, 9 PerfectInterpolantSequences, 3741/4394 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 365]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: ((((((((((((((((1 <= pumpRunning) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) || (((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1))) || (((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 0))) || (((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0))) || (((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1))) || ((((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0))) || (((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (splverifierCounter == 0)) && (0 == systemActive))) || (((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0))) || (((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 0))) || (((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (splverifierCounter == 0)) && (waterLevel <= 2)) && (0 == systemActive))) || ((((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || (((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (waterLevel <= 1)) && (splverifierCounter == 0)) && (0 == systemActive))) - InvariantResult [Line: 296]: Location Invariant Derived location invariant: 0 - ProcedureContractResult [Line: 185]: Procedure Contract for deactivatePump Derived contract for procedure deactivatePump. Requires: ((((((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (waterLevel <= 2)) && (1 <= switchedOnBeforeTS)) && (0 != systemActive)) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (waterLevel <= 2)) && (1 <= switchedOnBeforeTS)) && (0 != systemActive))) || ((((1 <= pumpRunning) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (0 != systemActive))) || ((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (0 != systemActive))) Ensures: (((pumpRunning == 0) && ((((((((1 <= methaneLevelCritical) && (waterLevel <= 2)) && (1 <= switchedOnBeforeTS)) && (1 <= \old(pumpRunning))) && (0 != systemActive)) || ((((1 <= methaneLevelCritical) && (2 == waterLevel)) && (1 <= \old(pumpRunning))) && (0 != systemActive))) || ((((2 == waterLevel) && (methaneLevelCritical == 0)) && (1 <= \old(pumpRunning))) && (0 != systemActive))) || (((((methaneLevelCritical == 0) && (waterLevel <= 2)) && (1 <= switchedOnBeforeTS)) && (1 <= \old(pumpRunning))) && (0 != systemActive)))) && ((((((systemActive == \old(systemActive)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 101]: Procedure Contract for processEnvironment__wrappee__base Derived contract for procedure processEnvironment__wrappee__base. Requires: ((((((((((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 0))) Ensures: (((((((((((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 0))) && (((((((pumpRunning == \old(pumpRunning)) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 932]: Procedure Contract for changeMethaneLevel Derived contract for procedure changeMethaneLevel. Requires: (((((((((((((((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0))) || (((pumpRunning == 0) && (methaneLevelCritical == 0)) && (0 == systemActive))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (2 <= waterLevel)) && (1 == systemActive))) || (((1 <= methaneLevelCritical) && (1 == systemActive)) && (waterLevel == 0))) || (((1 <= methaneLevelCritical) && (1 == systemActive)) && (waterLevel == 1))) || ((1 <= methaneLevelCritical) && (0 == systemActive))) || (((1 <= methaneLevelCritical) && (2 == waterLevel)) && (1 == systemActive))) && ((pumpRunning == 0) || (methaneLevelCritical < 1))) && ((2 == waterLevel) || (waterLevel < 2))) Ensures: ((((((\old(methaneLevelCritical) != 0) || (0 < methaneLevelCritical)) && ((pumpRunning == 0) || (\old(methaneLevelCritical) < 1))) && ((methaneLevelCritical == 0) || (\old(methaneLevelCritical) < 1))) && ((((((((((((((pumpRunning == 0) && (2 == waterLevel)) && (\old(methaneLevelCritical) == 0)) && (1 == systemActive)) || (((((1 <= pumpRunning) && (\old(methaneLevelCritical) == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (\old(methaneLevelCritical) == 0)) && (1 == systemActive)) && (waterLevel == 0))) || (((2 == waterLevel) && (1 <= \old(methaneLevelCritical))) && (1 == systemActive))) || (((((1 <= pumpRunning) && (\old(methaneLevelCritical) == 0)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || (((1 <= \old(methaneLevelCritical)) && (waterLevel <= 2)) && (0 == systemActive))) || (((1 <= \old(methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (\old(methaneLevelCritical) == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((1 <= pumpRunning) && (2 == waterLevel)) && (\old(methaneLevelCritical) == 0)) && (1 == systemActive))) || (((1 <= \old(methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (\old(methaneLevelCritical) == 0)) && (waterLevel <= 2)) && (0 == systemActive)))) && ((((((pumpRunning == \old(pumpRunning)) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel)))) - ProcedureContractResult [Line: 355]: Procedure Contract for cleanup Derived contract for procedure cleanup. Requires: 0 Ensures: (0 && ((((systemActive == \old(systemActive)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 74]: Procedure Contract for timeShift Derived contract for procedure timeShift. Ensures: ((((((((((((((pumpRunning == \old(pumpRunning)) || (methaneLevelCritical != 0)) || (\old(pumpRunning) < 1)) && (((\old(pumpRunning) != 0) || (\old(waterLevel) != 1)) || ((pumpRunning == 0) && (waterLevel == 1)))) && ((((1 <= switchedOnBeforeTS) && (waterLevel == 0)) || (\old(waterLevel) != 1)) || (\old(pumpRunning) < 1))) && ((((waterLevel == 1) && (1 <= switchedOnBeforeTS)) || (\old(waterLevel) != 2)) || (\old(pumpRunning) < 1))) && (((\old(pumpRunning) != 0) || ((pumpRunning == 0) && (waterLevel == 0))) || (\old(waterLevel) != 0))) && ((((\old(pumpRunning) != 0) || ((1 <= pumpRunning) && (2 == waterLevel))) || ((pumpRunning == 0) && (2 == waterLevel))) || (\old(waterLevel) != 2))) && ((pumpRunning == 0) || (methaneLevelCritical < 1))) && (((pumpRunning == 0) && (\old(waterLevel) == waterLevel)) || (0 != systemActive))) && ((((((((((((((((((1 <= methaneLevelCritical) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 2)) || ((((\old(waterLevel) == 1) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (\old(pumpRunning) == 0))) || ((((1 <= methaneLevelCritical) && (\old(pumpRunning) == 0)) && (0 == systemActive)) && (\old(waterLevel) == 2))) || ((((\old(waterLevel) == 1) && (methaneLevelCritical == 0)) && (1 <= \old(switchedOnBeforeTS))) && (1 <= \old(pumpRunning)))) || ((((1 <= methaneLevelCritical) && (\old(pumpRunning) == 0)) && (0 == systemActive)) && (\old(waterLevel) <= 1))) || ((((methaneLevelCritical == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 2))) || ((((1 <= methaneLevelCritical) && (\old(waterLevel) == 1)) && (1 == systemActive)) && (\old(pumpRunning) == 0))) || (((1 <= methaneLevelCritical) && (1 <= \old(pumpRunning))) && (\old(waterLevel) == 2))) || ((((methaneLevelCritical == 0) && (\old(pumpRunning) == 0)) && (0 == systemActive)) && (\old(waterLevel) <= 2))) || ((((1 <= methaneLevelCritical) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 0))) || (((methaneLevelCritical == 0) && (1 <= \old(pumpRunning))) && (\old(waterLevel) == 2))) || ((((1 <= methaneLevelCritical) && (\old(waterLevel) == 1)) && (1 <= \old(switchedOnBeforeTS))) && (1 <= \old(pumpRunning)))) || ((((methaneLevelCritical == 0) && (1 <= \old(switchedOnBeforeTS))) && (\old(waterLevel) == 0)) && (1 <= \old(pumpRunning)))) || ((((methaneLevelCritical == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 0))) || ((((1 <= methaneLevelCritical) && (1 <= \old(switchedOnBeforeTS))) && (\old(waterLevel) == 0)) && (1 <= \old(pumpRunning))))) && ((1 == systemActive) || (\old(pumpRunning) < 1))) && ((((1 <= switchedOnBeforeTS) && (waterLevel == 0)) || (\old(waterLevel) != 0)) || (\old(pumpRunning) < 1))) && ((((systemActive == \old(systemActive)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 920]: Procedure Contract for waterRise Derived contract for procedure waterRise. Requires: ((((((((((((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (waterLevel <= 2)) && (0 == systemActive)) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((1 <= pumpRunning) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (waterLevel <= 2)) && (0 == systemActive))) Ensures: ((((((((((pumpRunning == 0) && (waterLevel <= ((long long) \old(waterLevel) + 1))) && ((((long long) \old(waterLevel) + 1) == waterLevel) || (2 == waterLevel))) || (0 != systemActive)) && ((2 == waterLevel) || (\old(waterLevel) != 2))) && ((2 == waterLevel) || (\old(waterLevel) != 1))) && (((((((((((((methaneLevelCritical == 0) && (0 == systemActive)) && (\old(waterLevel) <= 2)) || ((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (\old(waterLevel) == 2))) || (((1 <= methaneLevelCritical) && (1 == systemActive)) && (\old(waterLevel) == 2))) || (((1 <= methaneLevelCritical) && (1 == systemActive)) && (\old(waterLevel) == 0))) || (((1 <= methaneLevelCritical) && (0 == systemActive)) && (\old(waterLevel) <= 2))) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (\old(waterLevel) == 0))) || ((((pumpRunning == 0) && (\old(waterLevel) == 1)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (\old(waterLevel) == 1)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (\old(waterLevel) == 1)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (\old(waterLevel) == 2))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (\old(waterLevel) == 0)))) && ((((pumpRunning == 0) && (waterLevel <= ((long long) \old(waterLevel) + 1))) && ((((long long) \old(waterLevel) + 1) == waterLevel) || (2 == waterLevel))) || (methaneLevelCritical < 1))) && ((\old(waterLevel) != 0) || (waterLevel == 1))) && ((((((pumpRunning == \old(pumpRunning)) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 109]: Procedure Contract for processEnvironment__wrappee__methaneQuery Derived contract for procedure processEnvironment__wrappee__methaneQuery. Requires: ((((((((((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 0))) Ensures: (((((((((((((((((methaneLevelCritical == 0) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (1 <= \old(pumpRunning))) || (((methaneLevelCritical == 0) && (\old(pumpRunning) == 0)) && (waterLevel == 0))) || (((1 <= methaneLevelCritical) && (2 == waterLevel)) && (\old(pumpRunning) == 0))) || (((1 <= methaneLevelCritical) && (\old(pumpRunning) == 0)) && (waterLevel == 0))) || ((1 <= methaneLevelCritical) && (waterLevel == 1))) || (((2 == waterLevel) && (methaneLevelCritical == 0)) && (\old(pumpRunning) == 0))) || (((methaneLevelCritical == 0) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || (((methaneLevelCritical == 0) && (\old(pumpRunning) == 0)) && (waterLevel == 1))) && ((pumpRunning == \old(pumpRunning)) || (\old(pumpRunning) < 1))) && ((pumpRunning == 0) || (methaneLevelCritical < 1))) && (((pumpRunning == 0) || (waterLevel != 0)) || (0 < \old(pumpRunning)))) && (((1 <= pumpRunning) && (1 == systemActive)) || ((pumpRunning == 0) && (1 == systemActive)))) && (((waterLevel != 1) || (0 < \old(pumpRunning))) || ((pumpRunning == 0) && (\old(pumpRunning) == 0)))) && ((((((systemActive == \old(systemActive)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 204]: Procedure Contract for isPumpRunning Derived contract for procedure isPumpRunning. Requires: (((((((((((((((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (waterLevel <= 2)) && (0 == systemActive)) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((1 <= pumpRunning) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 0))) || (((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (waterLevel <= 2)) && (0 == systemActive))) Ensures: ((((pumpRunning == \result) && ((\result == 0) || (0 != systemActive))) && ((((((((((((((((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1))) || (((methaneLevelCritical == 0) && (waterLevel <= 2)) && (0 == systemActive))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((1 <= pumpRunning) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 0))) || (((1 <= methaneLevelCritical) && (waterLevel <= 2)) && (0 == systemActive))) || (((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)))) && (((((((pumpRunning == \old(pumpRunning)) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 193]: Procedure Contract for isMethaneAlarm Derived contract for procedure isMethaneAlarm. Requires: ((((((((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || (((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0))) Ensures: (((methaneLevelCritical == \result) && ((((((((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) || ((((pumpRunning == 0) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || (((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || (((((1 <= pumpRunning) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)))) && (((((((pumpRunning == \old(pumpRunning)) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical)))) RESULT: Ultimate proved your program to be correct! [2024-11-08 16:52:26,733 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_56282b44-a18c-431f-a8bf-46d5d04de2b2/bin/uautomizer-verify-jihMAELWvX/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE