./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec5_product45.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 3061b6dc Calling Ultimate with: /root/.sdkman/candidates/java/11.0.12-open/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec5_product45.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 603cfb64133b588a2e9c81e31ac984484d295feb0a468539180131e3ac5a47d6 --- Real Ultimate output --- This is Ultimate 0.2.5-tmp.dk.eval-assert-order-craig-3061b6d-m [2024-11-18 14:21:45,970 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-11-18 14:21:46,056 INFO L114 SettingsManager]: Loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-11-18 14:21:46,063 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-11-18 14:21:46,064 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-11-18 14:21:46,099 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-11-18 14:21:46,099 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-11-18 14:21:46,100 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-11-18 14:21:46,100 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-11-18 14:21:46,101 INFO L153 SettingsManager]: * Use memory slicer=true [2024-11-18 14:21:46,101 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-11-18 14:21:46,102 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-11-18 14:21:46,102 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-11-18 14:21:46,107 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-11-18 14:21:46,107 INFO L153 SettingsManager]: * Use SBE=true [2024-11-18 14:21:46,108 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-11-18 14:21:46,108 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-11-18 14:21:46,109 INFO L153 SettingsManager]: * sizeof long=4 [2024-11-18 14:21:46,109 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-11-18 14:21:46,109 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-11-18 14:21:46,109 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-11-18 14:21:46,112 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-11-18 14:21:46,112 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-11-18 14:21:46,113 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-11-18 14:21:46,113 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-11-18 14:21:46,113 INFO L153 SettingsManager]: * sizeof long double=12 [2024-11-18 14:21:46,114 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-11-18 14:21:46,114 INFO L153 SettingsManager]: * Use constant arrays=true [2024-11-18 14:21:46,114 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-11-18 14:21:46,114 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-11-18 14:21:46,115 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-11-18 14:21:46,115 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-11-18 14:21:46,115 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-11-18 14:21:46,116 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-11-18 14:21:46,116 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-11-18 14:21:46,117 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-11-18 14:21:46,117 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-11-18 14:21:46,118 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-11-18 14:21:46,118 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-11-18 14:21:46,118 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-11-18 14:21:46,119 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-11-18 14:21:46,119 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-11-18 14:21:46,119 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 603cfb64133b588a2e9c81e31ac984484d295feb0a468539180131e3ac5a47d6 [2024-11-18 14:21:46,412 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-11-18 14:21:46,447 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-11-18 14:21:46,451 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-11-18 14:21:46,452 INFO L270 PluginConnector]: Initializing CDTParser... [2024-11-18 14:21:46,453 INFO L274 PluginConnector]: CDTParser initialized [2024-11-18 14:21:46,454 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec5_product45.cil.c [2024-11-18 14:21:47,979 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-11-18 14:21:48,216 INFO L384 CDTParser]: Found 1 translation units. [2024-11-18 14:21:48,217 INFO L180 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec5_product45.cil.c [2024-11-18 14:21:48,238 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/862d1bebc/5e6d386e8e1a41d0bcc466ecae6f2463/FLAGe2073eae6 [2024-11-18 14:21:48,256 INFO L435 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/862d1bebc/5e6d386e8e1a41d0bcc466ecae6f2463 [2024-11-18 14:21:48,258 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-11-18 14:21:48,261 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-11-18 14:21:48,262 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-11-18 14:21:48,263 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-11-18 14:21:48,269 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-11-18 14:21:48,270 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,272 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@323383d2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48, skipping insertion in model container [2024-11-18 14:21:48,272 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,323 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-11-18 14:21:48,523 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec5_product45.cil.c[3064,3077] [2024-11-18 14:21:48,626 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-18 14:21:48,638 INFO L200 MainTranslator]: Completed pre-run [2024-11-18 14:21:48,646 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [49] [2024-11-18 14:21:48,648 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [150] [2024-11-18 14:21:48,648 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [159] [2024-11-18 14:21:48,648 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [525] [2024-11-18 14:21:48,648 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [575] [2024-11-18 14:21:48,648 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [777] [2024-11-18 14:21:48,649 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [843] [2024-11-18 14:21:48,649 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [881] [2024-11-18 14:21:48,656 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec5_product45.cil.c[3064,3077] [2024-11-18 14:21:48,728 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-18 14:21:48,756 INFO L204 MainTranslator]: Completed translation [2024-11-18 14:21:48,756 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48 WrapperNode [2024-11-18 14:21:48,756 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-11-18 14:21:48,757 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-11-18 14:21:48,757 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-11-18 14:21:48,757 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-11-18 14:21:48,771 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,781 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,804 INFO L138 Inliner]: procedures = 56, calls = 102, calls flagged for inlining = 24, calls inlined = 21, statements flattened = 211 [2024-11-18 14:21:48,805 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-11-18 14:21:48,805 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-11-18 14:21:48,805 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-11-18 14:21:48,806 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-11-18 14:21:48,814 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,814 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,816 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,835 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-11-18 14:21:48,836 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,836 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,840 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,847 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,848 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,849 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,855 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-11-18 14:21:48,857 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-11-18 14:21:48,857 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-11-18 14:21:48,858 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-11-18 14:21:48,859 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (1/1) ... [2024-11-18 14:21:48,865 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-11-18 14:21:48,874 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:21:48,887 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-11-18 14:21:48,890 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-11-18 14:21:48,938 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-11-18 14:21:48,938 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2024-11-18 14:21:48,938 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2024-11-18 14:21:48,939 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2024-11-18 14:21:48,939 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2024-11-18 14:21:48,939 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2024-11-18 14:21:48,939 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2024-11-18 14:21:48,939 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2024-11-18 14:21:48,939 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2024-11-18 14:21:48,939 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2024-11-18 14:21:48,939 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2024-11-18 14:21:48,939 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2024-11-18 14:21:48,940 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2024-11-18 14:21:48,940 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2024-11-18 14:21:48,940 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2024-11-18 14:21:48,940 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-11-18 14:21:48,940 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2024-11-18 14:21:48,940 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2024-11-18 14:21:48,940 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-11-18 14:21:48,940 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-11-18 14:21:49,014 INFO L238 CfgBuilder]: Building ICFG [2024-11-18 14:21:49,017 INFO L264 CfgBuilder]: Building CFG for each procedure with an implementation [2024-11-18 14:21:49,247 INFO L? ?]: Removed 43 outVars from TransFormulas that were not future-live. [2024-11-18 14:21:49,248 INFO L287 CfgBuilder]: Performing block encoding [2024-11-18 14:21:49,263 INFO L311 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-11-18 14:21:49,264 INFO L316 CfgBuilder]: Removed 2 assume(true) statements. [2024-11-18 14:21:49,264 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 18.11 02:21:49 BoogieIcfgContainer [2024-11-18 14:21:49,264 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-11-18 14:21:49,266 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-11-18 14:21:49,267 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-11-18 14:21:49,270 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-11-18 14:21:49,270 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 18.11 02:21:48" (1/3) ... [2024-11-18 14:21:49,271 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@221f80cc and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 18.11 02:21:49, skipping insertion in model container [2024-11-18 14:21:49,271 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:48" (2/3) ... [2024-11-18 14:21:49,272 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@221f80cc and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 18.11 02:21:49, skipping insertion in model container [2024-11-18 14:21:49,272 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 18.11 02:21:49" (3/3) ... [2024-11-18 14:21:49,273 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product45.cil.c [2024-11-18 14:21:49,294 INFO L214 ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-11-18 14:21:49,294 INFO L154 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-11-18 14:21:49,371 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-11-18 14:21:49,384 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@2056aaa5, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-11-18 14:21:49,384 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-11-18 14:21:49,389 INFO L276 IsEmpty]: Start isEmpty. Operand has 98 states, 74 states have (on average 1.364864864864865) internal successors, (101), 82 states have internal predecessors, (101), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 12 states have call predecessors, (14), 14 states have call successors, (14) [2024-11-18 14:21:49,400 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2024-11-18 14:21:49,401 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:49,402 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:49,402 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:49,407 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:49,408 INFO L85 PathProgramCache]: Analyzing trace with hash -1310639887, now seen corresponding path program 1 times [2024-11-18 14:21:49,419 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:49,421 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1035692318] [2024-11-18 14:21:49,421 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:49,421 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:49,532 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:49,636 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:49,637 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:49,638 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1035692318] [2024-11-18 14:21:49,639 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1035692318] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:49,640 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:49,640 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-11-18 14:21:49,642 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [384493138] [2024-11-18 14:21:49,643 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:49,647 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-11-18 14:21:49,648 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:49,675 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-11-18 14:21:49,676 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-18 14:21:49,679 INFO L87 Difference]: Start difference. First operand has 98 states, 74 states have (on average 1.364864864864865) internal successors, (101), 82 states have internal predecessors, (101), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 12 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-11-18 14:21:49,709 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:49,710 INFO L93 Difference]: Finished difference Result 187 states and 252 transitions. [2024-11-18 14:21:49,711 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-11-18 14:21:49,712 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 32 [2024-11-18 14:21:49,713 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:49,720 INFO L225 Difference]: With dead ends: 187 [2024-11-18 14:21:49,720 INFO L226 Difference]: Without dead ends: 89 [2024-11-18 14:21:49,724 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-18 14:21:49,727 INFO L432 NwaCegarLoop]: 123 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 123 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:49,728 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 123 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-18 14:21:49,745 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 89 states. [2024-11-18 14:21:49,770 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 89 to 89. [2024-11-18 14:21:49,772 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 67 states have (on average 1.2985074626865671) internal successors, (87), 74 states have internal predecessors, (87), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 11 states have call predecessors, (13), 13 states have call successors, (13) [2024-11-18 14:21:49,776 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 114 transitions. [2024-11-18 14:21:49,778 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 114 transitions. Word has length 32 [2024-11-18 14:21:49,778 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:49,778 INFO L471 AbstractCegarLoop]: Abstraction has 89 states and 114 transitions. [2024-11-18 14:21:49,779 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-11-18 14:21:49,779 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 114 transitions. [2024-11-18 14:21:49,782 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2024-11-18 14:21:49,785 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:49,785 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:49,785 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-11-18 14:21:49,786 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:49,786 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:49,787 INFO L85 PathProgramCache]: Analyzing trace with hash 671106305, now seen corresponding path program 1 times [2024-11-18 14:21:49,787 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:49,787 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1558175293] [2024-11-18 14:21:49,787 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:49,787 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:49,821 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:49,970 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:49,971 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:49,971 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1558175293] [2024-11-18 14:21:49,971 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1558175293] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:49,972 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:49,972 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-18 14:21:49,972 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1196617087] [2024-11-18 14:21:49,972 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:49,973 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-18 14:21:49,974 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:49,974 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-18 14:21:49,975 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-18 14:21:49,975 INFO L87 Difference]: Start difference. First operand 89 states and 114 transitions. Second operand has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-18 14:21:50,013 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:50,014 INFO L93 Difference]: Finished difference Result 170 states and 223 transitions. [2024-11-18 14:21:50,014 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-18 14:21:50,014 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 37 [2024-11-18 14:21:50,015 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:50,016 INFO L225 Difference]: With dead ends: 170 [2024-11-18 14:21:50,016 INFO L226 Difference]: Without dead ends: 89 [2024-11-18 14:21:50,017 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-18 14:21:50,022 INFO L432 NwaCegarLoop]: 112 mSDtfsCounter, 91 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 91 SdHoareTripleChecker+Valid, 112 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:50,023 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [91 Valid, 112 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-18 14:21:50,023 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 89 states. [2024-11-18 14:21:50,034 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 89 to 89. [2024-11-18 14:21:50,034 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 67 states have (on average 1.2835820895522387) internal successors, (86), 74 states have internal predecessors, (86), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 11 states have call predecessors, (13), 13 states have call successors, (13) [2024-11-18 14:21:50,036 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 113 transitions. [2024-11-18 14:21:50,037 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 113 transitions. Word has length 37 [2024-11-18 14:21:50,039 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:50,039 INFO L471 AbstractCegarLoop]: Abstraction has 89 states and 113 transitions. [2024-11-18 14:21:50,040 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-18 14:21:50,040 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 113 transitions. [2024-11-18 14:21:50,042 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2024-11-18 14:21:50,042 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:50,042 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:50,042 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-11-18 14:21:50,043 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:50,043 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:50,043 INFO L85 PathProgramCache]: Analyzing trace with hash -1018481259, now seen corresponding path program 1 times [2024-11-18 14:21:50,043 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:50,044 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [529908011] [2024-11-18 14:21:50,044 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:50,044 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:50,075 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:50,146 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:50,147 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:50,147 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [529908011] [2024-11-18 14:21:50,147 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [529908011] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:50,147 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:50,147 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-18 14:21:50,148 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1950385327] [2024-11-18 14:21:50,148 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:50,148 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-18 14:21:50,148 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:50,149 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-18 14:21:50,149 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-18 14:21:50,151 INFO L87 Difference]: Start difference. First operand 89 states and 113 transitions. Second operand has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-18 14:21:50,167 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:50,167 INFO L93 Difference]: Finished difference Result 143 states and 181 transitions. [2024-11-18 14:21:50,168 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-18 14:21:50,168 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 43 [2024-11-18 14:21:50,168 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:50,170 INFO L225 Difference]: With dead ends: 143 [2024-11-18 14:21:50,170 INFO L226 Difference]: Without dead ends: 80 [2024-11-18 14:21:50,171 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-18 14:21:50,173 INFO L432 NwaCegarLoop]: 100 mSDtfsCounter, 12 mSDsluCounter, 84 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 184 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:50,174 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 184 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-18 14:21:50,175 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 80 states. [2024-11-18 14:21:50,186 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 80 to 80. [2024-11-18 14:21:50,187 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 80 states, 61 states have (on average 1.2950819672131149) internal successors, (79), 68 states have internal predecessors, (79), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2024-11-18 14:21:50,188 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 80 states to 80 states and 101 transitions. [2024-11-18 14:21:50,188 INFO L78 Accepts]: Start accepts. Automaton has 80 states and 101 transitions. Word has length 43 [2024-11-18 14:21:50,189 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:50,189 INFO L471 AbstractCegarLoop]: Abstraction has 80 states and 101 transitions. [2024-11-18 14:21:50,189 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-18 14:21:50,192 INFO L276 IsEmpty]: Start isEmpty. Operand 80 states and 101 transitions. [2024-11-18 14:21:50,193 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2024-11-18 14:21:50,193 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:50,193 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:50,193 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-11-18 14:21:50,194 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:50,194 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:50,194 INFO L85 PathProgramCache]: Analyzing trace with hash -488472773, now seen corresponding path program 1 times [2024-11-18 14:21:50,194 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:50,194 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [49087947] [2024-11-18 14:21:50,194 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:50,195 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:50,220 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:50,313 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:50,314 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:50,314 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [49087947] [2024-11-18 14:21:50,314 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [49087947] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:50,315 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:50,315 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-11-18 14:21:50,315 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [645255953] [2024-11-18 14:21:50,316 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:50,316 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-18 14:21:50,317 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:50,317 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-18 14:21:50,318 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-18 14:21:50,318 INFO L87 Difference]: Start difference. First operand 80 states and 101 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 4 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2024-11-18 14:21:50,649 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:50,650 INFO L93 Difference]: Finished difference Result 235 states and 297 transitions. [2024-11-18 14:21:50,650 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-18 14:21:50,651 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 4 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) Word has length 47 [2024-11-18 14:21:50,651 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:50,653 INFO L225 Difference]: With dead ends: 235 [2024-11-18 14:21:50,655 INFO L226 Difference]: Without dead ends: 163 [2024-11-18 14:21:50,656 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2024-11-18 14:21:50,660 INFO L432 NwaCegarLoop]: 112 mSDtfsCounter, 206 mSDsluCounter, 171 mSDsCounter, 0 mSdLazyCounter, 113 mSolverCounterSat, 55 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 209 SdHoareTripleChecker+Valid, 283 SdHoareTripleChecker+Invalid, 168 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 55 IncrementalHoareTripleChecker+Valid, 113 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:50,660 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [209 Valid, 283 Invalid, 168 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [55 Valid, 113 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-11-18 14:21:50,661 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 163 states. [2024-11-18 14:21:50,687 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 163 to 157. [2024-11-18 14:21:50,690 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 157 states, 120 states have (on average 1.2583333333333333) internal successors, (151), 128 states have internal predecessors, (151), 18 states have call successors, (18), 15 states have call predecessors, (18), 18 states have return successors, (23), 19 states have call predecessors, (23), 18 states have call successors, (23) [2024-11-18 14:21:50,692 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 157 states to 157 states and 192 transitions. [2024-11-18 14:21:50,693 INFO L78 Accepts]: Start accepts. Automaton has 157 states and 192 transitions. Word has length 47 [2024-11-18 14:21:50,694 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:50,694 INFO L471 AbstractCegarLoop]: Abstraction has 157 states and 192 transitions. [2024-11-18 14:21:50,694 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 4 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 4 states have call successors, (4) [2024-11-18 14:21:50,694 INFO L276 IsEmpty]: Start isEmpty. Operand 157 states and 192 transitions. [2024-11-18 14:21:50,696 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2024-11-18 14:21:50,699 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:50,700 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:50,700 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-11-18 14:21:50,700 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:50,700 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:50,700 INFO L85 PathProgramCache]: Analyzing trace with hash 1464828133, now seen corresponding path program 1 times [2024-11-18 14:21:50,701 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:50,701 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1187203780] [2024-11-18 14:21:50,701 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:50,701 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:50,721 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:50,803 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:50,803 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:50,803 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1187203780] [2024-11-18 14:21:50,804 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1187203780] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:50,804 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:50,804 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-11-18 14:21:50,804 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [962495565] [2024-11-18 14:21:50,804 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:50,805 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-18 14:21:50,805 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:50,806 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-18 14:21:50,806 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-18 14:21:50,806 INFO L87 Difference]: Start difference. First operand 157 states and 192 transitions. Second operand has 5 states, 5 states have (on average 8.4) internal successors, (42), 5 states have internal predecessors, (42), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) [2024-11-18 14:21:50,844 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:50,844 INFO L93 Difference]: Finished difference Result 308 states and 385 transitions. [2024-11-18 14:21:50,844 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-11-18 14:21:50,845 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.4) internal successors, (42), 5 states have internal predecessors, (42), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) Word has length 53 [2024-11-18 14:21:50,845 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:50,848 INFO L225 Difference]: With dead ends: 308 [2024-11-18 14:21:50,850 INFO L226 Difference]: Without dead ends: 159 [2024-11-18 14:21:50,851 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-11-18 14:21:50,852 INFO L432 NwaCegarLoop]: 98 mSDtfsCounter, 81 mSDsluCounter, 190 mSDsCounter, 0 mSdLazyCounter, 14 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 81 SdHoareTripleChecker+Valid, 288 SdHoareTripleChecker+Invalid, 14 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 14 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:50,853 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [81 Valid, 288 Invalid, 14 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 14 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-18 14:21:50,853 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 159 states. [2024-11-18 14:21:50,879 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 159 to 159. [2024-11-18 14:21:50,880 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 159 states, 122 states have (on average 1.2540983606557377) internal successors, (153), 130 states have internal predecessors, (153), 18 states have call successors, (18), 15 states have call predecessors, (18), 18 states have return successors, (23), 19 states have call predecessors, (23), 18 states have call successors, (23) [2024-11-18 14:21:50,882 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 159 states to 159 states and 194 transitions. [2024-11-18 14:21:50,883 INFO L78 Accepts]: Start accepts. Automaton has 159 states and 194 transitions. Word has length 53 [2024-11-18 14:21:50,883 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:50,883 INFO L471 AbstractCegarLoop]: Abstraction has 159 states and 194 transitions. [2024-11-18 14:21:50,884 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.4) internal successors, (42), 5 states have internal predecessors, (42), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) [2024-11-18 14:21:50,884 INFO L276 IsEmpty]: Start isEmpty. Operand 159 states and 194 transitions. [2024-11-18 14:21:50,885 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2024-11-18 14:21:50,885 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:50,885 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:50,886 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-11-18 14:21:50,886 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:50,886 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:50,886 INFO L85 PathProgramCache]: Analyzing trace with hash 1042126307, now seen corresponding path program 1 times [2024-11-18 14:21:50,886 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:50,887 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [719003243] [2024-11-18 14:21:50,887 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:50,887 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:50,907 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:51,040 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-11-18 14:21:51,040 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:51,040 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [719003243] [2024-11-18 14:21:51,041 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [719003243] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:51,041 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:51,041 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2024-11-18 14:21:51,041 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [988854612] [2024-11-18 14:21:51,041 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:51,041 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2024-11-18 14:21:51,042 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:51,042 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2024-11-18 14:21:51,042 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2024-11-18 14:21:51,042 INFO L87 Difference]: Start difference. First operand 159 states and 194 transitions. Second operand has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 6 states have internal predecessors, (44), 3 states have call successors, (5), 2 states have call predecessors, (5), 3 states have return successors, (4), 4 states have call predecessors, (4), 3 states have call successors, (4) [2024-11-18 14:21:51,294 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:51,295 INFO L93 Difference]: Finished difference Result 310 states and 380 transitions. [2024-11-18 14:21:51,295 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-11-18 14:21:51,295 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 6 states have internal predecessors, (44), 3 states have call successors, (5), 2 states have call predecessors, (5), 3 states have return successors, (4), 4 states have call predecessors, (4), 3 states have call successors, (4) Word has length 53 [2024-11-18 14:21:51,296 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:51,297 INFO L225 Difference]: With dead ends: 310 [2024-11-18 14:21:51,297 INFO L226 Difference]: Without dead ends: 159 [2024-11-18 14:21:51,298 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 18 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=48, Invalid=134, Unknown=0, NotChecked=0, Total=182 [2024-11-18 14:21:51,298 INFO L432 NwaCegarLoop]: 77 mSDtfsCounter, 137 mSDsluCounter, 308 mSDsCounter, 0 mSdLazyCounter, 189 mSolverCounterSat, 32 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 144 SdHoareTripleChecker+Valid, 385 SdHoareTripleChecker+Invalid, 221 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 32 IncrementalHoareTripleChecker+Valid, 189 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:51,299 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [144 Valid, 385 Invalid, 221 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [32 Valid, 189 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-18 14:21:51,302 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 159 states. [2024-11-18 14:21:51,319 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 159 to 157. [2024-11-18 14:21:51,320 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 157 states, 120 states have (on average 1.225) internal successors, (147), 128 states have internal predecessors, (147), 18 states have call successors, (18), 15 states have call predecessors, (18), 18 states have return successors, (23), 19 states have call predecessors, (23), 18 states have call successors, (23) [2024-11-18 14:21:51,322 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 157 states to 157 states and 188 transitions. [2024-11-18 14:21:51,323 INFO L78 Accepts]: Start accepts. Automaton has 157 states and 188 transitions. Word has length 53 [2024-11-18 14:21:51,323 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:51,323 INFO L471 AbstractCegarLoop]: Abstraction has 157 states and 188 transitions. [2024-11-18 14:21:51,323 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 6 states have internal predecessors, (44), 3 states have call successors, (5), 2 states have call predecessors, (5), 3 states have return successors, (4), 4 states have call predecessors, (4), 3 states have call successors, (4) [2024-11-18 14:21:51,323 INFO L276 IsEmpty]: Start isEmpty. Operand 157 states and 188 transitions. [2024-11-18 14:21:51,324 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-11-18 14:21:51,324 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:51,324 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:51,325 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-11-18 14:21:51,325 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:51,325 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:51,325 INFO L85 PathProgramCache]: Analyzing trace with hash -2072494715, now seen corresponding path program 1 times [2024-11-18 14:21:51,325 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:51,326 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [624059136] [2024-11-18 14:21:51,326 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:51,326 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:51,346 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:51,422 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:51,423 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:51,423 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [624059136] [2024-11-18 14:21:51,423 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [624059136] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:51,423 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:51,423 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-11-18 14:21:51,424 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [560757499] [2024-11-18 14:21:51,424 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:51,425 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-18 14:21:51,425 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:51,425 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-18 14:21:51,425 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-18 14:21:51,425 INFO L87 Difference]: Start difference. First operand 157 states and 188 transitions. Second operand has 5 states, 5 states have (on average 9.6) internal successors, (48), 5 states have internal predecessors, (48), 2 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-18 14:21:51,451 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:51,451 INFO L93 Difference]: Finished difference Result 309 states and 378 transitions. [2024-11-18 14:21:51,452 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-11-18 14:21:51,452 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.6) internal successors, (48), 5 states have internal predecessors, (48), 2 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 59 [2024-11-18 14:21:51,453 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:51,454 INFO L225 Difference]: With dead ends: 309 [2024-11-18 14:21:51,454 INFO L226 Difference]: Without dead ends: 160 [2024-11-18 14:21:51,455 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-18 14:21:51,456 INFO L432 NwaCegarLoop]: 98 mSDtfsCounter, 0 mSDsluCounter, 288 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 386 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:51,456 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 386 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-18 14:21:51,459 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 160 states. [2024-11-18 14:21:51,476 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 160 to 160. [2024-11-18 14:21:51,476 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 160 states, 123 states have (on average 1.2195121951219512) internal successors, (150), 131 states have internal predecessors, (150), 18 states have call successors, (18), 15 states have call predecessors, (18), 18 states have return successors, (23), 19 states have call predecessors, (23), 18 states have call successors, (23) [2024-11-18 14:21:51,477 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 160 states to 160 states and 191 transitions. [2024-11-18 14:21:51,478 INFO L78 Accepts]: Start accepts. Automaton has 160 states and 191 transitions. Word has length 59 [2024-11-18 14:21:51,478 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:51,478 INFO L471 AbstractCegarLoop]: Abstraction has 160 states and 191 transitions. [2024-11-18 14:21:51,479 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.6) internal successors, (48), 5 states have internal predecessors, (48), 2 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-18 14:21:51,479 INFO L276 IsEmpty]: Start isEmpty. Operand 160 states and 191 transitions. [2024-11-18 14:21:51,480 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-11-18 14:21:51,480 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:51,480 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:51,480 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-11-18 14:21:51,481 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:51,481 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:51,481 INFO L85 PathProgramCache]: Analyzing trace with hash 1236936713, now seen corresponding path program 1 times [2024-11-18 14:21:51,481 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:51,482 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1357963097] [2024-11-18 14:21:51,482 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:51,482 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:51,511 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:51,595 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:51,597 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:51,597 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1357963097] [2024-11-18 14:21:51,597 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1357963097] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:51,597 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:51,597 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-11-18 14:21:51,597 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [18679688] [2024-11-18 14:21:51,597 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:51,598 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-11-18 14:21:51,598 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:51,599 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-11-18 14:21:51,599 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-18 14:21:51,599 INFO L87 Difference]: Start difference. First operand 160 states and 191 transitions. Second operand has 4 states, 4 states have (on average 12.0) internal successors, (48), 4 states have internal predecessors, (48), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-11-18 14:21:51,695 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:51,696 INFO L93 Difference]: Finished difference Result 486 states and 600 transitions. [2024-11-18 14:21:51,696 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-11-18 14:21:51,696 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 12.0) internal successors, (48), 4 states have internal predecessors, (48), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 59 [2024-11-18 14:21:51,697 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:51,698 INFO L225 Difference]: With dead ends: 486 [2024-11-18 14:21:51,698 INFO L226 Difference]: Without dead ends: 334 [2024-11-18 14:21:51,699 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-18 14:21:51,700 INFO L432 NwaCegarLoop]: 166 mSDtfsCounter, 122 mSDsluCounter, 154 mSDsCounter, 0 mSdLazyCounter, 62 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 122 SdHoareTripleChecker+Valid, 320 SdHoareTripleChecker+Invalid, 67 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 62 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:51,700 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [122 Valid, 320 Invalid, 67 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 62 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-18 14:21:51,701 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 334 states. [2024-11-18 14:21:51,728 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 334 to 327. [2024-11-18 14:21:51,729 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 327 states, 249 states have (on average 1.2048192771084338) internal successors, (300), 263 states have internal predecessors, (300), 39 states have call successors, (39), 33 states have call predecessors, (39), 38 states have return successors, (58), 41 states have call predecessors, (58), 39 states have call successors, (58) [2024-11-18 14:21:51,730 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 327 states to 327 states and 397 transitions. [2024-11-18 14:21:51,731 INFO L78 Accepts]: Start accepts. Automaton has 327 states and 397 transitions. Word has length 59 [2024-11-18 14:21:51,731 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:51,731 INFO L471 AbstractCegarLoop]: Abstraction has 327 states and 397 transitions. [2024-11-18 14:21:51,732 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 12.0) internal successors, (48), 4 states have internal predecessors, (48), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-11-18 14:21:51,732 INFO L276 IsEmpty]: Start isEmpty. Operand 327 states and 397 transitions. [2024-11-18 14:21:51,733 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-11-18 14:21:51,733 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:51,733 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:51,733 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2024-11-18 14:21:51,733 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:51,734 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:51,734 INFO L85 PathProgramCache]: Analyzing trace with hash -1533447185, now seen corresponding path program 1 times [2024-11-18 14:21:51,734 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:51,734 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [301504936] [2024-11-18 14:21:51,734 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:51,734 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:51,751 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:51,901 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:51,901 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:51,901 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [301504936] [2024-11-18 14:21:51,901 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [301504936] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:51,902 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:51,902 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-11-18 14:21:51,902 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [109844464] [2024-11-18 14:21:51,902 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:51,902 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-11-18 14:21:51,903 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:51,903 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-11-18 14:21:51,903 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2024-11-18 14:21:51,903 INFO L87 Difference]: Start difference. First operand 327 states and 397 transitions. Second operand has 8 states, 8 states have (on average 6.25) internal successors, (50), 7 states have internal predecessors, (50), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2024-11-18 14:21:52,366 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:52,367 INFO L93 Difference]: Finished difference Result 882 states and 1108 transitions. [2024-11-18 14:21:52,367 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-11-18 14:21:52,367 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 6.25) internal successors, (50), 7 states have internal predecessors, (50), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) Word has length 63 [2024-11-18 14:21:52,368 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:52,373 INFO L225 Difference]: With dead ends: 882 [2024-11-18 14:21:52,373 INFO L226 Difference]: Without dead ends: 613 [2024-11-18 14:21:52,374 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=47, Invalid=109, Unknown=0, NotChecked=0, Total=156 [2024-11-18 14:21:52,375 INFO L432 NwaCegarLoop]: 119 mSDtfsCounter, 338 mSDsluCounter, 407 mSDsCounter, 0 mSdLazyCounter, 318 mSolverCounterSat, 79 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 344 SdHoareTripleChecker+Valid, 526 SdHoareTripleChecker+Invalid, 397 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 79 IncrementalHoareTripleChecker+Valid, 318 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:52,375 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [344 Valid, 526 Invalid, 397 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [79 Valid, 318 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-11-18 14:21:52,377 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 613 states. [2024-11-18 14:21:52,442 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 613 to 563. [2024-11-18 14:21:52,444 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 563 states, 427 states have (on average 1.1943793911007026) internal successors, (510), 452 states have internal predecessors, (510), 67 states have call successors, (67), 58 states have call predecessors, (67), 68 states have return successors, (96), 70 states have call predecessors, (96), 67 states have call successors, (96) [2024-11-18 14:21:52,448 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 563 states to 563 states and 673 transitions. [2024-11-18 14:21:52,449 INFO L78 Accepts]: Start accepts. Automaton has 563 states and 673 transitions. Word has length 63 [2024-11-18 14:21:52,449 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:52,449 INFO L471 AbstractCegarLoop]: Abstraction has 563 states and 673 transitions. [2024-11-18 14:21:52,450 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 6.25) internal successors, (50), 7 states have internal predecessors, (50), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2024-11-18 14:21:52,450 INFO L276 IsEmpty]: Start isEmpty. Operand 563 states and 673 transitions. [2024-11-18 14:21:52,453 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 107 [2024-11-18 14:21:52,453 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:52,453 INFO L215 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:52,454 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2024-11-18 14:21:52,454 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:52,454 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:52,455 INFO L85 PathProgramCache]: Analyzing trace with hash -706462267, now seen corresponding path program 1 times [2024-11-18 14:21:52,455 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:52,455 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [953108919] [2024-11-18 14:21:52,455 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:52,455 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:52,482 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:52,645 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 8 proven. 18 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2024-11-18 14:21:52,645 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:52,646 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [953108919] [2024-11-18 14:21:52,646 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [953108919] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-18 14:21:52,646 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [795942343] [2024-11-18 14:21:52,646 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:52,646 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:21:52,646 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:21:52,648 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-18 14:21:52,650 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-11-18 14:21:52,752 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:52,754 INFO L255 TraceCheckSpWp]: Trace formula consists of 341 conjuncts, 8 conjuncts are in the unsatisfiable core [2024-11-18 14:21:52,770 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-18 14:21:52,926 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 28 proven. 9 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-18 14:21:52,926 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-18 14:21:53,134 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 18 proven. 8 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2024-11-18 14:21:53,134 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [795942343] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-18 14:21:53,134 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-18 14:21:53,135 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 6, 6] total 15 [2024-11-18 14:21:53,135 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [125036749] [2024-11-18 14:21:53,135 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-18 14:21:53,135 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-11-18 14:21:53,135 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:53,136 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-11-18 14:21:53,136 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=41, Invalid=169, Unknown=0, NotChecked=0, Total=210 [2024-11-18 14:21:53,137 INFO L87 Difference]: Start difference. First operand 563 states and 673 transitions. Second operand has 15 states, 15 states have (on average 9.666666666666666) internal successors, (145), 13 states have internal predecessors, (145), 7 states have call successors, (24), 4 states have call predecessors, (24), 8 states have return successors, (22), 9 states have call predecessors, (22), 7 states have call successors, (22) [2024-11-18 14:21:53,686 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:53,686 INFO L93 Difference]: Finished difference Result 1278 states and 1592 transitions. [2024-11-18 14:21:53,686 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2024-11-18 14:21:53,687 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 9.666666666666666) internal successors, (145), 13 states have internal predecessors, (145), 7 states have call successors, (24), 4 states have call predecessors, (24), 8 states have return successors, (22), 9 states have call predecessors, (22), 7 states have call successors, (22) Word has length 106 [2024-11-18 14:21:53,687 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:53,693 INFO L225 Difference]: With dead ends: 1278 [2024-11-18 14:21:53,693 INFO L226 Difference]: Without dead ends: 771 [2024-11-18 14:21:53,696 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 240 GetRequests, 209 SyntacticMatches, 4 SemanticMatches, 27 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 164 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=208, Invalid=604, Unknown=0, NotChecked=0, Total=812 [2024-11-18 14:21:53,696 INFO L432 NwaCegarLoop]: 211 mSDtfsCounter, 367 mSDsluCounter, 1193 mSDsCounter, 0 mSdLazyCounter, 324 mSolverCounterSat, 116 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 369 SdHoareTripleChecker+Valid, 1404 SdHoareTripleChecker+Invalid, 440 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 116 IncrementalHoareTripleChecker+Valid, 324 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:53,696 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [369 Valid, 1404 Invalid, 440 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [116 Valid, 324 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-11-18 14:21:53,698 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 771 states. [2024-11-18 14:21:53,755 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 771 to 630. [2024-11-18 14:21:53,757 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 630 states, 473 states have (on average 1.1966173361522199) internal successors, (566), 506 states have internal predecessors, (566), 78 states have call successors, (78), 69 states have call predecessors, (78), 78 states have return successors, (107), 77 states have call predecessors, (107), 78 states have call successors, (107) [2024-11-18 14:21:53,761 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 630 states to 630 states and 751 transitions. [2024-11-18 14:21:53,762 INFO L78 Accepts]: Start accepts. Automaton has 630 states and 751 transitions. Word has length 106 [2024-11-18 14:21:53,762 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:53,763 INFO L471 AbstractCegarLoop]: Abstraction has 630 states and 751 transitions. [2024-11-18 14:21:53,763 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 9.666666666666666) internal successors, (145), 13 states have internal predecessors, (145), 7 states have call successors, (24), 4 states have call predecessors, (24), 8 states have return successors, (22), 9 states have call predecessors, (22), 7 states have call successors, (22) [2024-11-18 14:21:53,763 INFO L276 IsEmpty]: Start isEmpty. Operand 630 states and 751 transitions. [2024-11-18 14:21:53,766 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 193 [2024-11-18 14:21:53,766 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:53,766 INFO L215 NwaCegarLoop]: trace histogram [5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:53,784 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-11-18 14:21:53,971 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2024-11-18 14:21:53,972 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:53,973 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:53,973 INFO L85 PathProgramCache]: Analyzing trace with hash -943972392, now seen corresponding path program 1 times [2024-11-18 14:21:53,973 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:53,973 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [314991453] [2024-11-18 14:21:53,973 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:53,973 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:54,002 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:54,324 INFO L134 CoverageAnalysis]: Checked inductivity of 216 backedges. 89 proven. 29 refuted. 0 times theorem prover too weak. 98 trivial. 0 not checked. [2024-11-18 14:21:54,325 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:54,325 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [314991453] [2024-11-18 14:21:54,326 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [314991453] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-18 14:21:54,326 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [186703049] [2024-11-18 14:21:54,326 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:54,326 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:21:54,326 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:21:54,328 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-18 14:21:54,329 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-11-18 14:21:54,464 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:54,471 INFO L255 TraceCheckSpWp]: Trace formula consists of 554 conjuncts, 13 conjuncts are in the unsatisfiable core [2024-11-18 14:21:54,482 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-18 14:21:54,705 INFO L134 CoverageAnalysis]: Checked inductivity of 216 backedges. 158 proven. 4 refuted. 0 times theorem prover too weak. 54 trivial. 0 not checked. [2024-11-18 14:21:54,705 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-18 14:21:55,191 INFO L134 CoverageAnalysis]: Checked inductivity of 216 backedges. 78 proven. 42 refuted. 0 times theorem prover too weak. 96 trivial. 0 not checked. [2024-11-18 14:21:55,192 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [186703049] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-18 14:21:55,192 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-18 14:21:55,193 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10, 11] total 25 [2024-11-18 14:21:55,193 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1130441649] [2024-11-18 14:21:55,193 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-18 14:21:55,193 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 25 states [2024-11-18 14:21:55,194 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:55,194 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 25 interpolants. [2024-11-18 14:21:55,195 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=151, Invalid=449, Unknown=0, NotChecked=0, Total=600 [2024-11-18 14:21:55,195 INFO L87 Difference]: Start difference. First operand 630 states and 751 transitions. Second operand has 25 states, 25 states have (on average 8.56) internal successors, (214), 24 states have internal predecessors, (214), 11 states have call successors, (35), 6 states have call predecessors, (35), 10 states have return successors, (37), 10 states have call predecessors, (37), 11 states have call successors, (37) [2024-11-18 14:21:55,917 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:55,918 INFO L93 Difference]: Finished difference Result 1406 states and 1749 transitions. [2024-11-18 14:21:55,918 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2024-11-18 14:21:55,919 INFO L78 Accepts]: Start accepts. Automaton has has 25 states, 25 states have (on average 8.56) internal successors, (214), 24 states have internal predecessors, (214), 11 states have call successors, (35), 6 states have call predecessors, (35), 10 states have return successors, (37), 10 states have call predecessors, (37), 11 states have call successors, (37) Word has length 192 [2024-11-18 14:21:55,919 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:55,923 INFO L225 Difference]: With dead ends: 1406 [2024-11-18 14:21:55,924 INFO L226 Difference]: Without dead ends: 784 [2024-11-18 14:21:55,926 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 406 GetRequests, 371 SyntacticMatches, 3 SemanticMatches, 32 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 300 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=275, Invalid=847, Unknown=0, NotChecked=0, Total=1122 [2024-11-18 14:21:55,927 INFO L432 NwaCegarLoop]: 106 mSDtfsCounter, 568 mSDsluCounter, 535 mSDsCounter, 0 mSdLazyCounter, 773 mSolverCounterSat, 221 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 571 SdHoareTripleChecker+Valid, 641 SdHoareTripleChecker+Invalid, 994 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 221 IncrementalHoareTripleChecker+Valid, 773 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:55,927 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [571 Valid, 641 Invalid, 994 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [221 Valid, 773 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-11-18 14:21:55,928 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 784 states. [2024-11-18 14:21:55,974 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 784 to 684. [2024-11-18 14:21:55,975 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 684 states, 516 states have (on average 1.1705426356589148) internal successors, (604), 546 states have internal predecessors, (604), 87 states have call successors, (87), 78 states have call predecessors, (87), 80 states have return successors, (103), 82 states have call predecessors, (103), 87 states have call successors, (103) [2024-11-18 14:21:55,978 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 684 states to 684 states and 794 transitions. [2024-11-18 14:21:55,980 INFO L78 Accepts]: Start accepts. Automaton has 684 states and 794 transitions. Word has length 192 [2024-11-18 14:21:55,980 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:55,980 INFO L471 AbstractCegarLoop]: Abstraction has 684 states and 794 transitions. [2024-11-18 14:21:55,981 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 25 states, 25 states have (on average 8.56) internal successors, (214), 24 states have internal predecessors, (214), 11 states have call successors, (35), 6 states have call predecessors, (35), 10 states have return successors, (37), 10 states have call predecessors, (37), 11 states have call successors, (37) [2024-11-18 14:21:55,981 INFO L276 IsEmpty]: Start isEmpty. Operand 684 states and 794 transitions. [2024-11-18 14:21:55,984 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 205 [2024-11-18 14:21:55,984 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:55,984 INFO L215 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:56,002 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-11-18 14:21:56,185 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-11-18 14:21:56,185 INFO L396 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:56,185 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:56,186 INFO L85 PathProgramCache]: Analyzing trace with hash -95679664, now seen corresponding path program 1 times [2024-11-18 14:21:56,186 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:56,186 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [80322190] [2024-11-18 14:21:56,186 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:56,186 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:56,207 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:56,473 INFO L134 CoverageAnalysis]: Checked inductivity of 258 backedges. 89 proven. 65 refuted. 0 times theorem prover too weak. 104 trivial. 0 not checked. [2024-11-18 14:21:56,474 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:56,474 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [80322190] [2024-11-18 14:21:56,474 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [80322190] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-18 14:21:56,474 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [103243274] [2024-11-18 14:21:56,475 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:56,475 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:21:56,475 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:21:56,477 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-18 14:21:56,478 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-11-18 14:21:56,607 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:56,610 INFO L255 TraceCheckSpWp]: Trace formula consists of 586 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-11-18 14:21:56,615 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-18 14:21:56,757 INFO L134 CoverageAnalysis]: Checked inductivity of 258 backedges. 195 proven. 9 refuted. 0 times theorem prover too weak. 54 trivial. 0 not checked. [2024-11-18 14:21:56,757 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-18 14:21:57,204 INFO L134 CoverageAnalysis]: Checked inductivity of 258 backedges. 99 proven. 54 refuted. 0 times theorem prover too weak. 105 trivial. 0 not checked. [2024-11-18 14:21:57,204 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [103243274] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-18 14:21:57,204 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-18 14:21:57,205 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 8, 8] total 23 [2024-11-18 14:21:57,205 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1440557414] [2024-11-18 14:21:57,205 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-18 14:21:57,206 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2024-11-18 14:21:57,206 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:57,206 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2024-11-18 14:21:57,207 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=81, Invalid=425, Unknown=0, NotChecked=0, Total=506 [2024-11-18 14:21:57,207 INFO L87 Difference]: Start difference. First operand 684 states and 794 transitions. Second operand has 23 states, 23 states have (on average 10.173913043478262) internal successors, (234), 20 states have internal predecessors, (234), 9 states have call successors, (40), 5 states have call predecessors, (40), 14 states have return successors, (40), 12 states have call predecessors, (40), 9 states have call successors, (40) [2024-11-18 14:21:57,890 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:57,891 INFO L93 Difference]: Finished difference Result 1343 states and 1576 transitions. [2024-11-18 14:21:57,891 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-11-18 14:21:57,891 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 23 states have (on average 10.173913043478262) internal successors, (234), 20 states have internal predecessors, (234), 9 states have call successors, (40), 5 states have call predecessors, (40), 14 states have return successors, (40), 12 states have call predecessors, (40), 9 states have call successors, (40) Word has length 204 [2024-11-18 14:21:57,892 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:57,895 INFO L225 Difference]: With dead ends: 1343 [2024-11-18 14:21:57,895 INFO L226 Difference]: Without dead ends: 715 [2024-11-18 14:21:57,897 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 441 GetRequests, 404 SyntacticMatches, 1 SemanticMatches, 36 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 213 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=299, Invalid=1107, Unknown=0, NotChecked=0, Total=1406 [2024-11-18 14:21:57,898 INFO L432 NwaCegarLoop]: 108 mSDtfsCounter, 533 mSDsluCounter, 758 mSDsCounter, 0 mSdLazyCounter, 759 mSolverCounterSat, 198 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 536 SdHoareTripleChecker+Valid, 866 SdHoareTripleChecker+Invalid, 957 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 198 IncrementalHoareTripleChecker+Valid, 759 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:57,898 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [536 Valid, 866 Invalid, 957 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [198 Valid, 759 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-11-18 14:21:57,899 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 715 states. [2024-11-18 14:21:57,946 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 715 to 699. [2024-11-18 14:21:57,948 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 699 states, 526 states have (on average 1.1596958174904943) internal successors, (610), 556 states have internal predecessors, (610), 87 states have call successors, (87), 83 states have call predecessors, (87), 85 states have return successors, (103), 82 states have call predecessors, (103), 87 states have call successors, (103) [2024-11-18 14:21:57,950 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 699 states to 699 states and 800 transitions. [2024-11-18 14:21:57,952 INFO L78 Accepts]: Start accepts. Automaton has 699 states and 800 transitions. Word has length 204 [2024-11-18 14:21:57,952 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:57,952 INFO L471 AbstractCegarLoop]: Abstraction has 699 states and 800 transitions. [2024-11-18 14:21:57,952 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 23 states have (on average 10.173913043478262) internal successors, (234), 20 states have internal predecessors, (234), 9 states have call successors, (40), 5 states have call predecessors, (40), 14 states have return successors, (40), 12 states have call predecessors, (40), 9 states have call successors, (40) [2024-11-18 14:21:57,952 INFO L276 IsEmpty]: Start isEmpty. Operand 699 states and 800 transitions. [2024-11-18 14:21:57,956 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 206 [2024-11-18 14:21:57,956 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:57,957 INFO L215 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:57,975 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2024-11-18 14:21:58,157 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,4 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:21:58,158 INFO L396 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:58,158 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:58,158 INFO L85 PathProgramCache]: Analyzing trace with hash 1738016256, now seen corresponding path program 1 times [2024-11-18 14:21:58,158 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:58,158 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1788025765] [2024-11-18 14:21:58,158 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:58,159 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:58,181 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:58,421 INFO L134 CoverageAnalysis]: Checked inductivity of 259 backedges. 108 proven. 0 refuted. 0 times theorem prover too weak. 151 trivial. 0 not checked. [2024-11-18 14:21:58,421 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:58,421 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1788025765] [2024-11-18 14:21:58,421 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1788025765] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:58,422 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:58,422 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2024-11-18 14:21:58,422 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [184175462] [2024-11-18 14:21:58,422 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:58,423 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2024-11-18 14:21:58,423 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:58,423 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2024-11-18 14:21:58,423 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=73, Unknown=0, NotChecked=0, Total=90 [2024-11-18 14:21:58,424 INFO L87 Difference]: Start difference. First operand 699 states and 800 transitions. Second operand has 10 states, 10 states have (on average 10.2) internal successors, (102), 8 states have internal predecessors, (102), 3 states have call successors, (15), 2 states have call predecessors, (15), 4 states have return successors, (17), 5 states have call predecessors, (17), 3 states have call successors, (17) [2024-11-18 14:21:58,767 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:58,767 INFO L93 Difference]: Finished difference Result 1855 states and 2169 transitions. [2024-11-18 14:21:58,768 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2024-11-18 14:21:58,768 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 10 states have (on average 10.2) internal successors, (102), 8 states have internal predecessors, (102), 3 states have call successors, (15), 2 states have call predecessors, (15), 4 states have return successors, (17), 5 states have call predecessors, (17), 3 states have call successors, (17) Word has length 205 [2024-11-18 14:21:58,768 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:58,774 INFO L225 Difference]: With dead ends: 1855 [2024-11-18 14:21:58,774 INFO L226 Difference]: Without dead ends: 1164 [2024-11-18 14:21:58,777 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 66 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=65, Invalid=397, Unknown=0, NotChecked=0, Total=462 [2024-11-18 14:21:58,778 INFO L432 NwaCegarLoop]: 163 mSDtfsCounter, 137 mSDsluCounter, 836 mSDsCounter, 0 mSdLazyCounter, 403 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 141 SdHoareTripleChecker+Valid, 999 SdHoareTripleChecker+Invalid, 412 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 403 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:58,778 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [141 Valid, 999 Invalid, 412 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 403 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-18 14:21:58,779 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1164 states. [2024-11-18 14:21:58,853 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1164 to 1112. [2024-11-18 14:21:58,857 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1112 states, 844 states have (on average 1.1244075829383886) internal successors, (949), 877 states have internal predecessors, (949), 137 states have call successors, (137), 133 states have call predecessors, (137), 130 states have return successors, (151), 126 states have call predecessors, (151), 137 states have call successors, (151) [2024-11-18 14:21:58,862 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1112 states to 1112 states and 1237 transitions. [2024-11-18 14:21:58,864 INFO L78 Accepts]: Start accepts. Automaton has 1112 states and 1237 transitions. Word has length 205 [2024-11-18 14:21:58,865 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:58,865 INFO L471 AbstractCegarLoop]: Abstraction has 1112 states and 1237 transitions. [2024-11-18 14:21:58,865 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 10 states have (on average 10.2) internal successors, (102), 8 states have internal predecessors, (102), 3 states have call successors, (15), 2 states have call predecessors, (15), 4 states have return successors, (17), 5 states have call predecessors, (17), 3 states have call successors, (17) [2024-11-18 14:21:58,865 INFO L276 IsEmpty]: Start isEmpty. Operand 1112 states and 1237 transitions. [2024-11-18 14:21:58,870 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 214 [2024-11-18 14:21:58,870 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:58,870 INFO L215 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:58,870 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2024-11-18 14:21:58,871 INFO L396 AbstractCegarLoop]: === Iteration 14 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:58,871 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:58,871 INFO L85 PathProgramCache]: Analyzing trace with hash 1063896010, now seen corresponding path program 1 times [2024-11-18 14:21:58,871 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:58,872 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [82629522] [2024-11-18 14:21:58,872 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:58,872 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:58,897 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:59,461 INFO L134 CoverageAnalysis]: Checked inductivity of 263 backedges. 95 proven. 57 refuted. 0 times theorem prover too weak. 111 trivial. 0 not checked. [2024-11-18 14:21:59,461 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:59,462 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [82629522] [2024-11-18 14:21:59,462 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [82629522] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-18 14:21:59,462 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1344235521] [2024-11-18 14:21:59,462 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:59,462 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:21:59,463 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:21:59,464 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-18 14:21:59,466 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-11-18 14:21:59,614 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:59,618 INFO L255 TraceCheckSpWp]: Trace formula consists of 605 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-11-18 14:21:59,623 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-18 14:21:59,848 INFO L134 CoverageAnalysis]: Checked inductivity of 263 backedges. 138 proven. 26 refuted. 0 times theorem prover too weak. 99 trivial. 0 not checked. [2024-11-18 14:21:59,848 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-18 14:22:00,482 INFO L134 CoverageAnalysis]: Checked inductivity of 263 backedges. 99 proven. 45 refuted. 0 times theorem prover too weak. 119 trivial. 0 not checked. [2024-11-18 14:22:00,482 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1344235521] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-18 14:22:00,482 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-18 14:22:00,483 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 8, 13] total 22 [2024-11-18 14:22:00,483 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [549544664] [2024-11-18 14:22:00,483 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-18 14:22:00,484 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-11-18 14:22:00,484 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:22:00,485 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-11-18 14:22:00,485 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=121, Invalid=341, Unknown=0, NotChecked=0, Total=462 [2024-11-18 14:22:00,486 INFO L87 Difference]: Start difference. First operand 1112 states and 1237 transitions. Second operand has 22 states, 22 states have (on average 11.136363636363637) internal successors, (245), 21 states have internal predecessors, (245), 15 states have call successors, (45), 8 states have call predecessors, (45), 14 states have return successors, (44), 15 states have call predecessors, (44), 15 states have call successors, (44) [2024-11-18 14:22:01,380 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:22:01,380 INFO L93 Difference]: Finished difference Result 2168 states and 2457 transitions. [2024-11-18 14:22:01,381 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-11-18 14:22:01,381 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 22 states have (on average 11.136363636363637) internal successors, (245), 21 states have internal predecessors, (245), 15 states have call successors, (45), 8 states have call predecessors, (45), 14 states have return successors, (44), 15 states have call predecessors, (44), 15 states have call successors, (44) Word has length 213 [2024-11-18 14:22:01,381 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:22:01,388 INFO L225 Difference]: With dead ends: 2168 [2024-11-18 14:22:01,388 INFO L226 Difference]: Without dead ends: 1522 [2024-11-18 14:22:01,391 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 465 GetRequests, 421 SyntacticMatches, 8 SemanticMatches, 36 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 334 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=404, Invalid=1002, Unknown=0, NotChecked=0, Total=1406 [2024-11-18 14:22:01,392 INFO L432 NwaCegarLoop]: 155 mSDtfsCounter, 646 mSDsluCounter, 748 mSDsCounter, 0 mSdLazyCounter, 925 mSolverCounterSat, 234 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 649 SdHoareTripleChecker+Valid, 903 SdHoareTripleChecker+Invalid, 1159 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 234 IncrementalHoareTripleChecker+Valid, 925 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2024-11-18 14:22:01,392 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [649 Valid, 903 Invalid, 1159 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [234 Valid, 925 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2024-11-18 14:22:01,394 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1522 states. [2024-11-18 14:22:01,486 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1522 to 1394. [2024-11-18 14:22:01,488 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1394 states, 1056 states have (on average 1.1278409090909092) internal successors, (1191), 1094 states have internal predecessors, (1191), 175 states have call successors, (175), 170 states have call predecessors, (175), 162 states have return successors, (191), 158 states have call predecessors, (191), 175 states have call successors, (191) [2024-11-18 14:22:01,493 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1394 states to 1394 states and 1557 transitions. [2024-11-18 14:22:01,495 INFO L78 Accepts]: Start accepts. Automaton has 1394 states and 1557 transitions. Word has length 213 [2024-11-18 14:22:01,496 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:22:01,496 INFO L471 AbstractCegarLoop]: Abstraction has 1394 states and 1557 transitions. [2024-11-18 14:22:01,496 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 22 states have (on average 11.136363636363637) internal successors, (245), 21 states have internal predecessors, (245), 15 states have call successors, (45), 8 states have call predecessors, (45), 14 states have return successors, (44), 15 states have call predecessors, (44), 15 states have call successors, (44) [2024-11-18 14:22:01,496 INFO L276 IsEmpty]: Start isEmpty. Operand 1394 states and 1557 transitions. [2024-11-18 14:22:01,501 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 264 [2024-11-18 14:22:01,501 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:22:01,501 INFO L215 NwaCegarLoop]: trace histogram [9, 9, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:22:01,519 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-11-18 14:22:01,702 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13,5 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:22:01,702 INFO L396 AbstractCegarLoop]: === Iteration 15 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:22:01,702 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:22:01,702 INFO L85 PathProgramCache]: Analyzing trace with hash -161147261, now seen corresponding path program 1 times [2024-11-18 14:22:01,703 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:22:01,703 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1710173626] [2024-11-18 14:22:01,703 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:22:01,703 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:22:01,735 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:22:02,487 INFO L134 CoverageAnalysis]: Checked inductivity of 442 backedges. 97 proven. 140 refuted. 0 times theorem prover too weak. 205 trivial. 0 not checked. [2024-11-18 14:22:02,487 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:22:02,487 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1710173626] [2024-11-18 14:22:02,487 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1710173626] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-18 14:22:02,487 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1567545397] [2024-11-18 14:22:02,488 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:22:02,488 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:22:02,488 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:22:02,490 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-18 14:22:02,492 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-11-18 14:22:02,642 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:22:02,645 INFO L255 TraceCheckSpWp]: Trace formula consists of 727 conjuncts, 30 conjuncts are in the unsatisfiable core [2024-11-18 14:22:02,650 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-18 14:22:02,974 INFO L134 CoverageAnalysis]: Checked inductivity of 442 backedges. 155 proven. 89 refuted. 0 times theorem prover too weak. 198 trivial. 0 not checked. [2024-11-18 14:22:02,974 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-18 14:22:03,866 INFO L134 CoverageAnalysis]: Checked inductivity of 442 backedges. 96 proven. 136 refuted. 0 times theorem prover too weak. 210 trivial. 0 not checked. [2024-11-18 14:22:03,867 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1567545397] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-18 14:22:03,867 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-18 14:22:03,867 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [16, 11, 16] total 30 [2024-11-18 14:22:03,868 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [567366419] [2024-11-18 14:22:03,868 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-18 14:22:03,869 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2024-11-18 14:22:03,869 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:22:03,870 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2024-11-18 14:22:03,871 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=151, Invalid=719, Unknown=0, NotChecked=0, Total=870 [2024-11-18 14:22:03,871 INFO L87 Difference]: Start difference. First operand 1394 states and 1557 transitions. Second operand has 30 states, 30 states have (on average 10.366666666666667) internal successors, (311), 29 states have internal predecessors, (311), 19 states have call successors, (60), 11 states have call predecessors, (60), 20 states have return successors, (62), 19 states have call predecessors, (62), 19 states have call successors, (62) [2024-11-18 14:22:05,003 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:22:05,003 INFO L93 Difference]: Finished difference Result 2250 states and 2527 transitions. [2024-11-18 14:22:05,003 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-11-18 14:22:05,004 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 30 states have (on average 10.366666666666667) internal successors, (311), 29 states have internal predecessors, (311), 19 states have call successors, (60), 11 states have call predecessors, (60), 20 states have return successors, (62), 19 states have call predecessors, (62), 19 states have call successors, (62) Word has length 263 [2024-11-18 14:22:05,004 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:22:05,007 INFO L225 Difference]: With dead ends: 2250 [2024-11-18 14:22:05,007 INFO L226 Difference]: Without dead ends: 0 [2024-11-18 14:22:05,013 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 569 GetRequests, 515 SyntacticMatches, 9 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 468 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=473, Invalid=1689, Unknown=0, NotChecked=0, Total=2162 [2024-11-18 14:22:05,014 INFO L432 NwaCegarLoop]: 145 mSDtfsCounter, 705 mSDsluCounter, 1323 mSDsCounter, 0 mSdLazyCounter, 1583 mSolverCounterSat, 286 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 707 SdHoareTripleChecker+Valid, 1468 SdHoareTripleChecker+Invalid, 1869 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 286 IncrementalHoareTripleChecker+Valid, 1583 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-11-18 14:22:05,015 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [707 Valid, 1468 Invalid, 1869 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [286 Valid, 1583 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-11-18 14:22:05,016 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-11-18 14:22:05,016 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-11-18 14:22:05,016 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-18 14:22:05,016 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-11-18 14:22:05,018 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 263 [2024-11-18 14:22:05,018 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:22:05,018 INFO L471 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-11-18 14:22:05,019 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 30 states have (on average 10.366666666666667) internal successors, (311), 29 states have internal predecessors, (311), 19 states have call successors, (60), 11 states have call predecessors, (60), 20 states have return successors, (62), 19 states have call predecessors, (62), 19 states have call successors, (62) [2024-11-18 14:22:05,019 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-11-18 14:22:05,019 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-11-18 14:22:05,022 INFO L782 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-11-18 14:22:05,040 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2024-11-18 14:22:05,242 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-11-18 14:22:05,245 INFO L407 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:22:05,251 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-11-18 14:22:15,937 INFO L170 ceAbstractionStarter]: Computing trace abstraction results [2024-11-18 14:22:15,987 WARN L156 FloydHoareUtils]: Requires clause for changeMethaneLevel contained old-variable. Original clause: (let ((.cse5 (= |old(~methaneLevelCritical~0)| 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse6 (= ~methaneLevelCritical~0 0))) (and (let ((.cse0 (= ~waterLevel~0 1)) (.cse3 (= ~waterLevel~0 0)) (.cse4 (= 2 ~waterLevel~0)) (.cse1 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1) (and .cse2 .cse3) (and .cse2 .cse4) (and .cse2 .cse0) (and .cse3 .cse1) (and .cse4 .cse1))) (= 1 ~systemActive~0) (or (not .cse5) .cse6) (or .cse5 (and .cse2 (not .cse6))))) Eliminated clause: (let ((.cse2 (= ~pumpRunning~0 0))) (and (let ((.cse0 (= ~waterLevel~0 1)) (.cse3 (= ~waterLevel~0 0)) (.cse4 (= 2 ~waterLevel~0)) (.cse1 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1) (and .cse2 .cse3) (and .cse2 .cse4) (and .cse2 .cse0) (and .cse3 .cse1) (and .cse4 .cse1))) (exists ((|old(~methaneLevelCritical~0)| Int)) (let ((.cse5 (= |old(~methaneLevelCritical~0)| 0)) (.cse6 (= ~methaneLevelCritical~0 0))) (and (or (not .cse5) .cse6) (or .cse5 (and .cse2 (not .cse6)))))) (= 1 ~systemActive~0))) [2024-11-18 14:22:15,998 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-18 14:22:16,015 WARN L156 FloydHoareUtils]: Requires clause for timeShift contained old-variable. Original clause: (let ((.cse19 (= |old(~waterLevel~0)| 0)) (.cse17 (= |old(~pumpRunning~0)| 0)) (.cse14 (= |old(~pumpRunning~0)| 1)) (.cse16 (= |old(~waterLevel~0)| 1)) (.cse15 (= |old(~waterLevel~0)| 2))) (let ((.cse1 (= ~pumpRunning~0 0)) (.cse3 (not .cse15)) (.cse2 (= 2 ~waterLevel~0)) (.cse9 (= ~waterLevel~0 0)) (.cse8 (= ~waterLevel~0 1)) (.cse12 (= ~pumpRunning~0 1)) (.cse4 (not .cse16)) (.cse11 (not .cse14)) (.cse0 (not .cse17)) (.cse5 (= ~methaneLevelCritical~0 0)) (.cse6 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse10 (not .cse19)) (.cse7 (<= 1 ~switchedOnBeforeTS~0))) (and (or .cse0 (and .cse1 .cse2) .cse3) (or .cse4 .cse5 .cse6 .cse7) (or .cse0 .cse4 (and .cse1 .cse8)) (or .cse0 (and .cse1 .cse9) .cse10) (or .cse11 .cse3 (and .cse2 .cse12)) (let ((.cse13 (= 1 ~systemActive~0)) (.cse18 (<= |old(~waterLevel~0)| 2))) (or (and .cse13 .cse14 .cse15) (and .cse16 .cse13 .cse17) (and .cse13 .cse14 .cse18 .cse19) (and .cse13 .cse17 .cse19) (and .cse13 .cse17 .cse15) (and .cse16 .cse13 .cse14 .cse18))) (or .cse4 .cse6 .cse11 .cse7) (or .cse11 .cse10 (and .cse9 .cse12)) (or (and .cse8 .cse12) .cse4 .cse11) (or .cse0 .cse5 .cse6 .cse10 .cse7)))) Eliminated clause: (exists ((|old(~pumpRunning~0)| Int) (|old(~switchedOnBeforeTS~0)| Int) (|old(~waterLevel~0)| Int)) (let ((.cse14 (= |old(~pumpRunning~0)| 1)) (.cse16 (= |old(~waterLevel~0)| 1)) (.cse18 (= |old(~waterLevel~0)| 0)) (.cse15 (= |old(~waterLevel~0)| 2)) (.cse17 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse17)) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (not .cse15)) (.cse2 (= 2 ~waterLevel~0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse5 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse6 (< 0 ~switchedOnBeforeTS~0)) (.cse7 (not .cse18)) (.cse11 (= ~waterLevel~0 0)) (.cse9 (= ~waterLevel~0 1)) (.cse12 (= ~pumpRunning~0 1)) (.cse8 (not .cse16)) (.cse10 (not .cse14))) (and (or .cse0 (and .cse1 .cse2) .cse3) (or .cse0 .cse4 .cse5 .cse6 .cse7) (or .cse0 .cse8 (and .cse1 .cse9)) (or .cse8 .cse5 .cse6 .cse10) (or .cse0 (and .cse1 .cse11) .cse7) (or .cse10 .cse3 (and .cse2 .cse12)) (or .cse8 .cse4 .cse5 .cse6) (or .cse10 .cse7 (and .cse11 .cse12)) (let ((.cse13 (= 1 ~systemActive~0))) (or (and .cse13 .cse14 .cse15) (and .cse16 .cse13 .cse17) (and .cse13 .cse14 .cse18) (and .cse16 .cse13 .cse14) (and .cse13 .cse17 .cse18) (and .cse13 .cse17 .cse15))) (or (and .cse9 .cse12) .cse8 .cse10))))) [2024-11-18 14:22:16,033 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-18 14:22:16,042 WARN L156 FloydHoareUtils]: Requires clause for waterRise contained old-variable. Original clause: (let ((.cse1 (= |old(~waterLevel~0)| 1)) (.cse2 (= |old(~waterLevel~0)| 2)) (.cse0 (= |old(~waterLevel~0)| 0))) (and (or (not .cse0) (= ~waterLevel~0 0)) (or (not .cse1) (= ~waterLevel~0 1)) (or (= 2 ~waterLevel~0) (not .cse2)) (let ((.cse7 (= ~pumpRunning~0 0)) (.cse8 (<= |old(~waterLevel~0)| 1)) (.cse3 (not (= ~switchedOnBeforeTS~0 0))) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse6 (= ~pumpRunning~0 1))) (or (and .cse3 .cse1 .cse4 .cse5 .cse6) (and .cse7 .cse5 .cse2) (and .cse7 .cse1 .cse5 .cse8) (and .cse4 .cse5 .cse2 .cse6) (and .cse7 .cse5 .cse8 .cse0) (and .cse3 .cse4 .cse5 .cse0 .cse6))))) Eliminated clause: (exists ((|old(~waterLevel~0)| Int)) (let ((.cse7 (= |old(~waterLevel~0)| 0)) (.cse1 (= |old(~waterLevel~0)| 1)) (.cse6 (= |old(~waterLevel~0)| 2))) (and (let ((.cse5 (= ~pumpRunning~0 0)) (.cse0 (not (= ~switchedOnBeforeTS~0 0))) (.cse2 (= ~methaneLevelCritical~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse4 (= ~pumpRunning~0 1))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse3 .cse6) (and .cse2 .cse3 .cse6 .cse4) (and .cse5 .cse1 .cse3) (and .cse5 .cse3 .cse7) (and .cse0 .cse2 .cse3 .cse7 .cse4))) (or (not .cse7) (= ~waterLevel~0 0)) (or (not .cse1) (= ~waterLevel~0 1)) (or (= 2 ~waterLevel~0) (not .cse6))))) [2024-11-18 14:22:16,050 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-18 14:22:16,060 WARN L156 FloydHoareUtils]: Requires clause for processEnvironment__wrappee__methaneQuery contained old-variable. Original clause: (let ((.cse3 (= |old(~pumpRunning~0)| 0)) (.cse0 (= |old(~pumpRunning~0)| 1)) (.cse5 (= ~pumpRunning~0 0))) (and (let ((.cse2 (<= 1 ~switchedOnBeforeTS~0)) (.cse4 (= ~waterLevel~0 0)) (.cse1 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2) (and .cse3 .cse4) (and .cse0 .cse2 .cse4) (and (= 2 ~waterLevel~0) .cse3) (and .cse3 .cse1))) (or (not .cse3) .cse5) (= 1 ~systemActive~0) (or (not .cse0) (= ~pumpRunning~0 1)) (or .cse5 (= ~methaneLevelCritical~0 0)))) Eliminated clause: (let ((.cse5 (= ~pumpRunning~0 0))) (and (exists ((|old(~pumpRunning~0)| Int)) (let ((.cse3 (= |old(~pumpRunning~0)| 0)) (.cse0 (= |old(~pumpRunning~0)| 1))) (and (let ((.cse2 (<= 1 ~switchedOnBeforeTS~0)) (.cse4 (= ~waterLevel~0 0)) (.cse1 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2) (and .cse3 .cse4) (and .cse0 .cse2 .cse4) (and (= 2 ~waterLevel~0) .cse3) (and .cse3 .cse1))) (or (not .cse3) .cse5) (or (not .cse0) (= ~pumpRunning~0 1))))) (= 1 ~systemActive~0) (or .cse5 (= ~methaneLevelCritical~0 0)))) [2024-11-18 14:22:16,068 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-18 14:22:16,086 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 18.11 02:22:16 BoogieIcfgContainer [2024-11-18 14:22:16,086 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-11-18 14:22:16,091 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-11-18 14:22:16,091 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-11-18 14:22:16,091 INFO L274 PluginConnector]: Witness Printer initialized [2024-11-18 14:22:16,091 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 18.11 02:21:49" (3/4) ... [2024-11-18 14:22:16,094 INFO L142 WitnessPrinter]: Generating witness for correct program [2024-11-18 14:22:16,099 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2024-11-18 14:22:16,101 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2024-11-18 14:22:16,101 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2024-11-18 14:22:16,101 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2024-11-18 14:22:16,102 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2024-11-18 14:22:16,102 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2024-11-18 14:22:16,102 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2024-11-18 14:22:16,102 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2024-11-18 14:22:16,112 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 20 nodes and edges [2024-11-18 14:22:16,113 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2024-11-18 14:22:16,113 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2024-11-18 14:22:16,114 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-18 14:22:16,114 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-18 14:22:16,233 INFO L149 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2024-11-18 14:22:16,233 INFO L149 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.yml [2024-11-18 14:22:16,233 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-11-18 14:22:16,234 INFO L158 Benchmark]: Toolchain (without parser) took 27973.44ms. Allocated memory was 151.0MB in the beginning and 440.4MB in the end (delta: 289.4MB). Free memory was 95.9MB in the beginning and 281.8MB in the end (delta: -185.9MB). Peak memory consumption was 104.8MB. Max. memory is 16.1GB. [2024-11-18 14:22:16,234 INFO L158 Benchmark]: CDTParser took 0.23ms. Allocated memory is still 151.0MB. Free memory was 125.8MB in the beginning and 125.6MB in the end (delta: 181.9kB). There was no memory consumed. Max. memory is 16.1GB. [2024-11-18 14:22:16,235 INFO L158 Benchmark]: CACSL2BoogieTranslator took 494.32ms. Allocated memory was 151.0MB in the beginning and 205.5MB in the end (delta: 54.5MB). Free memory was 95.7MB in the beginning and 173.7MB in the end (delta: -77.9MB). Peak memory consumption was 26.4MB. Max. memory is 16.1GB. [2024-11-18 14:22:16,235 INFO L158 Benchmark]: Boogie Procedure Inliner took 47.44ms. Allocated memory is still 205.5MB. Free memory was 173.6MB in the beginning and 173.0MB in the end (delta: 617.5kB). Peak memory consumption was 5.8MB. Max. memory is 16.1GB. [2024-11-18 14:22:16,236 INFO L158 Benchmark]: Boogie Preprocessor took 50.61ms. Allocated memory is still 205.5MB. Free memory was 173.0MB in the beginning and 170.9MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2024-11-18 14:22:16,236 INFO L158 Benchmark]: RCFGBuilder took 407.61ms. Allocated memory is still 205.5MB. Free memory was 170.9MB in the beginning and 152.0MB in the end (delta: 18.9MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2024-11-18 14:22:16,236 INFO L158 Benchmark]: TraceAbstraction took 26823.56ms. Allocated memory was 205.5MB in the beginning and 440.4MB in the end (delta: 234.9MB). Free memory was 151.0MB in the beginning and 290.2MB in the end (delta: -139.2MB). Peak memory consumption was 253.0MB. Max. memory is 16.1GB. [2024-11-18 14:22:16,236 INFO L158 Benchmark]: Witness Printer took 142.91ms. Allocated memory is still 440.4MB. Free memory was 290.2MB in the beginning and 281.8MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2024-11-18 14:22:16,238 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.23ms. Allocated memory is still 151.0MB. Free memory was 125.8MB in the beginning and 125.6MB in the end (delta: 181.9kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 494.32ms. Allocated memory was 151.0MB in the beginning and 205.5MB in the end (delta: 54.5MB). Free memory was 95.7MB in the beginning and 173.7MB in the end (delta: -77.9MB). Peak memory consumption was 26.4MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 47.44ms. Allocated memory is still 205.5MB. Free memory was 173.6MB in the beginning and 173.0MB in the end (delta: 617.5kB). Peak memory consumption was 5.8MB. Max. memory is 16.1GB. * Boogie Preprocessor took 50.61ms. Allocated memory is still 205.5MB. Free memory was 173.0MB in the beginning and 170.9MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 407.61ms. Allocated memory is still 205.5MB. Free memory was 170.9MB in the beginning and 152.0MB in the end (delta: 18.9MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * TraceAbstraction took 26823.56ms. Allocated memory was 205.5MB in the beginning and 440.4MB in the end (delta: 234.9MB). Free memory was 151.0MB in the beginning and 290.2MB in the end (delta: -139.2MB). Peak memory consumption was 253.0MB. Max. memory is 16.1GB. * Witness Printer took 142.91ms. Allocated memory is still 440.4MB. Free memory was 290.2MB in the beginning and 281.8MB in the end (delta: 8.4MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [49] - GenericResultAtLocation [Line: 150]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [150] - GenericResultAtLocation [Line: 159]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [159] - GenericResultAtLocation [Line: 525]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [525] - GenericResultAtLocation [Line: 575]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [575] - GenericResultAtLocation [Line: 777]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [777] - GenericResultAtLocation [Line: 843]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [843] - GenericResultAtLocation [Line: 881]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [881] - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 155]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 98 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 15.9s, OverallIterations: 15, TraceHistogramMax: 9, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.1s, AutomataDifference: 5.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 3979 SdHoareTripleChecker+Valid, 3.7s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 3943 mSDsluCounter, 8888 SdHoareTripleChecker+Invalid, 3.0s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 6995 mSDsCounter, 1235 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 5482 IncrementalHoareTripleChecker+Invalid, 6717 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1235 mSolverCounterUnsat, 1893 mSDtfsCounter, 5482 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 2215 GetRequests, 1953 SyntacticMatches, 25 SemanticMatches, 237 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1583 ImplicationChecksByTransitivity, 2.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1394occurred in iteration=14, InterpolantAutomatonStates: 160, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.6s AutomataMinimizationTime, 15 MinimizatonAttempts, 502 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.2s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 7.0s InterpolantComputationTime, 2607 NumberOfCodeBlocks, 2607 NumberOfCodeBlocksAsserted, 20 NumberOfCheckSat, 3560 ConstructedInterpolants, 0 QuantifiedInterpolants, 8390 SizeOfPredicates, 5 NumberOfNonLiveVariables, 2813 ConjunctsInSsa, 79 ConjunctsInUnsatCore, 25 InterpolantComputations, 10 PerfectInterpolantSequences, 3203/3934 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 789]: Loop Invariant Derived loop invariant: (((((((((pumpRunning == 0) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 0)) || ((((((switchedOnBeforeTS != 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 0)) && (pumpRunning == 1))) || (((((2 == waterLevel) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0))) || ((((((methaneLevelCritical == 0) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) - InvariantResult [Line: 788]: Location Invariant Derived location invariant: 0 - InvariantResult [Line: 893]: Loop Invariant Derived loop invariant: 0 - ProcedureContractResult [Line: 610]: Procedure Contract for processEnvironment__wrappee__base Derived contract for procedure processEnvironment__wrappee__base. Requires: (((((((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1)) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 0))) || (((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive))) Ensures: ((((((((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1)) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 0))) || (((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive))) && (((((((waterLevel == \old(waterLevel)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts)))) - ProcedureContractResult [Line: 83]: Procedure Contract for changeMethaneLevel Derived contract for procedure changeMethaneLevel. Requires: ((((((((waterLevel == 1) && (pumpRunning == 1)) || ((pumpRunning == 0) && (waterLevel == 0))) || ((pumpRunning == 0) && (2 == waterLevel))) || ((pumpRunning == 0) && (waterLevel == 1))) || ((waterLevel == 0) && (pumpRunning == 1))) || ((2 == waterLevel) && (pumpRunning == 1))) && (1 == systemActive)) Ensures: (((((\old(methaneLevelCritical) == 0) || ((pumpRunning == 0) && (methaneLevelCritical == 0))) && ((((((((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1)) || (((2 == waterLevel) && (1 == systemActive)) && (pumpRunning == 1))) || (((1 == systemActive) && (waterLevel == 1)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 0))) || (((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive))) || (((1 == systemActive) && (waterLevel == 0)) && (pumpRunning == 1)))) && ((\old(methaneLevelCritical) != 0) || (methaneLevelCritical != 0))) && ((((((waterLevel == \old(waterLevel)) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts)))) - ProcedureContractResult [Line: 883]: Procedure Contract for cleanup Derived contract for procedure cleanup. Requires: 0 Ensures: (0 && ((((methaneLevelCritical == \old(methaneLevelCritical)) && (head == \old(head))) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts)))) - ProcedureContractResult [Line: 583]: Procedure Contract for timeShift Derived contract for procedure timeShift. Ensures: (((((((((((((((methaneLevelCritical == 0) || (\old(pumpRunning) != 1)) || (\old(waterLevel) != 0)) || (((pumpRunning == 0) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0))) && (((\old(pumpRunning) != 0) || (\old(waterLevel) != 1)) || ((pumpRunning == 0) && (waterLevel == 1)))) && ((((((((1 == systemActive) && (\old(pumpRunning) == 1)) && (\old(waterLevel) == 2)) || (((\old(waterLevel) == 1) && (1 == systemActive)) && (\old(pumpRunning) == 0))) || (((1 == systemActive) && (\old(pumpRunning) == 1)) && (\old(waterLevel) == 0))) || ((\old(pumpRunning) == 0) && (\old(waterLevel) == 0))) || (((\old(waterLevel) == 1) && (1 == systemActive)) && (\old(pumpRunning) == 1))) || (((1 == systemActive) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 2)))) && ((((1 < \old(waterLevel)) || (\old(pumpRunning) != 0)) || (\old(waterLevel) == 1)) || (((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 0)))) && ((((\old(pumpRunning) != 0) || ((pumpRunning == 0) && (2 == waterLevel))) || (\old(waterLevel) != 2)) || ((2 == waterLevel) && (pumpRunning == 1)))) && ((((methaneLevelCritical != 0) || (\old(pumpRunning) != 1)) || (((waterLevel == 1) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || (\old(waterLevel) != 2))) && ((((\old(pumpRunning) != 0) || (methaneLevelCritical == 0)) || ((pumpRunning == 0) && (2 == waterLevel))) || (\old(waterLevel) != 2))) && ((((((1 <= switchedOnBeforeTS) && (waterLevel == 0)) && (pumpRunning == 1)) || (methaneLevelCritical != 0)) || (\old(pumpRunning) != 1)) || (\old(waterLevel) != 0))) && ((((\old(waterLevel) != 1) || (((1 <= switchedOnBeforeTS) && (waterLevel == 0)) && (pumpRunning == 1))) || (methaneLevelCritical != 0)) || (\old(pumpRunning) != 1))) && ((((methaneLevelCritical == 0) || (\old(pumpRunning) != 1)) || (\old(waterLevel) != 2)) || (((pumpRunning == 0) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)))) && ((((\old(waterLevel) != 1) || (methaneLevelCritical == 0)) || (\old(pumpRunning) != 1)) || (((pumpRunning == 0) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)))) && ((((methaneLevelCritical == \old(methaneLevelCritical)) && (head == \old(head))) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts)))) - ProcedureContractResult [Line: 71]: Procedure Contract for waterRise Derived contract for procedure waterRise. Ensures: ((((((((((((((switchedOnBeforeTS != 0) && (\old(waterLevel) == 1)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (pumpRunning == 1)) || (((pumpRunning == 0) && (1 == systemActive)) && (\old(waterLevel) == 2))) || ((((methaneLevelCritical == 0) && (1 == systemActive)) && (\old(waterLevel) == 2)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (\old(waterLevel) == 1)) && (1 == systemActive))) || (((pumpRunning == 0) && (1 == systemActive)) && (\old(waterLevel) == 0))) || (((((switchedOnBeforeTS != 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (\old(waterLevel) == 0)) && (pumpRunning == 1))) && ((2 == waterLevel) || (\old(waterLevel) != 2))) && ((2 == waterLevel) || (\old(waterLevel) != 1))) && ((\old(waterLevel) != 0) || (waterLevel == 1))) && ((((((methaneLevelCritical == \old(methaneLevelCritical)) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts)))) - ProcedureContractResult [Line: 618]: Procedure Contract for processEnvironment__wrappee__methaneQuery Derived contract for procedure processEnvironment__wrappee__methaneQuery. Requires: ((1 == systemActive) && ((pumpRunning == 0) || (methaneLevelCritical == 0))) Ensures: (((((((((\old(pumpRunning) != 0) || (waterLevel != 0)) || ((pumpRunning == 0) && (1 == systemActive))) && (((waterLevel != 1) || (\old(pumpRunning) != 0)) || (pumpRunning == 0))) && ((\old(pumpRunning) != 1) || (pumpRunning == 1))) && ((pumpRunning == 0) || (pumpRunning == 1))) && ((pumpRunning == 0) || (methaneLevelCritical == 0))) && ((((((\old(pumpRunning) == 0) && (waterLevel == 0)) || (((2 == waterLevel) && (1 == systemActive)) && (\old(pumpRunning) == 0))) || ((((1 == systemActive) && (\old(pumpRunning) == 1)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || (((1 == systemActive) && (\old(pumpRunning) == 0)) && (waterLevel == 1))) || ((((1 == systemActive) && (\old(pumpRunning) == 1)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)))) && ((((((waterLevel == \old(waterLevel)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts)))) - ProcedureContractResult [Line: 713]: Procedure Contract for isPumpRunning Derived contract for procedure isPumpRunning. Requires: ((((((((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1)) || (((2 == waterLevel) && (1 == systemActive)) && (pumpRunning == 1))) || (((1 == systemActive) && (waterLevel == 1)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 0))) || (((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive))) || (((1 == systemActive) && (waterLevel == 0)) && (pumpRunning == 1))) Ensures: (((((((((((waterLevel == 1) && (pumpRunning == 1)) || ((pumpRunning == 0) && (waterLevel == 0))) || ((pumpRunning == 0) && (2 == waterLevel))) || ((pumpRunning == 0) && (waterLevel == 1))) || ((waterLevel == 0) && (pumpRunning == 1))) || ((2 == waterLevel) && (pumpRunning == 1))) && ((pumpRunning != 0) || (\result == 0))) && (1 == systemActive)) && ((\result == 1) || (pumpRunning != 1))) && (((((((waterLevel == \old(waterLevel)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts)))) - ProcedureContractResult [Line: 702]: Procedure Contract for isMethaneAlarm Derived contract for procedure isMethaneAlarm. Requires: ((((((1 == systemActive) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1)) || (((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive))) || ((((1 == systemActive) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) Ensures: ((((((((1 == systemActive) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1)) || (((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive))) || ((((1 == systemActive) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) && (methaneLevelCritical == \result)) && (((((((waterLevel == \old(waterLevel)) && (methaneLevelCritical == \old(methaneLevelCritical))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (pumpRunning == \old(pumpRunning))) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts)))) RESULT: Ultimate proved your program to be correct! [2024-11-18 14:22:16,275 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE