./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 3061b6dc Calling Ultimate with: /root/.sdkman/candidates/java/11.0.12-open/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 303db4082dd8b7a60cb4b5043655f09159321046818373497160cd54b8948d04 --- Real Ultimate output --- This is Ultimate 0.2.5-tmp.dk.eval-assert-order-craig-3061b6d-m [2024-11-18 14:21:48,905 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-11-18 14:21:48,961 INFO L114 SettingsManager]: Loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-11-18 14:21:48,964 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-11-18 14:21:48,966 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-11-18 14:21:48,997 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-11-18 14:21:48,997 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-11-18 14:21:48,998 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-11-18 14:21:48,998 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-11-18 14:21:48,999 INFO L153 SettingsManager]: * Use memory slicer=true [2024-11-18 14:21:49,000 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-11-18 14:21:49,000 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-11-18 14:21:49,000 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-11-18 14:21:49,001 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-11-18 14:21:49,003 INFO L153 SettingsManager]: * Use SBE=true [2024-11-18 14:21:49,003 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-11-18 14:21:49,003 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-11-18 14:21:49,003 INFO L153 SettingsManager]: * sizeof long=4 [2024-11-18 14:21:49,004 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-11-18 14:21:49,004 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-11-18 14:21:49,004 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-11-18 14:21:49,004 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-11-18 14:21:49,004 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-11-18 14:21:49,004 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-11-18 14:21:49,004 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-11-18 14:21:49,005 INFO L153 SettingsManager]: * sizeof long double=12 [2024-11-18 14:21:49,005 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-11-18 14:21:49,005 INFO L153 SettingsManager]: * Use constant arrays=true [2024-11-18 14:21:49,005 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-11-18 14:21:49,005 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-11-18 14:21:49,005 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-11-18 14:21:49,005 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-11-18 14:21:49,005 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-11-18 14:21:49,006 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-11-18 14:21:49,006 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-11-18 14:21:49,006 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-11-18 14:21:49,006 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-11-18 14:21:49,006 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-11-18 14:21:49,006 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-11-18 14:21:49,006 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-11-18 14:21:49,006 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-11-18 14:21:49,008 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-11-18 14:21:49,008 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 303db4082dd8b7a60cb4b5043655f09159321046818373497160cd54b8948d04 [2024-11-18 14:21:49,200 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-11-18 14:21:49,217 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-11-18 14:21:49,220 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-11-18 14:21:49,220 INFO L270 PluginConnector]: Initializing CDTParser... [2024-11-18 14:21:49,221 INFO L274 PluginConnector]: CDTParser initialized [2024-11-18 14:21:49,222 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c [2024-11-18 14:21:50,435 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-11-18 14:21:50,625 INFO L384 CDTParser]: Found 1 translation units. [2024-11-18 14:21:50,626 INFO L180 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c [2024-11-18 14:21:50,640 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/9336d8e03/ab6d1ff804c94bd3ab79926c0140854f/FLAG5c817691f [2024-11-18 14:21:50,653 INFO L435 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/9336d8e03/ab6d1ff804c94bd3ab79926c0140854f [2024-11-18 14:21:50,656 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-11-18 14:21:50,657 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-11-18 14:21:50,659 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-11-18 14:21:50,659 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-11-18 14:21:50,664 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-11-18 14:21:50,664 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 18.11 02:21:50" (1/1) ... [2024-11-18 14:21:50,665 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@53c21cb and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:50, skipping insertion in model container [2024-11-18 14:21:50,665 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 18.11 02:21:50" (1/1) ... [2024-11-18 14:21:50,697 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-11-18 14:21:50,853 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c[1605,1618] [2024-11-18 14:21:50,952 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-18 14:21:50,959 INFO L200 MainTranslator]: Completed pre-run [2024-11-18 14:21:50,966 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2024-11-18 14:21:50,967 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] [2024-11-18 14:21:50,967 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [283] [2024-11-18 14:21:50,968 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [353] [2024-11-18 14:21:50,968 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [454] [2024-11-18 14:21:50,968 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [820] [2024-11-18 14:21:50,968 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [855] [2024-11-18 14:21:50,968 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [905] [2024-11-18 14:21:50,972 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec5_product47.cil.c[1605,1618] [2024-11-18 14:21:51,013 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-18 14:21:51,029 INFO L204 MainTranslator]: Completed translation [2024-11-18 14:21:51,030 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51 WrapperNode [2024-11-18 14:21:51,030 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-11-18 14:21:51,031 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-11-18 14:21:51,031 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-11-18 14:21:51,031 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-11-18 14:21:51,036 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,056 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,075 INFO L138 Inliner]: procedures = 57, calls = 104, calls flagged for inlining = 24, calls inlined = 21, statements flattened = 214 [2024-11-18 14:21:51,075 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-11-18 14:21:51,076 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-11-18 14:21:51,076 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-11-18 14:21:51,076 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-11-18 14:21:51,094 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,094 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,096 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,105 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-11-18 14:21:51,106 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,106 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,108 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,111 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,112 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,113 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,114 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-11-18 14:21:51,115 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-11-18 14:21:51,115 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-11-18 14:21:51,115 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-11-18 14:21:51,116 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (1/1) ... [2024-11-18 14:21:51,124 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-11-18 14:21:51,141 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:21:51,154 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-11-18 14:21:51,156 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-11-18 14:21:51,192 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-11-18 14:21:51,193 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2024-11-18 14:21:51,193 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2024-11-18 14:21:51,193 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2024-11-18 14:21:51,193 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2024-11-18 14:21:51,193 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2024-11-18 14:21:51,193 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2024-11-18 14:21:51,194 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2024-11-18 14:21:51,194 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2024-11-18 14:21:51,194 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2024-11-18 14:21:51,194 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2024-11-18 14:21:51,194 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2024-11-18 14:21:51,195 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2024-11-18 14:21:51,195 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2024-11-18 14:21:51,195 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2024-11-18 14:21:51,195 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2024-11-18 14:21:51,195 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2024-11-18 14:21:51,196 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-11-18 14:21:51,196 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2024-11-18 14:21:51,196 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2024-11-18 14:21:51,197 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-11-18 14:21:51,197 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-11-18 14:21:51,271 INFO L238 CfgBuilder]: Building ICFG [2024-11-18 14:21:51,273 INFO L264 CfgBuilder]: Building CFG for each procedure with an implementation [2024-11-18 14:21:51,505 INFO L? ?]: Removed 43 outVars from TransFormulas that were not future-live. [2024-11-18 14:21:51,506 INFO L287 CfgBuilder]: Performing block encoding [2024-11-18 14:21:51,515 INFO L311 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-11-18 14:21:51,515 INFO L316 CfgBuilder]: Removed 2 assume(true) statements. [2024-11-18 14:21:51,516 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 18.11 02:21:51 BoogieIcfgContainer [2024-11-18 14:21:51,516 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-11-18 14:21:51,518 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-11-18 14:21:51,518 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-11-18 14:21:51,520 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-11-18 14:21:51,520 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 18.11 02:21:50" (1/3) ... [2024-11-18 14:21:51,521 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@314c354b and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 18.11 02:21:51, skipping insertion in model container [2024-11-18 14:21:51,521 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 18.11 02:21:51" (2/3) ... [2024-11-18 14:21:51,521 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@314c354b and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 18.11 02:21:51, skipping insertion in model container [2024-11-18 14:21:51,521 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 18.11 02:21:51" (3/3) ... [2024-11-18 14:21:51,522 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product47.cil.c [2024-11-18 14:21:51,534 INFO L214 ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-11-18 14:21:51,534 INFO L154 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-11-18 14:21:51,579 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-11-18 14:21:51,585 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@58784a5d, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-11-18 14:21:51,586 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-11-18 14:21:51,590 INFO L276 IsEmpty]: Start isEmpty. Operand has 105 states, 78 states have (on average 1.358974358974359) internal successors, (106), 87 states have internal predecessors, (106), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 13 states have call predecessors, (16), 16 states have call successors, (16) [2024-11-18 14:21:51,598 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2024-11-18 14:21:51,599 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:51,599 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:51,600 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:51,604 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:51,604 INFO L85 PathProgramCache]: Analyzing trace with hash 1870870440, now seen corresponding path program 1 times [2024-11-18 14:21:51,611 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:51,611 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [295534110] [2024-11-18 14:21:51,611 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:51,612 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:51,710 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:51,780 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:51,781 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:51,781 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [295534110] [2024-11-18 14:21:51,782 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [295534110] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:51,782 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:51,782 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-11-18 14:21:51,783 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1264177950] [2024-11-18 14:21:51,784 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:51,787 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-11-18 14:21:51,788 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:51,804 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-11-18 14:21:51,804 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-18 14:21:51,806 INFO L87 Difference]: Start difference. First operand has 105 states, 78 states have (on average 1.358974358974359) internal successors, (106), 87 states have internal predecessors, (106), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 13 states have call predecessors, (16), 16 states have call successors, (16) Second operand has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-11-18 14:21:51,834 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:51,834 INFO L93 Difference]: Finished difference Result 201 states and 270 transitions. [2024-11-18 14:21:51,835 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-11-18 14:21:51,836 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 32 [2024-11-18 14:21:51,836 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:51,842 INFO L225 Difference]: With dead ends: 201 [2024-11-18 14:21:51,843 INFO L226 Difference]: Without dead ends: 96 [2024-11-18 14:21:51,845 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-18 14:21:51,847 INFO L432 NwaCegarLoop]: 132 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 132 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:51,848 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 132 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-18 14:21:51,876 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 96 states. [2024-11-18 14:21:51,909 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 96 to 96. [2024-11-18 14:21:51,911 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 96 states, 71 states have (on average 1.295774647887324) internal successors, (92), 79 states have internal predecessors, (92), 16 states have call successors, (16), 9 states have call predecessors, (16), 8 states have return successors, (15), 12 states have call predecessors, (15), 15 states have call successors, (15) [2024-11-18 14:21:51,914 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 96 states to 96 states and 123 transitions. [2024-11-18 14:21:51,915 INFO L78 Accepts]: Start accepts. Automaton has 96 states and 123 transitions. Word has length 32 [2024-11-18 14:21:51,916 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:51,916 INFO L471 AbstractCegarLoop]: Abstraction has 96 states and 123 transitions. [2024-11-18 14:21:51,916 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-11-18 14:21:51,916 INFO L276 IsEmpty]: Start isEmpty. Operand 96 states and 123 transitions. [2024-11-18 14:21:51,918 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-11-18 14:21:51,918 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:51,918 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:51,919 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-11-18 14:21:51,919 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:51,919 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:51,920 INFO L85 PathProgramCache]: Analyzing trace with hash 470285971, now seen corresponding path program 1 times [2024-11-18 14:21:51,920 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:51,920 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1465043778] [2024-11-18 14:21:51,920 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:51,921 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:51,935 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:52,008 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:52,008 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:52,008 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1465043778] [2024-11-18 14:21:52,009 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1465043778] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:52,009 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:52,009 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-18 14:21:52,009 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [325812290] [2024-11-18 14:21:52,009 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:52,010 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-18 14:21:52,010 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:52,010 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-18 14:21:52,011 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-18 14:21:52,011 INFO L87 Difference]: Start difference. First operand 96 states and 123 transitions. Second operand has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 3 states have internal predecessors, (25), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-11-18 14:21:52,029 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:52,029 INFO L93 Difference]: Finished difference Result 153 states and 195 transitions. [2024-11-18 14:21:52,032 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-18 14:21:52,032 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 3 states have internal predecessors, (25), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 33 [2024-11-18 14:21:52,032 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:52,033 INFO L225 Difference]: With dead ends: 153 [2024-11-18 14:21:52,033 INFO L226 Difference]: Without dead ends: 87 [2024-11-18 14:21:52,034 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-18 14:21:52,035 INFO L432 NwaCegarLoop]: 110 mSDtfsCounter, 16 mSDsluCounter, 89 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 199 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:52,035 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 199 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-18 14:21:52,036 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 87 states. [2024-11-18 14:21:52,044 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 87 to 87. [2024-11-18 14:21:52,045 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 87 states, 65 states have (on average 1.3076923076923077) internal successors, (85), 73 states have internal predecessors, (85), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2024-11-18 14:21:52,047 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 87 states to 87 states and 111 transitions. [2024-11-18 14:21:52,049 INFO L78 Accepts]: Start accepts. Automaton has 87 states and 111 transitions. Word has length 33 [2024-11-18 14:21:52,049 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:52,049 INFO L471 AbstractCegarLoop]: Abstraction has 87 states and 111 transitions. [2024-11-18 14:21:52,049 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.333333333333334) internal successors, (25), 3 states have internal predecessors, (25), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-11-18 14:21:52,050 INFO L276 IsEmpty]: Start isEmpty. Operand 87 states and 111 transitions. [2024-11-18 14:21:52,050 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2024-11-18 14:21:52,051 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:52,051 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:52,051 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-11-18 14:21:52,051 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:52,051 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:52,051 INFO L85 PathProgramCache]: Analyzing trace with hash 746670416, now seen corresponding path program 1 times [2024-11-18 14:21:52,051 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:52,052 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [216609715] [2024-11-18 14:21:52,052 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:52,052 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:52,073 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:52,180 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:52,180 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:52,181 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [216609715] [2024-11-18 14:21:52,181 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [216609715] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:52,181 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:52,181 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-11-18 14:21:52,181 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [474617788] [2024-11-18 14:21:52,181 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:52,181 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-18 14:21:52,181 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:52,182 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-18 14:21:52,182 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2024-11-18 14:21:52,182 INFO L87 Difference]: Start difference. First operand 87 states and 111 transitions. Second operand has 6 states, 6 states have (on average 5.0) internal successors, (30), 6 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-18 14:21:52,380 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:52,380 INFO L93 Difference]: Finished difference Result 291 states and 379 transitions. [2024-11-18 14:21:52,381 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-11-18 14:21:52,381 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.0) internal successors, (30), 6 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 37 [2024-11-18 14:21:52,381 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:52,383 INFO L225 Difference]: With dead ends: 291 [2024-11-18 14:21:52,383 INFO L226 Difference]: Without dead ends: 212 [2024-11-18 14:21:52,384 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=20, Invalid=36, Unknown=0, NotChecked=0, Total=56 [2024-11-18 14:21:52,385 INFO L432 NwaCegarLoop]: 124 mSDtfsCounter, 190 mSDsluCounter, 364 mSDsCounter, 0 mSdLazyCounter, 104 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 190 SdHoareTripleChecker+Valid, 488 SdHoareTripleChecker+Invalid, 105 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 104 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:52,385 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [190 Valid, 488 Invalid, 105 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 104 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-18 14:21:52,386 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 212 states. [2024-11-18 14:21:52,410 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 212 to 206. [2024-11-18 14:21:52,411 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 206 states, 152 states have (on average 1.3355263157894737) internal successors, (203), 170 states have internal predecessors, (203), 32 states have call successors, (32), 21 states have call predecessors, (32), 21 states have return successors, (33), 24 states have call predecessors, (33), 32 states have call successors, (33) [2024-11-18 14:21:52,412 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 206 states to 206 states and 268 transitions. [2024-11-18 14:21:52,413 INFO L78 Accepts]: Start accepts. Automaton has 206 states and 268 transitions. Word has length 37 [2024-11-18 14:21:52,413 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:52,413 INFO L471 AbstractCegarLoop]: Abstraction has 206 states and 268 transitions. [2024-11-18 14:21:52,413 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.0) internal successors, (30), 6 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-18 14:21:52,413 INFO L276 IsEmpty]: Start isEmpty. Operand 206 states and 268 transitions. [2024-11-18 14:21:52,417 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2024-11-18 14:21:52,417 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:52,418 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:52,418 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-11-18 14:21:52,418 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:52,418 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:52,418 INFO L85 PathProgramCache]: Analyzing trace with hash -1079510586, now seen corresponding path program 1 times [2024-11-18 14:21:52,418 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:52,418 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1089438059] [2024-11-18 14:21:52,419 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:52,419 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:52,443 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:52,544 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-11-18 14:21:52,545 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:52,545 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1089438059] [2024-11-18 14:21:52,545 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1089438059] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:52,545 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:52,545 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-11-18 14:21:52,545 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [114087223] [2024-11-18 14:21:52,546 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:52,546 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-18 14:21:52,546 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:52,547 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-18 14:21:52,547 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-11-18 14:21:52,547 INFO L87 Difference]: Start difference. First operand 206 states and 268 transitions. Second operand has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-18 14:21:52,663 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:52,664 INFO L93 Difference]: Finished difference Result 497 states and 656 transitions. [2024-11-18 14:21:52,664 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-18 14:21:52,664 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 41 [2024-11-18 14:21:52,664 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:52,667 INFO L225 Difference]: With dead ends: 497 [2024-11-18 14:21:52,669 INFO L226 Difference]: Without dead ends: 299 [2024-11-18 14:21:52,671 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2024-11-18 14:21:52,674 INFO L432 NwaCegarLoop]: 105 mSDtfsCounter, 80 mSDsluCounter, 350 mSDsCounter, 0 mSdLazyCounter, 67 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 82 SdHoareTripleChecker+Valid, 455 SdHoareTripleChecker+Invalid, 76 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 67 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:52,675 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [82 Valid, 455 Invalid, 76 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 67 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-18 14:21:52,675 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 299 states. [2024-11-18 14:21:52,710 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 299 to 297. [2024-11-18 14:21:52,713 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 297 states, 221 states have (on average 1.2714932126696832) internal successors, (281), 240 states have internal predecessors, (281), 41 states have call successors, (41), 34 states have call predecessors, (41), 34 states have return successors, (51), 38 states have call predecessors, (51), 41 states have call successors, (51) [2024-11-18 14:21:52,715 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 297 states to 297 states and 373 transitions. [2024-11-18 14:21:52,717 INFO L78 Accepts]: Start accepts. Automaton has 297 states and 373 transitions. Word has length 41 [2024-11-18 14:21:52,717 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:52,717 INFO L471 AbstractCegarLoop]: Abstraction has 297 states and 373 transitions. [2024-11-18 14:21:52,718 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.0) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-11-18 14:21:52,718 INFO L276 IsEmpty]: Start isEmpty. Operand 297 states and 373 transitions. [2024-11-18 14:21:52,720 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-11-18 14:21:52,720 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:52,721 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:52,721 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-11-18 14:21:52,721 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:52,721 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:52,721 INFO L85 PathProgramCache]: Analyzing trace with hash -298139813, now seen corresponding path program 1 times [2024-11-18 14:21:52,722 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:52,722 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [386021991] [2024-11-18 14:21:52,722 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:52,722 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:52,747 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:52,858 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:52,858 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:52,858 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [386021991] [2024-11-18 14:21:52,858 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [386021991] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:52,858 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:52,859 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-11-18 14:21:52,859 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1984560179] [2024-11-18 14:21:52,860 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:52,860 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-18 14:21:52,860 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:52,861 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-18 14:21:52,861 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-18 14:21:52,861 INFO L87 Difference]: Start difference. First operand 297 states and 373 transitions. Second operand has 5 states, 5 states have (on average 9.6) internal successors, (48), 5 states have internal predecessors, (48), 2 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-18 14:21:52,896 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:52,897 INFO L93 Difference]: Finished difference Result 592 states and 764 transitions. [2024-11-18 14:21:52,897 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-11-18 14:21:52,897 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.6) internal successors, (48), 5 states have internal predecessors, (48), 2 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 59 [2024-11-18 14:21:52,899 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:52,900 INFO L225 Difference]: With dead ends: 592 [2024-11-18 14:21:52,902 INFO L226 Difference]: Without dead ends: 303 [2024-11-18 14:21:52,903 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-18 14:21:52,904 INFO L432 NwaCegarLoop]: 108 mSDtfsCounter, 0 mSDsluCounter, 318 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 426 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:52,904 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 426 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-18 14:21:52,905 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 303 states. [2024-11-18 14:21:52,927 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 303 to 303. [2024-11-18 14:21:52,928 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 303 states, 227 states have (on average 1.2643171806167401) internal successors, (287), 246 states have internal predecessors, (287), 41 states have call successors, (41), 34 states have call predecessors, (41), 34 states have return successors, (51), 38 states have call predecessors, (51), 41 states have call successors, (51) [2024-11-18 14:21:52,929 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 303 states to 303 states and 379 transitions. [2024-11-18 14:21:52,930 INFO L78 Accepts]: Start accepts. Automaton has 303 states and 379 transitions. Word has length 59 [2024-11-18 14:21:52,930 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:52,930 INFO L471 AbstractCegarLoop]: Abstraction has 303 states and 379 transitions. [2024-11-18 14:21:52,930 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.6) internal successors, (48), 5 states have internal predecessors, (48), 2 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-18 14:21:52,930 INFO L276 IsEmpty]: Start isEmpty. Operand 303 states and 379 transitions. [2024-11-18 14:21:52,933 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-11-18 14:21:52,935 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:52,935 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:52,935 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-11-18 14:21:52,935 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:52,936 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:52,936 INFO L85 PathProgramCache]: Analyzing trace with hash 1625088221, now seen corresponding path program 1 times [2024-11-18 14:21:52,936 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:52,936 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [479047335] [2024-11-18 14:21:52,936 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:52,936 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:52,946 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:53,015 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:53,017 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:53,017 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [479047335] [2024-11-18 14:21:53,017 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [479047335] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:53,018 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:53,018 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-11-18 14:21:53,018 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [972678515] [2024-11-18 14:21:53,018 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:53,018 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-18 14:21:53,018 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:53,019 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-18 14:21:53,019 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-11-18 14:21:53,019 INFO L87 Difference]: Start difference. First operand 303 states and 379 transitions. Second operand has 6 states, 6 states have (on average 8.0) internal successors, (48), 6 states have internal predecessors, (48), 2 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-18 14:21:53,051 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:53,052 INFO L93 Difference]: Finished difference Result 602 states and 774 transitions. [2024-11-18 14:21:53,052 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-11-18 14:21:53,052 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 6 states have internal predecessors, (48), 2 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 59 [2024-11-18 14:21:53,053 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:53,055 INFO L225 Difference]: With dead ends: 602 [2024-11-18 14:21:53,056 INFO L226 Difference]: Without dead ends: 307 [2024-11-18 14:21:53,056 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-11-18 14:21:53,057 INFO L432 NwaCegarLoop]: 107 mSDtfsCounter, 0 mSDsluCounter, 420 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 527 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:53,057 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 527 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-18 14:21:53,059 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 307 states. [2024-11-18 14:21:53,071 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 307 to 307. [2024-11-18 14:21:53,072 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 307 states, 231 states have (on average 1.2597402597402598) internal successors, (291), 250 states have internal predecessors, (291), 41 states have call successors, (41), 34 states have call predecessors, (41), 34 states have return successors, (51), 38 states have call predecessors, (51), 41 states have call successors, (51) [2024-11-18 14:21:53,073 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 307 states to 307 states and 383 transitions. [2024-11-18 14:21:53,073 INFO L78 Accepts]: Start accepts. Automaton has 307 states and 383 transitions. Word has length 59 [2024-11-18 14:21:53,074 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:53,074 INFO L471 AbstractCegarLoop]: Abstraction has 307 states and 383 transitions. [2024-11-18 14:21:53,074 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 8.0) internal successors, (48), 6 states have internal predecessors, (48), 2 states have call successors, (5), 1 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-18 14:21:53,074 INFO L276 IsEmpty]: Start isEmpty. Operand 307 states and 383 transitions. [2024-11-18 14:21:53,075 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2024-11-18 14:21:53,075 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:53,075 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:53,075 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-11-18 14:21:53,076 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:53,076 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:53,076 INFO L85 PathProgramCache]: Analyzing trace with hash -1283675681, now seen corresponding path program 1 times [2024-11-18 14:21:53,076 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:53,076 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [856627765] [2024-11-18 14:21:53,076 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:53,076 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:53,093 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:53,162 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:53,162 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:53,163 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [856627765] [2024-11-18 14:21:53,164 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [856627765] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:53,164 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:53,164 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-11-18 14:21:53,164 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1161364884] [2024-11-18 14:21:53,164 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:53,165 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-11-18 14:21:53,165 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:53,165 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-11-18 14:21:53,165 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-18 14:21:53,165 INFO L87 Difference]: Start difference. First operand 307 states and 383 transitions. Second operand has 4 states, 4 states have (on average 12.0) internal successors, (48), 4 states have internal predecessors, (48), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-11-18 14:21:53,288 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:53,289 INFO L93 Difference]: Finished difference Result 1012 states and 1305 transitions. [2024-11-18 14:21:53,290 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-11-18 14:21:53,290 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 12.0) internal successors, (48), 4 states have internal predecessors, (48), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 59 [2024-11-18 14:21:53,290 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:53,293 INFO L225 Difference]: With dead ends: 1012 [2024-11-18 14:21:53,293 INFO L226 Difference]: Without dead ends: 713 [2024-11-18 14:21:53,294 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-18 14:21:53,297 INFO L432 NwaCegarLoop]: 168 mSDtfsCounter, 137 mSDsluCounter, 155 mSDsCounter, 0 mSdLazyCounter, 66 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 137 SdHoareTripleChecker+Valid, 323 SdHoareTripleChecker+Invalid, 71 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 66 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:53,297 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [137 Valid, 323 Invalid, 71 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 66 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-18 14:21:53,298 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 713 states. [2024-11-18 14:21:53,362 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 713 to 699. [2024-11-18 14:21:53,363 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 699 states, 525 states have (on average 1.24) internal successors, (651), 561 states have internal predecessors, (651), 94 states have call successors, (94), 77 states have call predecessors, (94), 79 states have return successors, (137), 90 states have call predecessors, (137), 94 states have call successors, (137) [2024-11-18 14:21:53,368 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 699 states to 699 states and 882 transitions. [2024-11-18 14:21:53,369 INFO L78 Accepts]: Start accepts. Automaton has 699 states and 882 transitions. Word has length 59 [2024-11-18 14:21:53,369 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:53,369 INFO L471 AbstractCegarLoop]: Abstraction has 699 states and 882 transitions. [2024-11-18 14:21:53,370 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 12.0) internal successors, (48), 4 states have internal predecessors, (48), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2024-11-18 14:21:53,371 INFO L276 IsEmpty]: Start isEmpty. Operand 699 states and 882 transitions. [2024-11-18 14:21:53,372 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-11-18 14:21:53,372 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:53,372 INFO L215 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:53,372 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-11-18 14:21:53,372 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:53,372 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:53,373 INFO L85 PathProgramCache]: Analyzing trace with hash -1565994427, now seen corresponding path program 1 times [2024-11-18 14:21:53,373 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:53,373 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [816818994] [2024-11-18 14:21:53,373 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:53,373 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:53,394 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:53,529 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-18 14:21:53,530 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:53,531 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [816818994] [2024-11-18 14:21:53,531 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [816818994] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:21:53,531 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:21:53,531 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-11-18 14:21:53,531 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1152705855] [2024-11-18 14:21:53,531 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:21:53,532 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-11-18 14:21:53,532 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:53,532 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-11-18 14:21:53,532 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2024-11-18 14:21:53,533 INFO L87 Difference]: Start difference. First operand 699 states and 882 transitions. Second operand has 8 states, 8 states have (on average 6.25) internal successors, (50), 7 states have internal predecessors, (50), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2024-11-18 14:21:53,923 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:53,924 INFO L93 Difference]: Finished difference Result 2026 states and 2648 transitions. [2024-11-18 14:21:53,924 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-11-18 14:21:53,924 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 6.25) internal successors, (50), 7 states have internal predecessors, (50), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) Word has length 63 [2024-11-18 14:21:53,925 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:53,931 INFO L225 Difference]: With dead ends: 2026 [2024-11-18 14:21:53,931 INFO L226 Difference]: Without dead ends: 1472 [2024-11-18 14:21:53,933 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=47, Invalid=109, Unknown=0, NotChecked=0, Total=156 [2024-11-18 14:21:53,934 INFO L432 NwaCegarLoop]: 140 mSDtfsCounter, 340 mSDsluCounter, 437 mSDsCounter, 0 mSdLazyCounter, 352 mSolverCounterSat, 79 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 347 SdHoareTripleChecker+Valid, 577 SdHoareTripleChecker+Invalid, 431 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 79 IncrementalHoareTripleChecker+Valid, 352 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:53,935 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [347 Valid, 577 Invalid, 431 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [79 Valid, 352 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-11-18 14:21:53,937 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1472 states. [2024-11-18 14:21:54,027 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1472 to 1325. [2024-11-18 14:21:54,029 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1325 states, 993 states have (on average 1.2215508559919437) internal successors, (1213), 1064 states have internal predecessors, (1213), 175 states have call successors, (175), 135 states have call predecessors, (175), 156 states have return successors, (270), 172 states have call predecessors, (270), 175 states have call successors, (270) [2024-11-18 14:21:54,034 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1325 states to 1325 states and 1658 transitions. [2024-11-18 14:21:54,035 INFO L78 Accepts]: Start accepts. Automaton has 1325 states and 1658 transitions. Word has length 63 [2024-11-18 14:21:54,035 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:54,036 INFO L471 AbstractCegarLoop]: Abstraction has 1325 states and 1658 transitions. [2024-11-18 14:21:54,036 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 6.25) internal successors, (50), 7 states have internal predecessors, (50), 4 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2024-11-18 14:21:54,036 INFO L276 IsEmpty]: Start isEmpty. Operand 1325 states and 1658 transitions. [2024-11-18 14:21:54,040 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 107 [2024-11-18 14:21:54,040 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:54,040 INFO L215 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:54,041 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2024-11-18 14:21:54,041 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:54,041 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:54,041 INFO L85 PathProgramCache]: Analyzing trace with hash 1917161194, now seen corresponding path program 1 times [2024-11-18 14:21:54,041 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:54,041 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1012015743] [2024-11-18 14:21:54,041 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:54,041 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:54,059 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:54,170 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 18 proven. 8 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2024-11-18 14:21:54,170 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:54,170 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1012015743] [2024-11-18 14:21:54,170 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1012015743] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-18 14:21:54,170 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1352541646] [2024-11-18 14:21:54,171 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:54,171 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:21:54,171 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:21:54,172 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-18 14:21:54,173 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-11-18 14:21:54,248 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:54,252 INFO L255 TraceCheckSpWp]: Trace formula consists of 341 conjuncts, 8 conjuncts are in the unsatisfiable core [2024-11-18 14:21:54,257 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-18 14:21:54,400 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 28 proven. 9 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-18 14:21:54,400 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-18 14:21:54,572 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 18 proven. 8 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2024-11-18 14:21:54,572 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1352541646] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-18 14:21:54,572 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-18 14:21:54,573 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 14 [2024-11-18 14:21:54,573 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [18620382] [2024-11-18 14:21:54,573 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-18 14:21:54,573 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-11-18 14:21:54,573 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:54,574 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-11-18 14:21:54,574 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=34, Invalid=148, Unknown=0, NotChecked=0, Total=182 [2024-11-18 14:21:54,574 INFO L87 Difference]: Start difference. First operand 1325 states and 1658 transitions. Second operand has 14 states, 14 states have (on average 9.285714285714286) internal successors, (130), 12 states have internal predecessors, (130), 5 states have call successors, (21), 4 states have call predecessors, (21), 7 states have return successors, (21), 8 states have call predecessors, (21), 5 states have call successors, (21) [2024-11-18 14:21:54,993 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:54,993 INFO L93 Difference]: Finished difference Result 3030 states and 3958 transitions. [2024-11-18 14:21:54,994 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 21 states. [2024-11-18 14:21:54,994 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 9.285714285714286) internal successors, (130), 12 states have internal predecessors, (130), 5 states have call successors, (21), 4 states have call predecessors, (21), 7 states have return successors, (21), 8 states have call predecessors, (21), 5 states have call successors, (21) Word has length 106 [2024-11-18 14:21:54,994 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:55,003 INFO L225 Difference]: With dead ends: 3030 [2024-11-18 14:21:55,003 INFO L226 Difference]: Without dead ends: 1844 [2024-11-18 14:21:55,009 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 237 GetRequests, 207 SyntacticMatches, 4 SemanticMatches, 26 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 148 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=150, Invalid=606, Unknown=0, NotChecked=0, Total=756 [2024-11-18 14:21:55,010 INFO L432 NwaCegarLoop]: 243 mSDtfsCounter, 307 mSDsluCounter, 1184 mSDsCounter, 0 mSdLazyCounter, 207 mSolverCounterSat, 82 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 316 SdHoareTripleChecker+Valid, 1427 SdHoareTripleChecker+Invalid, 289 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 82 IncrementalHoareTripleChecker+Valid, 207 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:55,010 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [316 Valid, 1427 Invalid, 289 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [82 Valid, 207 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-18 14:21:55,012 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1844 states. [2024-11-18 14:21:55,104 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1844 to 1628. [2024-11-18 14:21:55,106 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1628 states, 1207 states have (on average 1.2145816072908036) internal successors, (1466), 1305 states have internal predecessors, (1466), 219 states have call successors, (219), 185 states have call predecessors, (219), 201 states have return successors, (315), 208 states have call predecessors, (315), 219 states have call successors, (315) [2024-11-18 14:21:55,111 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1628 states to 1628 states and 2000 transitions. [2024-11-18 14:21:55,112 INFO L78 Accepts]: Start accepts. Automaton has 1628 states and 2000 transitions. Word has length 106 [2024-11-18 14:21:55,112 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:55,112 INFO L471 AbstractCegarLoop]: Abstraction has 1628 states and 2000 transitions. [2024-11-18 14:21:55,113 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 9.285714285714286) internal successors, (130), 12 states have internal predecessors, (130), 5 states have call successors, (21), 4 states have call predecessors, (21), 7 states have return successors, (21), 8 states have call predecessors, (21), 5 states have call successors, (21) [2024-11-18 14:21:55,113 INFO L276 IsEmpty]: Start isEmpty. Operand 1628 states and 2000 transitions. [2024-11-18 14:21:55,117 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 196 [2024-11-18 14:21:55,117 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:55,117 INFO L215 NwaCegarLoop]: trace histogram [5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:55,134 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-11-18 14:21:55,317 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:21:55,318 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:55,318 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:55,319 INFO L85 PathProgramCache]: Analyzing trace with hash 670646930, now seen corresponding path program 1 times [2024-11-18 14:21:55,319 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:55,319 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1633294646] [2024-11-18 14:21:55,319 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:55,319 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:55,337 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:55,491 INFO L134 CoverageAnalysis]: Checked inductivity of 216 backedges. 100 proven. 13 refuted. 0 times theorem prover too weak. 103 trivial. 0 not checked. [2024-11-18 14:21:55,492 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:55,492 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1633294646] [2024-11-18 14:21:55,492 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1633294646] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-18 14:21:55,492 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [850000962] [2024-11-18 14:21:55,492 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:55,492 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:21:55,492 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:21:55,494 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-18 14:21:55,497 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-11-18 14:21:55,597 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:55,601 INFO L255 TraceCheckSpWp]: Trace formula consists of 560 conjuncts, 13 conjuncts are in the unsatisfiable core [2024-11-18 14:21:55,607 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-18 14:21:55,818 INFO L134 CoverageAnalysis]: Checked inductivity of 216 backedges. 158 proven. 4 refuted. 0 times theorem prover too weak. 54 trivial. 0 not checked. [2024-11-18 14:21:55,818 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-18 14:21:56,230 INFO L134 CoverageAnalysis]: Checked inductivity of 216 backedges. 78 proven. 42 refuted. 0 times theorem prover too weak. 96 trivial. 0 not checked. [2024-11-18 14:21:56,231 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [850000962] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-18 14:21:56,231 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-18 14:21:56,231 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 10, 11] total 23 [2024-11-18 14:21:56,231 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [329179572] [2024-11-18 14:21:56,231 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-18 14:21:56,232 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2024-11-18 14:21:56,232 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:56,233 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2024-11-18 14:21:56,233 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=98, Invalid=408, Unknown=0, NotChecked=0, Total=506 [2024-11-18 14:21:56,233 INFO L87 Difference]: Start difference. First operand 1628 states and 2000 transitions. Second operand has 23 states, 23 states have (on average 9.304347826086957) internal successors, (214), 21 states have internal predecessors, (214), 10 states have call successors, (36), 5 states have call predecessors, (36), 11 states have return successors, (40), 10 states have call predecessors, (40), 10 states have call successors, (40) [2024-11-18 14:21:57,547 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:57,547 INFO L93 Difference]: Finished difference Result 5138 states and 6614 transitions. [2024-11-18 14:21:57,548 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 40 states. [2024-11-18 14:21:57,548 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 23 states have (on average 9.304347826086957) internal successors, (214), 21 states have internal predecessors, (214), 10 states have call successors, (36), 5 states have call predecessors, (36), 11 states have return successors, (40), 10 states have call predecessors, (40), 10 states have call successors, (40) Word has length 195 [2024-11-18 14:21:57,549 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:57,580 INFO L225 Difference]: With dead ends: 5138 [2024-11-18 14:21:57,581 INFO L226 Difference]: Without dead ends: 3434 [2024-11-18 14:21:57,586 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 448 GetRequests, 386 SyntacticMatches, 3 SemanticMatches, 59 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 809 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=702, Invalid=2958, Unknown=0, NotChecked=0, Total=3660 [2024-11-18 14:21:57,586 INFO L432 NwaCegarLoop]: 127 mSDtfsCounter, 815 mSDsluCounter, 1025 mSDsCounter, 0 mSdLazyCounter, 1638 mSolverCounterSat, 343 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 815 SdHoareTripleChecker+Valid, 1152 SdHoareTripleChecker+Invalid, 1981 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 343 IncrementalHoareTripleChecker+Valid, 1638 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:57,587 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [815 Valid, 1152 Invalid, 1981 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [343 Valid, 1638 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-11-18 14:21:57,589 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 3434 states. [2024-11-18 14:21:57,749 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 3434 to 3285. [2024-11-18 14:21:57,754 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 3285 states, 2462 states have (on average 1.165718927701056) internal successors, (2870), 2616 states have internal predecessors, (2870), 443 states have call successors, (443), 389 states have call predecessors, (443), 379 states have return successors, (567), 390 states have call predecessors, (567), 443 states have call successors, (567) [2024-11-18 14:21:57,764 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3285 states to 3285 states and 3880 transitions. [2024-11-18 14:21:57,766 INFO L78 Accepts]: Start accepts. Automaton has 3285 states and 3880 transitions. Word has length 195 [2024-11-18 14:21:57,766 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:57,767 INFO L471 AbstractCegarLoop]: Abstraction has 3285 states and 3880 transitions. [2024-11-18 14:21:57,767 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 23 states have (on average 9.304347826086957) internal successors, (214), 21 states have internal predecessors, (214), 10 states have call successors, (36), 5 states have call predecessors, (36), 11 states have return successors, (40), 10 states have call predecessors, (40), 10 states have call successors, (40) [2024-11-18 14:21:57,767 INFO L276 IsEmpty]: Start isEmpty. Operand 3285 states and 3880 transitions. [2024-11-18 14:21:57,772 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 212 [2024-11-18 14:21:57,773 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:57,773 INFO L215 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:57,786 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2024-11-18 14:21:57,977 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2024-11-18 14:21:57,978 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:57,978 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:57,978 INFO L85 PathProgramCache]: Analyzing trace with hash 2132410704, now seen corresponding path program 1 times [2024-11-18 14:21:57,978 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:57,978 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [145903273] [2024-11-18 14:21:57,978 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:57,979 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:57,992 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:58,154 INFO L134 CoverageAnalysis]: Checked inductivity of 258 backedges. 99 proven. 54 refuted. 0 times theorem prover too weak. 105 trivial. 0 not checked. [2024-11-18 14:21:58,155 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:21:58,155 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [145903273] [2024-11-18 14:21:58,155 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [145903273] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-18 14:21:58,155 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1662405589] [2024-11-18 14:21:58,155 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:58,155 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:21:58,155 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:21:58,157 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-18 14:21:58,159 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-11-18 14:21:58,256 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:21:58,260 INFO L255 TraceCheckSpWp]: Trace formula consists of 602 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-11-18 14:21:58,264 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-18 14:21:58,389 INFO L134 CoverageAnalysis]: Checked inductivity of 258 backedges. 195 proven. 9 refuted. 0 times theorem prover too weak. 54 trivial. 0 not checked. [2024-11-18 14:21:58,390 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-18 14:21:58,778 INFO L134 CoverageAnalysis]: Checked inductivity of 258 backedges. 99 proven. 54 refuted. 0 times theorem prover too weak. 105 trivial. 0 not checked. [2024-11-18 14:21:58,779 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1662405589] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-18 14:21:58,779 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-18 14:21:58,779 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 8, 8] total 22 [2024-11-18 14:21:58,779 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [966660934] [2024-11-18 14:21:58,779 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-18 14:21:58,780 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-11-18 14:21:58,780 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:21:58,781 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-11-18 14:21:58,781 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=73, Invalid=389, Unknown=0, NotChecked=0, Total=462 [2024-11-18 14:21:58,782 INFO L87 Difference]: Start difference. First operand 3285 states and 3880 transitions. Second operand has 22 states, 22 states have (on average 10.272727272727273) internal successors, (226), 19 states have internal predecessors, (226), 7 states have call successors, (41), 5 states have call predecessors, (41), 13 states have return successors, (43), 11 states have call predecessors, (43), 7 states have call successors, (43) [2024-11-18 14:21:59,474 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:21:59,474 INFO L93 Difference]: Finished difference Result 6468 states and 7724 transitions. [2024-11-18 14:21:59,474 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2024-11-18 14:21:59,475 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 22 states have (on average 10.272727272727273) internal successors, (226), 19 states have internal predecessors, (226), 7 states have call successors, (41), 5 states have call predecessors, (41), 13 states have return successors, (43), 11 states have call predecessors, (43), 7 states have call successors, (43) Word has length 211 [2024-11-18 14:21:59,475 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:21:59,488 INFO L225 Difference]: With dead ends: 6468 [2024-11-18 14:21:59,488 INFO L226 Difference]: Without dead ends: 3453 [2024-11-18 14:21:59,493 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 451 GetRequests, 416 SyntacticMatches, 1 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 169 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=225, Invalid=1035, Unknown=0, NotChecked=0, Total=1260 [2024-11-18 14:21:59,494 INFO L432 NwaCegarLoop]: 117 mSDtfsCounter, 272 mSDsluCounter, 1055 mSDsCounter, 0 mSdLazyCounter, 900 mSolverCounterSat, 98 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 276 SdHoareTripleChecker+Valid, 1172 SdHoareTripleChecker+Invalid, 998 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 98 IncrementalHoareTripleChecker+Valid, 900 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-11-18 14:21:59,494 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [276 Valid, 1172 Invalid, 998 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [98 Valid, 900 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-11-18 14:21:59,496 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 3453 states. [2024-11-18 14:21:59,659 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 3453 to 3135. [2024-11-18 14:21:59,663 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 3135 states, 2360 states have (on average 1.1542372881355931) internal successors, (2724), 2498 states have internal predecessors, (2724), 395 states have call successors, (395), 373 states have call predecessors, (395), 379 states have return successors, (497), 368 states have call predecessors, (497), 395 states have call successors, (497) [2024-11-18 14:21:59,669 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3135 states to 3135 states and 3616 transitions. [2024-11-18 14:21:59,672 INFO L78 Accepts]: Start accepts. Automaton has 3135 states and 3616 transitions. Word has length 211 [2024-11-18 14:21:59,673 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:21:59,673 INFO L471 AbstractCegarLoop]: Abstraction has 3135 states and 3616 transitions. [2024-11-18 14:21:59,673 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 22 states have (on average 10.272727272727273) internal successors, (226), 19 states have internal predecessors, (226), 7 states have call successors, (41), 5 states have call predecessors, (41), 13 states have return successors, (43), 11 states have call predecessors, (43), 7 states have call successors, (43) [2024-11-18 14:21:59,673 INFO L276 IsEmpty]: Start isEmpty. Operand 3135 states and 3616 transitions. [2024-11-18 14:21:59,678 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 213 [2024-11-18 14:21:59,679 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:21:59,679 INFO L215 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:21:59,692 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2024-11-18 14:21:59,883 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,4 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:21:59,883 INFO L396 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:21:59,884 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:21:59,884 INFO L85 PathProgramCache]: Analyzing trace with hash 1954980905, now seen corresponding path program 1 times [2024-11-18 14:21:59,884 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:21:59,884 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [182821011] [2024-11-18 14:21:59,884 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:21:59,884 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:21:59,903 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:22:00,053 INFO L134 CoverageAnalysis]: Checked inductivity of 259 backedges. 89 proven. 0 refuted. 0 times theorem prover too weak. 170 trivial. 0 not checked. [2024-11-18 14:22:00,053 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:22:00,053 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [182821011] [2024-11-18 14:22:00,053 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [182821011] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:22:00,054 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:22:00,054 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [11] imperfect sequences [] total 11 [2024-11-18 14:22:00,054 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [972321595] [2024-11-18 14:22:00,054 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:22:00,054 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-11-18 14:22:00,054 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:22:00,054 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-11-18 14:22:00,055 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=20, Invalid=90, Unknown=0, NotChecked=0, Total=110 [2024-11-18 14:22:00,055 INFO L87 Difference]: Start difference. First operand 3135 states and 3616 transitions. Second operand has 11 states, 11 states have (on average 8.909090909090908) internal successors, (98), 10 states have internal predecessors, (98), 3 states have call successors, (17), 2 states have call predecessors, (17), 4 states have return successors, (17), 4 states have call predecessors, (17), 3 states have call successors, (17) [2024-11-18 14:22:00,390 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:22:00,390 INFO L93 Difference]: Finished difference Result 5816 states and 6751 transitions. [2024-11-18 14:22:00,390 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 14 states. [2024-11-18 14:22:00,391 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 11 states have (on average 8.909090909090908) internal successors, (98), 10 states have internal predecessors, (98), 3 states have call successors, (17), 2 states have call predecessors, (17), 4 states have return successors, (17), 4 states have call predecessors, (17), 3 states have call successors, (17) Word has length 212 [2024-11-18 14:22:00,391 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:22:00,405 INFO L225 Difference]: With dead ends: 5816 [2024-11-18 14:22:00,405 INFO L226 Difference]: Without dead ends: 2969 [2024-11-18 14:22:00,411 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 19 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 50 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=64, Invalid=356, Unknown=0, NotChecked=0, Total=420 [2024-11-18 14:22:00,411 INFO L432 NwaCegarLoop]: 184 mSDtfsCounter, 184 mSDsluCounter, 1115 mSDsCounter, 0 mSdLazyCounter, 363 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 188 SdHoareTripleChecker+Valid, 1299 SdHoareTripleChecker+Invalid, 367 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 363 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-18 14:22:00,411 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [188 Valid, 1299 Invalid, 367 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 363 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-18 14:22:00,414 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2969 states. [2024-11-18 14:22:00,620 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2969 to 2943. [2024-11-18 14:22:00,623 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 2943 states, 2222 states have (on average 1.1485148514851484) internal successors, (2552), 2330 states have internal predecessors, (2552), 373 states have call successors, (373), 353 states have call predecessors, (373), 347 states have return successors, (448), 338 states have call predecessors, (448), 373 states have call successors, (448) [2024-11-18 14:22:00,632 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 2943 states to 2943 states and 3373 transitions. [2024-11-18 14:22:00,636 INFO L78 Accepts]: Start accepts. Automaton has 2943 states and 3373 transitions. Word has length 212 [2024-11-18 14:22:00,637 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:22:00,637 INFO L471 AbstractCegarLoop]: Abstraction has 2943 states and 3373 transitions. [2024-11-18 14:22:00,637 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 11 states have (on average 8.909090909090908) internal successors, (98), 10 states have internal predecessors, (98), 3 states have call successors, (17), 2 states have call predecessors, (17), 4 states have return successors, (17), 4 states have call predecessors, (17), 3 states have call successors, (17) [2024-11-18 14:22:00,637 INFO L276 IsEmpty]: Start isEmpty. Operand 2943 states and 3373 transitions. [2024-11-18 14:22:00,644 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 217 [2024-11-18 14:22:00,645 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:22:00,645 INFO L215 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:22:00,645 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2024-11-18 14:22:00,645 INFO L396 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:22:00,646 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:22:00,646 INFO L85 PathProgramCache]: Analyzing trace with hash -616914161, now seen corresponding path program 1 times [2024-11-18 14:22:00,646 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:22:00,646 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1731684425] [2024-11-18 14:22:00,646 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:22:00,646 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:22:00,669 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:22:01,021 INFO L134 CoverageAnalysis]: Checked inductivity of 263 backedges. 94 proven. 58 refuted. 0 times theorem prover too weak. 111 trivial. 0 not checked. [2024-11-18 14:22:01,022 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:22:01,022 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1731684425] [2024-11-18 14:22:01,022 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1731684425] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-18 14:22:01,022 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [856190595] [2024-11-18 14:22:01,022 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:22:01,022 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:22:01,022 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:22:01,024 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-18 14:22:01,025 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-11-18 14:22:01,142 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:22:01,148 INFO L255 TraceCheckSpWp]: Trace formula consists of 611 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-11-18 14:22:01,153 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-18 14:22:01,301 INFO L134 CoverageAnalysis]: Checked inductivity of 263 backedges. 138 proven. 26 refuted. 0 times theorem prover too weak. 99 trivial. 0 not checked. [2024-11-18 14:22:01,302 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-18 14:22:01,762 INFO L134 CoverageAnalysis]: Checked inductivity of 263 backedges. 99 proven. 45 refuted. 0 times theorem prover too weak. 119 trivial. 0 not checked. [2024-11-18 14:22:01,762 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [856190595] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-18 14:22:01,762 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-18 14:22:01,763 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 8, 13] total 21 [2024-11-18 14:22:01,763 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [758764238] [2024-11-18 14:22:01,763 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-18 14:22:01,763 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-11-18 14:22:01,764 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:22:01,764 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-11-18 14:22:01,764 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=108, Invalid=312, Unknown=0, NotChecked=0, Total=420 [2024-11-18 14:22:01,765 INFO L87 Difference]: Start difference. First operand 2943 states and 3373 transitions. Second operand has 21 states, 21 states have (on average 11.571428571428571) internal successors, (243), 20 states have internal predecessors, (243), 15 states have call successors, (47), 8 states have call predecessors, (47), 14 states have return successors, (46), 15 states have call predecessors, (46), 15 states have call successors, (46) [2024-11-18 14:22:02,560 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:22:02,560 INFO L93 Difference]: Finished difference Result 5776 states and 6749 transitions. [2024-11-18 14:22:02,562 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 24 states. [2024-11-18 14:22:02,562 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 11.571428571428571) internal successors, (243), 20 states have internal predecessors, (243), 15 states have call successors, (47), 8 states have call predecessors, (47), 14 states have return successors, (46), 15 states have call predecessors, (46), 15 states have call successors, (46) Word has length 216 [2024-11-18 14:22:02,563 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:22:02,577 INFO L225 Difference]: With dead ends: 5776 [2024-11-18 14:22:02,577 INFO L226 Difference]: Without dead ends: 4072 [2024-11-18 14:22:02,581 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 471 GetRequests, 426 SyntacticMatches, 8 SemanticMatches, 37 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 322 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=423, Invalid=1059, Unknown=0, NotChecked=0, Total=1482 [2024-11-18 14:22:02,581 INFO L432 NwaCegarLoop]: 173 mSDtfsCounter, 643 mSDsluCounter, 782 mSDsCounter, 0 mSdLazyCounter, 954 mSolverCounterSat, 255 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 650 SdHoareTripleChecker+Valid, 955 SdHoareTripleChecker+Invalid, 1209 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 255 IncrementalHoareTripleChecker+Valid, 954 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-11-18 14:22:02,581 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [650 Valid, 955 Invalid, 1209 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [255 Valid, 954 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-11-18 14:22:02,584 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 4072 states. [2024-11-18 14:22:02,765 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 4072 to 3645. [2024-11-18 14:22:02,769 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 3645 states, 2750 states have (on average 1.1418181818181818) internal successors, (3140), 2872 states have internal predecessors, (3140), 471 states have call successors, (471), 445 states have call predecessors, (471), 423 states have return successors, (536), 422 states have call predecessors, (536), 471 states have call successors, (536) [2024-11-18 14:22:02,774 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3645 states to 3645 states and 4147 transitions. [2024-11-18 14:22:02,778 INFO L78 Accepts]: Start accepts. Automaton has 3645 states and 4147 transitions. Word has length 216 [2024-11-18 14:22:02,779 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:22:02,779 INFO L471 AbstractCegarLoop]: Abstraction has 3645 states and 4147 transitions. [2024-11-18 14:22:02,779 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 11.571428571428571) internal successors, (243), 20 states have internal predecessors, (243), 15 states have call successors, (47), 8 states have call predecessors, (47), 14 states have return successors, (46), 15 states have call predecessors, (46), 15 states have call successors, (46) [2024-11-18 14:22:02,779 INFO L276 IsEmpty]: Start isEmpty. Operand 3645 states and 4147 transitions. [2024-11-18 14:22:02,786 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 271 [2024-11-18 14:22:02,787 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:22:02,787 INFO L215 NwaCegarLoop]: trace histogram [9, 9, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:22:02,802 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-11-18 14:22:02,991 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,5 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:22:02,992 INFO L396 AbstractCegarLoop]: === Iteration 14 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:22:02,992 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:22:02,992 INFO L85 PathProgramCache]: Analyzing trace with hash -161076114, now seen corresponding path program 1 times [2024-11-18 14:22:02,992 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:22:02,992 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [926785698] [2024-11-18 14:22:02,993 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:22:02,993 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:22:03,008 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:22:03,046 INFO L134 CoverageAnalysis]: Checked inductivity of 442 backedges. 128 proven. 0 refuted. 0 times theorem prover too weak. 314 trivial. 0 not checked. [2024-11-18 14:22:03,047 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:22:03,047 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [926785698] [2024-11-18 14:22:03,047 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [926785698] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-18 14:22:03,047 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-18 14:22:03,047 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-11-18 14:22:03,047 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1185463341] [2024-11-18 14:22:03,047 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-18 14:22:03,048 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-11-18 14:22:03,048 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:22:03,048 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-11-18 14:22:03,049 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-18 14:22:03,049 INFO L87 Difference]: Start difference. First operand 3645 states and 4147 transitions. Second operand has 4 states, 4 states have (on average 27.25) internal successors, (109), 4 states have internal predecessors, (109), 4 states have call successors, (20), 2 states have call predecessors, (20), 2 states have return successors, (19), 3 states have call predecessors, (19), 4 states have call successors, (19) [2024-11-18 14:22:03,185 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:22:03,185 INFO L93 Difference]: Finished difference Result 4450 states and 5082 transitions. [2024-11-18 14:22:03,186 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-11-18 14:22:03,186 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 27.25) internal successors, (109), 4 states have internal predecessors, (109), 4 states have call successors, (20), 2 states have call predecessors, (20), 2 states have return successors, (19), 3 states have call predecessors, (19), 4 states have call successors, (19) Word has length 270 [2024-11-18 14:22:03,186 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:22:03,193 INFO L225 Difference]: With dead ends: 4450 [2024-11-18 14:22:03,193 INFO L226 Difference]: Without dead ends: 1434 [2024-11-18 14:22:03,199 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-18 14:22:03,199 INFO L432 NwaCegarLoop]: 154 mSDtfsCounter, 140 mSDsluCounter, 115 mSDsCounter, 0 mSdLazyCounter, 43 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 140 SdHoareTripleChecker+Valid, 269 SdHoareTripleChecker+Invalid, 45 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 43 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-18 14:22:03,199 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [140 Valid, 269 Invalid, 45 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 43 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-18 14:22:03,200 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1434 states. [2024-11-18 14:22:03,335 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1434 to 1420. [2024-11-18 14:22:03,338 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1420 states, 1072 states have (on average 1.099813432835821) internal successors, (1179), 1110 states have internal predecessors, (1179), 183 states have call successors, (183), 174 states have call predecessors, (183), 164 states have return successors, (200), 163 states have call predecessors, (200), 183 states have call successors, (200) [2024-11-18 14:22:03,341 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1420 states to 1420 states and 1562 transitions. [2024-11-18 14:22:03,344 INFO L78 Accepts]: Start accepts. Automaton has 1420 states and 1562 transitions. Word has length 270 [2024-11-18 14:22:03,344 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:22:03,344 INFO L471 AbstractCegarLoop]: Abstraction has 1420 states and 1562 transitions. [2024-11-18 14:22:03,344 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 27.25) internal successors, (109), 4 states have internal predecessors, (109), 4 states have call successors, (20), 2 states have call predecessors, (20), 2 states have return successors, (19), 3 states have call predecessors, (19), 4 states have call successors, (19) [2024-11-18 14:22:03,344 INFO L276 IsEmpty]: Start isEmpty. Operand 1420 states and 1562 transitions. [2024-11-18 14:22:03,349 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 267 [2024-11-18 14:22:03,349 INFO L207 NwaCegarLoop]: Found error trace [2024-11-18 14:22:03,349 INFO L215 NwaCegarLoop]: trace histogram [9, 9, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:22:03,349 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2024-11-18 14:22:03,349 INFO L396 AbstractCegarLoop]: === Iteration 15 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-18 14:22:03,350 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-18 14:22:03,350 INFO L85 PathProgramCache]: Analyzing trace with hash -457369096, now seen corresponding path program 1 times [2024-11-18 14:22:03,350 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-18 14:22:03,350 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1973570066] [2024-11-18 14:22:03,350 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:22:03,350 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-18 14:22:03,374 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:22:03,924 INFO L134 CoverageAnalysis]: Checked inductivity of 442 backedges. 108 proven. 118 refuted. 0 times theorem prover too weak. 216 trivial. 0 not checked. [2024-11-18 14:22:03,925 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-18 14:22:03,925 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1973570066] [2024-11-18 14:22:03,925 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1973570066] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-18 14:22:03,925 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [731327484] [2024-11-18 14:22:03,925 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-18 14:22:03,925 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-18 14:22:03,925 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2024-11-18 14:22:03,927 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-18 14:22:03,928 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-11-18 14:22:04,043 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-18 14:22:04,046 INFO L255 TraceCheckSpWp]: Trace formula consists of 733 conjuncts, 30 conjuncts are in the unsatisfiable core [2024-11-18 14:22:04,050 INFO L278 TraceCheckSpWp]: Computing forward predicates... [2024-11-18 14:22:04,291 INFO L134 CoverageAnalysis]: Checked inductivity of 442 backedges. 155 proven. 89 refuted. 0 times theorem prover too weak. 198 trivial. 0 not checked. [2024-11-18 14:22:04,291 INFO L311 TraceCheckSpWp]: Computing backward predicates... [2024-11-18 14:22:04,954 INFO L134 CoverageAnalysis]: Checked inductivity of 442 backedges. 96 proven. 136 refuted. 0 times theorem prover too weak. 210 trivial. 0 not checked. [2024-11-18 14:22:04,954 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [731327484] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-18 14:22:04,954 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-18 14:22:04,954 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 11, 16] total 29 [2024-11-18 14:22:04,954 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [127012017] [2024-11-18 14:22:04,954 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-18 14:22:04,955 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 29 states [2024-11-18 14:22:04,955 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-18 14:22:04,956 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 29 interpolants. [2024-11-18 14:22:04,956 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=159, Invalid=653, Unknown=0, NotChecked=0, Total=812 [2024-11-18 14:22:04,957 INFO L87 Difference]: Start difference. First operand 1420 states and 1562 transitions. Second operand has 29 states, 29 states have (on average 10.551724137931034) internal successors, (306), 28 states have internal predecessors, (306), 18 states have call successors, (61), 10 states have call predecessors, (61), 20 states have return successors, (64), 18 states have call predecessors, (64), 18 states have call successors, (64) [2024-11-18 14:22:05,829 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-18 14:22:05,829 INFO L93 Difference]: Finished difference Result 2302 states and 2548 transitions. [2024-11-18 14:22:05,829 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-11-18 14:22:05,829 INFO L78 Accepts]: Start accepts. Automaton has has 29 states, 29 states have (on average 10.551724137931034) internal successors, (306), 28 states have internal predecessors, (306), 18 states have call successors, (61), 10 states have call predecessors, (61), 20 states have return successors, (64), 18 states have call predecessors, (64), 18 states have call successors, (64) Word has length 266 [2024-11-18 14:22:05,830 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-18 14:22:05,833 INFO L225 Difference]: With dead ends: 2302 [2024-11-18 14:22:05,833 INFO L226 Difference]: Without dead ends: 0 [2024-11-18 14:22:05,836 INFO L431 NwaCegarLoop]: 0 DeclaredPredicates, 576 GetRequests, 523 SyntacticMatches, 9 SemanticMatches, 44 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 480 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=453, Invalid=1617, Unknown=0, NotChecked=0, Total=2070 [2024-11-18 14:22:05,836 INFO L432 NwaCegarLoop]: 142 mSDtfsCounter, 510 mSDsluCounter, 1137 mSDsCounter, 0 mSdLazyCounter, 1632 mSolverCounterSat, 218 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 512 SdHoareTripleChecker+Valid, 1279 SdHoareTripleChecker+Invalid, 1850 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 218 IncrementalHoareTripleChecker+Valid, 1632 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2024-11-18 14:22:05,837 INFO L433 NwaCegarLoop]: SdHoareTripleChecker [512 Valid, 1279 Invalid, 1850 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [218 Valid, 1632 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2024-11-18 14:22:05,837 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-11-18 14:22:05,837 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-11-18 14:22:05,837 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-18 14:22:05,837 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-11-18 14:22:05,839 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 266 [2024-11-18 14:22:05,839 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-18 14:22:05,839 INFO L471 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-11-18 14:22:05,839 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 29 states, 29 states have (on average 10.551724137931034) internal successors, (306), 28 states have internal predecessors, (306), 18 states have call successors, (61), 10 states have call predecessors, (61), 20 states have return successors, (64), 18 states have call predecessors, (64), 18 states have call successors, (64) [2024-11-18 14:22:05,839 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-11-18 14:22:05,839 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-11-18 14:22:05,841 INFO L782 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-11-18 14:22:05,860 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-11-18 14:22:06,045 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-11-18 14:22:06,048 INFO L407 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-18 14:22:06,050 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-11-18 14:22:23,397 INFO L170 ceAbstractionStarter]: Computing trace abstraction results [2024-11-18 14:22:23,411 WARN L156 FloydHoareUtils]: Requires clause for deactivatePump contained old-variable. Original clause: (and (let ((.cse0 (<= ~waterLevel~0 2)) (.cse1 (not (= 0 ~systemActive~0)))) (or (and (= ~methaneLevelCritical~0 0) .cse0 .cse1) (and (= ~methaneLevelCritical~0 1) .cse0 .cse1))) (= |old(~pumpRunning~0)| 1) (= ~pumpRunning~0 1)) Eliminated clause: (and (let ((.cse0 (<= ~waterLevel~0 2)) (.cse1 (not (= 0 ~systemActive~0)))) (or (and (= ~methaneLevelCritical~0 0) .cse0 .cse1) (and (= ~methaneLevelCritical~0 1) .cse0 .cse1))) (= ~pumpRunning~0 1)) [2024-11-18 14:22:23,444 WARN L156 FloydHoareUtils]: Requires clause for changeMethaneLevel contained old-variable. Original clause: (let ((.cse2 (= |old(~methaneLevelCritical~0)| 0))) (let ((.cse7 (= 1 ~systemActive~0)) (.cse11 (= 0 ~systemActive~0)) (.cse4 (not .cse2)) (.cse6 (= |old(~methaneLevelCritical~0)| 1))) (and (let ((.cse8 (= ~waterLevel~0 0)) (.cse5 (<= ~waterLevel~0 1)) (.cse1 (= 2 ~waterLevel~0)) (.cse3 (= ~waterLevel~0 1)) (.cse9 (= ~pumpRunning~0 1)) (.cse0 (= ~pumpRunning~0 0)) (.cse10 (<= ~waterLevel~0 2))) (or (and .cse0 .cse1 .cse2) (and .cse0 .cse2 .cse3) (and .cse0 .cse4 .cse5 .cse6 .cse7 .cse8) (and .cse2 .cse7 (<= 1 ~switchedOnBeforeTS~0) .cse8 .cse9) (and .cse0 .cse2 .cse8) (and .cse0 .cse1 .cse6) (and .cse0 .cse4 .cse5 .cse6 .cse7 .cse3) (and .cse0 .cse6 .cse10 .cse11) (and .cse1 .cse2 .cse7 .cse9) (and .cse2 .cse7 .cse3 .cse9) (and .cse0 .cse2 .cse10 .cse11))) (or .cse7 .cse11) (or .cse4 (= ~methaneLevelCritical~0 0)) (or (= ~methaneLevelCritical~0 1) (not .cse6))))) Eliminated clause: (let ((.cse4 (= 1 ~systemActive~0)) (.cse9 (= 0 ~systemActive~0))) (and (exists ((|old(~methaneLevelCritical~0)| Int)) (let ((.cse2 (= |old(~methaneLevelCritical~0)| 0)) (.cse3 (= |old(~methaneLevelCritical~0)| 1))) (and (let ((.cse5 (= ~waterLevel~0 0)) (.cse1 (= 2 ~waterLevel~0)) (.cse7 (= ~pumpRunning~0 1)) (.cse8 (<= ~waterLevel~0 2)) (.cse0 (= ~pumpRunning~0 0)) (.cse6 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2) (and .cse0 .cse3 .cse4 .cse5) (and .cse0 .cse2 .cse6) (and .cse2 .cse4 (<= 1 ~switchedOnBeforeTS~0) .cse5 .cse7) (and .cse0 .cse2 .cse5) (and .cse0 .cse1 .cse3) (and .cse0 .cse3 .cse8 .cse9) (and .cse1 .cse2 .cse4 .cse7) (and .cse2 .cse4 .cse6 .cse7) (and .cse0 .cse2 .cse8 .cse9) (and .cse0 .cse3 .cse4 .cse6))) (or (not .cse2) (= ~methaneLevelCritical~0 0)) (or (= ~methaneLevelCritical~0 1) (not .cse3))))) (or .cse4 .cse9))) [2024-11-18 14:22:23,457 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-18 14:22:23,489 WARN L156 FloydHoareUtils]: Requires clause for timeShift contained old-variable. Original clause: (let ((.cse19 (= |old(~pumpRunning~0)| 1)) (.cse18 (= |old(~waterLevel~0)| 1)) (.cse17 (= |old(~waterLevel~0)| 0)) (.cse16 (= ~methaneLevelCritical~0 1)) (.cse15 (= |old(~pumpRunning~0)| 0)) (.cse21 (= |old(~waterLevel~0)| 2))) (let ((.cse9 (= ~methaneLevelCritical~0 0)) (.cse12 (= 1 ~systemActive~0)) (.cse6 (= ~pumpRunning~0 0)) (.cse8 (not .cse21)) (.cse7 (= 2 ~waterLevel~0)) (.cse5 (not .cse15)) (.cse1 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse2 (not .cse16)) (.cse3 (= 0 ~systemActive~0)) (.cse4 (<= 1 ~switchedOnBeforeTS~0)) (.cse11 (not .cse17)) (.cse14 (= ~waterLevel~0 0)) (.cse13 (= ~waterLevel~0 1)) (.cse22 (= ~pumpRunning~0 1)) (.cse0 (not .cse18)) (.cse10 (not .cse19))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 (and .cse6 .cse7) .cse8) (or (not .cse9) .cse10 .cse11 (and .cse12 .cse4)) (or .cse5 .cse0 (and .cse6 .cse13)) (or .cse5 .cse11 (and .cse6 .cse12 .cse14) .cse3) (let ((.cse20 (<= |old(~waterLevel~0)| 2))) (or (and .cse15 .cse16 .cse17) (and .cse18 .cse9 .cse12 .cse15) (and .cse12 .cse19 .cse16 .cse20 .cse17) (and .cse16 .cse3 .cse20) (and .cse9 .cse3 (<= |old(~waterLevel~0)| 1)) (and .cse18 .cse12 .cse19 .cse16 .cse20) (and .cse9 .cse12 .cse15 .cse21) (and .cse9 .cse19 (<= 1 |old(~switchedOnBeforeTS~0)|) .cse17) (and .cse18 .cse9 .cse12 .cse19) (and .cse9 .cse3 .cse21) (and .cse9 .cse12 .cse19 .cse21) (and .cse12 .cse19 .cse16 .cse21) (and .cse18 .cse12 .cse15 .cse16) (and .cse9 .cse12 .cse15 .cse17) (and .cse12 .cse15 .cse16 .cse21))) (or (and .cse6 .cse15 (= |old(~waterLevel~0)| ~waterLevel~0)) (not .cse3)) (or .cse10 .cse8 (and .cse7 .cse22)) (or .cse0 .cse1 .cse10 .cse4) (or .cse5 .cse1 .cse11 .cse2 .cse3 .cse4) (or .cse10 .cse11 (and .cse14 .cse22)) (or (and .cse13 .cse22) .cse0 .cse10)))) Eliminated clause: (exists ((|old(~pumpRunning~0)| Int) (|old(~switchedOnBeforeTS~0)| Int) (|old(~waterLevel~0)| Int)) (let ((.cse20 (= |old(~pumpRunning~0)| 1)) (.cse19 (= |old(~waterLevel~0)| 1)) (.cse18 (= |old(~waterLevel~0)| 0)) (.cse17 (= ~methaneLevelCritical~0 1)) (.cse21 (= |old(~waterLevel~0)| 2)) (.cse15 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse15)) (.cse6 (= ~pumpRunning~0 0)) (.cse8 (not .cse21)) (.cse7 (= 2 ~waterLevel~0)) (.cse1 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse2 (< 0 ~switchedOnBeforeTS~0)) (.cse4 (not .cse17)) (.cse5 (= 0 ~systemActive~0)) (.cse9 (= ~methaneLevelCritical~0 0)) (.cse11 (= 1 ~systemActive~0)) (.cse3 (not .cse18)) (.cse14 (= ~waterLevel~0 0)) (.cse13 (= ~waterLevel~0 1)) (.cse16 (= ~pumpRunning~0 1)) (.cse12 (not .cse19)) (.cse10 (not .cse20))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (or .cse0 (and .cse6 .cse7) .cse8) (or (not .cse9) .cse10 .cse3 (and .cse11 (<= 1 ~switchedOnBeforeTS~0))) (or .cse0 .cse12 (and .cse6 .cse13)) (or .cse12 .cse1 .cse2 .cse10) (or .cse0 .cse3 (and .cse6 .cse11 .cse14) .cse5) (or (and .cse6 .cse15 (= |old(~waterLevel~0)| ~waterLevel~0)) (not .cse5)) (or .cse10 .cse8 (and .cse7 .cse16)) (or .cse12 .cse1 .cse2 .cse4 .cse5) (or (and .cse15 .cse17 .cse18) (and .cse19 .cse9 .cse11 .cse15) (and .cse17 .cse5 (<= |old(~waterLevel~0)| 2)) (and .cse9 .cse5 (<= |old(~waterLevel~0)| 1)) (and .cse11 .cse20 .cse17 .cse18) (and .cse9 .cse11 .cse15 .cse21) (and .cse9 .cse20 (<= 1 |old(~switchedOnBeforeTS~0)|) .cse18) (and .cse19 .cse9 .cse11 .cse20) (and .cse9 .cse5 .cse21) (and .cse9 .cse11 .cse20 .cse21) (and .cse11 .cse20 .cse17 .cse21) (and .cse19 .cse11 .cse15 .cse17) (and .cse9 .cse11 .cse15 .cse18) (and .cse11 .cse15 .cse17 .cse21) (and .cse19 .cse11 .cse20 .cse17)) (or .cse10 .cse3 (and .cse14 .cse16)) (or (and .cse13 .cse16) .cse12 .cse10))))) [2024-11-18 14:22:23,519 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-18 14:22:23,529 WARN L156 FloydHoareUtils]: Requires clause for waterRise contained old-variable. Original clause: (and (let ((.cse2 (= 0 ~systemActive~0)) (.cse3 (<= |old(~waterLevel~0)| 2)) (.cse8 (= |old(~waterLevel~0)| 1)) (.cse9 (<= 1 ~switchedOnBeforeTS~0)) (.cse7 (= ~pumpRunning~0 1)) (.cse1 (= ~methaneLevelCritical~0 1)) (.cse6 (= |old(~waterLevel~0)| 2)) (.cse0 (= ~pumpRunning~0 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse5 (= 1 ~systemActive~0)) (.cse10 (= |old(~waterLevel~0)| 0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse5 .cse6 .cse7) (and .cse0 .cse8 .cse4 .cse5) (and .cse8 .cse4 .cse5 .cse9 .cse7) (and .cse0 .cse5 .cse1 .cse10) (and .cse0 .cse4 .cse2 .cse3) (and .cse0 .cse8 .cse5 .cse1) (and .cse4 .cse5 .cse9 .cse10 .cse7) (and .cse0 .cse4 .cse5 .cse6) (and .cse0 .cse5 .cse1 .cse6) (and .cse0 .cse4 .cse5 .cse10))) (= |old(~waterLevel~0)| ~waterLevel~0)) Eliminated clause: (let ((.cse7 (= ~waterLevel~0 1)) (.cse8 (<= 1 ~switchedOnBeforeTS~0)) (.cse9 (= ~pumpRunning~0 1)) (.cse6 (= ~waterLevel~0 0)) (.cse10 (= 2 ~waterLevel~0)) (.cse5 (= 1 ~systemActive~0)) (.cse1 (= ~methaneLevelCritical~0 1)) (.cse0 (= ~pumpRunning~0 0)) (.cse4 (= ~methaneLevelCritical~0 0)) (.cse2 (<= ~waterLevel~0 2)) (.cse3 (= 0 ~systemActive~0))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse0 .cse4 .cse5 .cse6) (and .cse0 .cse5 .cse1 .cse7) (and .cse4 .cse5 .cse8 .cse6 .cse9) (and .cse0 .cse4 .cse5 .cse7) (and .cse0 .cse10 .cse4 .cse5) (and .cse10 .cse4 .cse5 .cse9) (and .cse4 .cse5 .cse7 .cse8 .cse9) (and .cse0 .cse5 .cse1 .cse6) (and .cse0 .cse10 .cse5 .cse1) (and .cse0 .cse4 .cse2 .cse3))) [2024-11-18 14:22:23,554 WARN L156 FloydHoareUtils]: Requires clause for processEnvironment__wrappee__methaneQuery contained old-variable. Original clause: (let ((.cse8 (= ~pumpRunning~0 0)) (.cse6 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (= 2 ~waterLevel~0)) (.cse3 (= |old(~pumpRunning~0)| 1)) (.cse1 (= ~methaneLevelCritical~0 1)) (.cse9 (and .cse8 .cse6))) (and (let ((.cse2 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 1 ~switchedOnBeforeTS~0)) (.cse7 (= ~waterLevel~0 0)) (.cse4 (= ~waterLevel~0 1))) (or (and .cse0 .cse1) (and .cse2 .cse3 .cse4 .cse5) (and .cse2 .cse6 .cse7) (and .cse1 .cse7) (and .cse0 .cse2) (and .cse2 .cse6 .cse4) (and .cse2 .cse3 .cse5 .cse7) (and .cse1 .cse4))) (or (not .cse6) .cse8) (or (not .cse0) .cse9) (= 1 ~systemActive~0) (or (not .cse3) (= ~pumpRunning~0 1)) (or (not .cse1) .cse9)))) Eliminated clause: (and (= 1 ~systemActive~0) (exists ((|old(~pumpRunning~0)| Int)) (let ((.cse8 (= ~pumpRunning~0 0)) (.cse6 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (= 2 ~waterLevel~0)) (.cse3 (= |old(~pumpRunning~0)| 1)) (.cse1 (= ~methaneLevelCritical~0 1)) (.cse9 (and .cse8 .cse6))) (and (let ((.cse2 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 1 ~switchedOnBeforeTS~0)) (.cse7 (= ~waterLevel~0 0)) (.cse4 (= ~waterLevel~0 1))) (or (and .cse0 .cse1) (and .cse2 .cse3 .cse4 .cse5) (and .cse2 .cse6 .cse7) (and .cse1 .cse7) (and .cse0 .cse2) (and .cse2 .cse6 .cse4) (and .cse2 .cse3 .cse5 .cse7) (and .cse1 .cse4))) (or (not .cse6) .cse8) (or (not .cse0) .cse9) (or (not .cse3) (= ~pumpRunning~0 1)) (or (not .cse1) .cse9)))))) [2024-11-18 14:22:23,561 WARN L976 BoogieBacktranslator]: Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression [2024-11-18 14:22:23,597 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 18.11 02:22:23 BoogieIcfgContainer [2024-11-18 14:22:23,598 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-11-18 14:22:23,598 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-11-18 14:22:23,598 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-11-18 14:22:23,598 INFO L274 PluginConnector]: Witness Printer initialized [2024-11-18 14:22:23,599 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 18.11 02:21:51" (3/4) ... [2024-11-18 14:22:23,601 INFO L142 WitnessPrinter]: Generating witness for correct program [2024-11-18 14:22:23,603 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2024-11-18 14:22:23,604 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2024-11-18 14:22:23,604 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2024-11-18 14:22:23,604 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2024-11-18 14:22:23,604 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2024-11-18 14:22:23,604 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2024-11-18 14:22:23,604 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2024-11-18 14:22:23,605 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2024-11-18 14:22:23,605 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2024-11-18 14:22:23,610 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 20 nodes and edges [2024-11-18 14:22:23,611 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2024-11-18 14:22:23,611 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2024-11-18 14:22:23,611 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-18 14:22:23,612 INFO L925 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-18 14:22:23,710 INFO L149 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2024-11-18 14:22:23,710 INFO L149 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.yml [2024-11-18 14:22:23,711 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-11-18 14:22:23,711 INFO L158 Benchmark]: Toolchain (without parser) took 33053.78ms. Allocated memory was 140.5MB in the beginning and 702.5MB in the end (delta: 562.0MB). Free memory was 68.1MB in the beginning and 455.0MB in the end (delta: -386.9MB). Peak memory consumption was 178.3MB. Max. memory is 16.1GB. [2024-11-18 14:22:23,711 INFO L158 Benchmark]: CDTParser took 0.13ms. Allocated memory is still 140.5MB. Free memory is still 103.4MB. There was no memory consumed. Max. memory is 16.1GB. [2024-11-18 14:22:23,712 INFO L158 Benchmark]: CACSL2BoogieTranslator took 371.16ms. Allocated memory is still 140.5MB. Free memory was 68.1MB in the beginning and 45.4MB in the end (delta: 22.7MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. [2024-11-18 14:22:23,712 INFO L158 Benchmark]: Boogie Procedure Inliner took 44.52ms. Allocated memory was 140.5MB in the beginning and 199.2MB in the end (delta: 58.7MB). Free memory was 45.4MB in the beginning and 167.5MB in the end (delta: -122.1MB). Peak memory consumption was 8.0MB. Max. memory is 16.1GB. [2024-11-18 14:22:23,712 INFO L158 Benchmark]: Boogie Preprocessor took 38.72ms. Allocated memory is still 199.2MB. Free memory was 167.4MB in the beginning and 167.2MB in the end (delta: 256.5kB). Peak memory consumption was 6.2MB. Max. memory is 16.1GB. [2024-11-18 14:22:23,713 INFO L158 Benchmark]: RCFGBuilder took 401.14ms. Allocated memory is still 199.2MB. Free memory was 167.2MB in the beginning and 147.2MB in the end (delta: 19.9MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. [2024-11-18 14:22:23,713 INFO L158 Benchmark]: TraceAbstraction took 32080.06ms. Allocated memory was 199.2MB in the beginning and 702.5MB in the end (delta: 503.3MB). Free memory was 146.2MB in the beginning and 464.5MB in the end (delta: -318.3MB). Peak memory consumption was 409.4MB. Max. memory is 16.1GB. [2024-11-18 14:22:23,714 INFO L158 Benchmark]: Witness Printer took 112.54ms. Allocated memory is still 702.5MB. Free memory was 464.5MB in the beginning and 455.0MB in the end (delta: 9.4MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2024-11-18 14:22:23,715 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.13ms. Allocated memory is still 140.5MB. Free memory is still 103.4MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 371.16ms. Allocated memory is still 140.5MB. Free memory was 68.1MB in the beginning and 45.4MB in the end (delta: 22.7MB). Peak memory consumption was 23.1MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 44.52ms. Allocated memory was 140.5MB in the beginning and 199.2MB in the end (delta: 58.7MB). Free memory was 45.4MB in the beginning and 167.5MB in the end (delta: -122.1MB). Peak memory consumption was 8.0MB. Max. memory is 16.1GB. * Boogie Preprocessor took 38.72ms. Allocated memory is still 199.2MB. Free memory was 167.4MB in the beginning and 167.2MB in the end (delta: 256.5kB). Peak memory consumption was 6.2MB. Max. memory is 16.1GB. * RCFGBuilder took 401.14ms. Allocated memory is still 199.2MB. Free memory was 167.2MB in the beginning and 147.2MB in the end (delta: 19.9MB). Peak memory consumption was 21.0MB. Max. memory is 16.1GB. * TraceAbstraction took 32080.06ms. Allocated memory was 199.2MB in the beginning and 702.5MB in the end (delta: 503.3MB). Free memory was 146.2MB in the beginning and 464.5MB in the end (delta: -318.3MB). Peak memory consumption was 409.4MB. Max. memory is 16.1GB. * Witness Printer took 112.54ms. Allocated memory is still 702.5MB. Free memory was 464.5MB in the beginning and 455.0MB in the end (delta: 9.4MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] - GenericResultAtLocation [Line: 283]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [283] - GenericResultAtLocation [Line: 353]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [353] - GenericResultAtLocation [Line: 454]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [454] - GenericResultAtLocation [Line: 820]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [820] - GenericResultAtLocation [Line: 855]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [855] - GenericResultAtLocation [Line: 905]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [905] - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression - GenericResult: Unfinished Backtranslation Unfinished Backtranslation: Expression type not yet supported in backtranslation: QuantifierExpression * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 10 procedures, 105 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 14.5s, OverallIterations: 15, TraceHistogramMax: 9, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.1s, AutomataDifference: 5.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 3673 SdHoareTripleChecker+Valid, 3.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 3634 mSDsluCounter, 10680 SdHoareTripleChecker+Invalid, 2.7s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 8546 mSDsCounter, 1096 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 6369 IncrementalHoareTripleChecker+Invalid, 7465 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1096 mSolverCounterUnsat, 2134 mSDtfsCounter, 6369 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 2266 GetRequests, 1986 SyntacticMatches, 25 SemanticMatches, 255 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1998 ImplicationChecksByTransitivity, 2.0s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=3645occurred in iteration=13, InterpolantAutomatonStates: 188, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 1.3s AutomataMinimizationTime, 15 MinimizatonAttempts, 1319 StatesRemovedByMinimization, 10 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.4s SatisfiabilityAnalysisTime, 5.2s InterpolantComputationTime, 2853 NumberOfCodeBlocks, 2853 NumberOfCodeBlocksAsserted, 20 NumberOfCheckSat, 3822 ConstructedInterpolants, 0 QuantifiedInterpolants, 8329 SizeOfPredicates, 5 NumberOfNonLiveVariables, 2847 ConjunctsInSsa, 79 ConjunctsInUnsatCore, 25 InterpolantComputations, 10 PerfectInterpolantSequences, 3700/4373 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 365]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 297]: Loop Invariant Derived loop invariant: ((((((((((((((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1)) || (((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (splverifierCounter == 0)) && (waterLevel == 1))) || (((((2 == waterLevel) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (pumpRunning == 1))) || (((((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (splverifierCounter == 0))) || ((((((methaneLevelCritical == 0) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || (((((pumpRunning == 0) && (methaneLevelCritical == 1)) && (splverifierCounter == 0)) && (waterLevel <= 2)) && (0 == systemActive))) || (((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (splverifierCounter == 0)) && (0 == systemActive))) || ((((((methaneLevelCritical == 0) && (1 == systemActive)) && (splverifierCounter == 0)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) || (((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0))) || (((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (splverifierCounter == 0)) && (waterLevel == 0))) || (((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 0))) || (((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (waterLevel <= 1)) && (splverifierCounter == 0)) && (0 == systemActive))) - InvariantResult [Line: 296]: Location Invariant Derived location invariant: 0 - ProcedureContractResult [Line: 185]: Procedure Contract for deactivatePump Derived contract for procedure deactivatePump. Requires: (((((methaneLevelCritical == 0) && (waterLevel <= 2)) && (0 != systemActive)) || (((methaneLevelCritical == 1) && (waterLevel <= 2)) && (0 != systemActive))) && (pumpRunning == 1)) Ensures: (((pumpRunning == 0) && (((((\old(pumpRunning) == 1) && (methaneLevelCritical == 1)) && (waterLevel <= 2)) && (0 != systemActive)) || ((((methaneLevelCritical == 0) && (\old(pumpRunning) == 1)) && (waterLevel <= 2)) && (0 != systemActive)))) && ((((((systemActive == \old(systemActive)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 101]: Procedure Contract for processEnvironment__wrappee__base Derived contract for procedure processEnvironment__wrappee__base. Requires: (((((((((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0)) || ((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (waterLevel == 1))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive)) && (methaneLevelCritical == 1))) Ensures: ((((((((((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0)) || ((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (waterLevel == 1))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive)) && (methaneLevelCritical == 1))) && (((((((pumpRunning == \old(pumpRunning)) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 932]: Procedure Contract for changeMethaneLevel Derived contract for procedure changeMethaneLevel. Requires: ((1 == systemActive) || (0 == systemActive)) Ensures: ((((((methaneLevelCritical == 0) || (\old(methaneLevelCritical) != 1)) && ((\old(methaneLevelCritical) != 0) || (methaneLevelCritical == 1))) && ((1 == systemActive) || (0 == systemActive))) && (((((((((((((pumpRunning == 0) && (2 == waterLevel)) && (\old(methaneLevelCritical) == 0)) || ((((pumpRunning == 0) && (\old(methaneLevelCritical) == 1)) && (1 == systemActive)) && (waterLevel == 0))) || (((pumpRunning == 0) && (\old(methaneLevelCritical) == 0)) && (waterLevel == 1))) || (((((\old(methaneLevelCritical) == 0) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (\old(methaneLevelCritical) == 0)) && (waterLevel == 0))) || (((pumpRunning == 0) && (2 == waterLevel)) && (\old(methaneLevelCritical) == 1))) || ((((pumpRunning == 0) && (\old(methaneLevelCritical) == 1)) && (waterLevel <= 2)) && (0 == systemActive))) || ((((2 == waterLevel) && (\old(methaneLevelCritical) == 0)) && (1 == systemActive)) && (pumpRunning == 1))) || ((((\old(methaneLevelCritical) == 0) && (1 == systemActive)) && (waterLevel == 1)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (\old(methaneLevelCritical) == 0)) && (waterLevel <= 2)) && (0 == systemActive))) || ((((pumpRunning == 0) && (\old(methaneLevelCritical) == 1)) && (1 == systemActive)) && (waterLevel == 1)))) && ((((((pumpRunning == \old(pumpRunning)) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel)))) - ProcedureContractResult [Line: 355]: Procedure Contract for cleanup Derived contract for procedure cleanup. Requires: 0 Ensures: (0 && ((((systemActive == \old(systemActive)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 74]: Procedure Contract for timeShift Derived contract for procedure timeShift. Ensures: (((((((((((((((((\old(pumpRunning) != 1) || (methaneLevelCritical != 1)) || (\old(waterLevel) != 2)) || (((pumpRunning == 0) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) && ((((\old(pumpRunning) != 0) || (\old(waterLevel) != 0)) || (((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 0))) || (0 == systemActive))) && ((((\old(pumpRunning) != 0) || ((pumpRunning == 0) && (2 == waterLevel))) || (methaneLevelCritical != 1)) || (\old(waterLevel) != 2))) && (((((((((((((((((\old(pumpRunning) == 0) && (methaneLevelCritical == 1)) && (\old(waterLevel) == 0)) || (((\old(waterLevel) == 1) && (methaneLevelCritical == 0)) && (\old(pumpRunning) == 0))) || (((\old(waterLevel) == 1) && (\old(pumpRunning) == 0)) && (methaneLevelCritical == 1))) || (((methaneLevelCritical == 1) && (0 == systemActive)) && (\old(waterLevel) <= 2))) || (((methaneLevelCritical == 0) && (0 == systemActive)) && (\old(waterLevel) <= 1))) || ((((1 == systemActive) && (\old(pumpRunning) == 1)) && (methaneLevelCritical == 1)) && (\old(waterLevel) == 0))) || ((((methaneLevelCritical == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 2))) || ((((methaneLevelCritical == 0) && (\old(pumpRunning) == 1)) && (1 <= \old(switchedOnBeforeTS))) && (\old(waterLevel) == 0))) || ((((\old(waterLevel) == 1) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (\old(pumpRunning) == 1))) || (((methaneLevelCritical == 0) && (0 == systemActive)) && (\old(waterLevel) == 2))) || ((((methaneLevelCritical == 0) && (1 == systemActive)) && (\old(pumpRunning) == 1)) && (\old(waterLevel) == 2))) || ((((1 == systemActive) && (\old(pumpRunning) == 1)) && (methaneLevelCritical == 1)) && (\old(waterLevel) == 2))) || ((((methaneLevelCritical == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (\old(waterLevel) == 0))) || ((((1 == systemActive) && (\old(pumpRunning) == 0)) && (methaneLevelCritical == 1)) && (\old(waterLevel) == 2))) || ((((\old(waterLevel) == 1) && (1 == systemActive)) && (\old(pumpRunning) == 1)) && (methaneLevelCritical == 1)))) && ((((methaneLevelCritical != 0) || (\old(pumpRunning) != 1)) || (\old(waterLevel) != 0)) || ((((1 == systemActive) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1)))) && (((((1 != systemActive) || (\old(pumpRunning) != 1)) || (\old(waterLevel) != 0)) || (methaneLevelCritical != 1)) || (((pumpRunning == 0) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)))) && (((pumpRunning == 0) && (\old(waterLevel) == waterLevel)) || (0 != systemActive))) && ((((\old(pumpRunning) != 0) || ((pumpRunning == 0) && (2 == waterLevel))) || (\old(waterLevel) != 2)) || ((2 == waterLevel) && (pumpRunning == 1)))) && ((((methaneLevelCritical != 0) || (\old(pumpRunning) != 1)) || (((waterLevel == 1) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || (\old(waterLevel) != 2))) && ((((\old(pumpRunning) != 0) || (((pumpRunning == 0) && (1 == systemActive)) && (waterLevel == 1))) || (\old(waterLevel) != 1)) || (0 == systemActive))) && ((((\old(waterLevel) != 1) || (((1 <= switchedOnBeforeTS) && (waterLevel == 0)) && (pumpRunning == 1))) || (methaneLevelCritical != 0)) || (\old(pumpRunning) != 1))) && (((((\old(waterLevel) != 1) || (1 != systemActive)) || (\old(pumpRunning) != 1)) || (methaneLevelCritical != 1)) || (((pumpRunning == 0) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)))) && ((\old(pumpRunning) == 0) || (0 != systemActive))) && ((((systemActive == \old(systemActive)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 920]: Procedure Contract for waterRise Derived contract for procedure waterRise. Requires: ((((((((((((((pumpRunning == 0) && (methaneLevelCritical == 1)) && (waterLevel <= 2)) && (0 == systemActive)) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (waterLevel == 1))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((2 == waterLevel) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (pumpRunning == 1))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive)) && (methaneLevelCritical == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (waterLevel <= 2)) && (0 == systemActive))) Ensures: ((((((((1 != systemActive) || (\old(waterLevel) != 0)) || (waterLevel == 1)) && ((2 == waterLevel) || (\old(waterLevel) != 2))) && ((2 == waterLevel) || (\old(waterLevel) != 1))) && (((pumpRunning == 0) && (waterLevel <= ((long long) \old(waterLevel) + 1))) || (0 != systemActive))) && (((((((((((((methaneLevelCritical == 0) && (0 == systemActive)) && (\old(waterLevel) <= 2)) || (((methaneLevelCritical == 1) && (0 == systemActive)) && (\old(waterLevel) <= 2))) || ((((methaneLevelCritical == 0) && (1 == systemActive)) && (\old(waterLevel) == 2)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (\old(waterLevel) == 1)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || (((((\old(waterLevel) == 1) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (\old(waterLevel) == 0))) || ((((pumpRunning == 0) && (\old(waterLevel) == 1)) && (1 == systemActive)) && (methaneLevelCritical == 1))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (\old(waterLevel) == 0)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (\old(waterLevel) == 2))) || ((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (\old(waterLevel) == 2))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (\old(waterLevel) == 0)))) && ((((((pumpRunning == \old(pumpRunning)) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 109]: Procedure Contract for processEnvironment__wrappee__methaneQuery Derived contract for procedure processEnvironment__wrappee__methaneQuery. Requires: (1 == systemActive) Ensures: (((((((((((pumpRunning == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) || (2 != waterLevel)) || (((1 == systemActive) && (\old(pumpRunning) == 0)) && (pumpRunning == 1))) && (((\old(pumpRunning) != 0) || (pumpRunning == 0)) || (waterLevel != 0))) && (((((((((2 == waterLevel) && (methaneLevelCritical == 1)) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (\old(pumpRunning) == 1)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0))) || ((methaneLevelCritical == 1) && (waterLevel == 0))) || ((((methaneLevelCritical == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) && (waterLevel == 0))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (\old(pumpRunning) == 1)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS))) || ((2 == waterLevel) && (methaneLevelCritical == 0))) || (((methaneLevelCritical == 0) && (\old(pumpRunning) == 0)) && (waterLevel == 1))) || ((methaneLevelCritical == 1) && (waterLevel == 1)))) && (((waterLevel != 1) || (\old(pumpRunning) != 0)) || ((pumpRunning == 0) && (1 == systemActive)))) && ((\old(pumpRunning) != 1) || (pumpRunning == 1))) && ((((pumpRunning == 0) && (1 == systemActive)) && (\old(pumpRunning) == 0)) || (methaneLevelCritical != 1))) && ((((((systemActive == \old(systemActive)) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 204]: Procedure Contract for isPumpRunning Derived contract for procedure isPumpRunning. Requires: (((((((((((((((((pumpRunning == 0) && (methaneLevelCritical == 1)) && (waterLevel <= 2)) && (0 == systemActive)) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (waterLevel == 1))) || ((((2 == waterLevel) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (pumpRunning == 1))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((methaneLevelCritical == 0) && (1 == systemActive)) && (waterLevel == 1)) && (pumpRunning == 1))) || ((((1 == systemActive) && (methaneLevelCritical == 1)) && (waterLevel == 1)) && (pumpRunning == 1))) || ((((2 == waterLevel) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (pumpRunning == 1))) || ((((1 == systemActive) && (methaneLevelCritical == 1)) && (waterLevel == 0)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (1 == systemActive)) && (methaneLevelCritical == 1)) && (waterLevel == 0))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive)) && (methaneLevelCritical == 1))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (waterLevel <= 2)) && (0 == systemActive))) Ensures: ((((((((pumpRunning != 0) || (\result == 0)) && ((\result == 1) || (pumpRunning != 1))) && ((1 == systemActive) || (0 == systemActive))) && ((((((1 <= switchedOnBeforeTS) && (waterLevel == 0)) || (1 < waterLevel)) || (methaneLevelCritical != 0)) || (pumpRunning != 1)) || (waterLevel == 1))) && ((\result == 0) || (0 != systemActive))) && (((((((((((((((pumpRunning == 0) && (methaneLevelCritical == 1)) && (waterLevel <= 2)) && (0 == systemActive)) || (((methaneLevelCritical == 1) && (waterLevel == 1)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (methaneLevelCritical == 0)) && (waterLevel == 1))) || (((methaneLevelCritical == 1) && (waterLevel == 0)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 1))) || (((methaneLevelCritical == 0) && (waterLevel <= 2)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (methaneLevelCritical == 1)) && (waterLevel == 1))) || (((pumpRunning == 0) && (methaneLevelCritical == 0)) && (waterLevel == 0))) || (((pumpRunning == 0) && (methaneLevelCritical == 1)) && (waterLevel == 0))) || (((2 == waterLevel) && (methaneLevelCritical == 1)) && (pumpRunning == 1))) || (((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0))) || ((((pumpRunning == 0) && (methaneLevelCritical == 0)) && (waterLevel <= 2)) && (0 == systemActive)))) && (((((((pumpRunning == \old(pumpRunning)) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical)))) - ProcedureContractResult [Line: 193]: Procedure Contract for isMethaneAlarm Derived contract for procedure isMethaneAlarm. Requires: ((((((((((1 == systemActive) && (methaneLevelCritical == 1)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1)) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (waterLevel == 0)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || (((((methaneLevelCritical == 0) && (1 == systemActive)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive)) && (methaneLevelCritical == 1))) || (((((1 == systemActive) && (methaneLevelCritical == 1)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) Ensures: ((((((1 == \result) || (methaneLevelCritical != 1)) && (((pumpRunning != 1) || (waterLevel == 1)) || (waterLevel == 0))) && ((0 == \result) || (methaneLevelCritical != 0))) && (((((((methaneLevelCritical == 0) && (1 == systemActive)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1)) || ((((1 == systemActive) && (methaneLevelCritical == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive)) && (methaneLevelCritical == 1)))) && (((((((pumpRunning == \old(pumpRunning)) && (systemActive == \old(systemActive))) && (cleanupTimeShifts == \old(cleanupTimeShifts))) && (head == \old(head))) && (switchedOnBeforeTS == \old(switchedOnBeforeTS))) && (waterLevel == \old(waterLevel))) && (methaneLevelCritical == \old(methaneLevelCritical)))) RESULT: Ultimate proved your program to be correct! [2024-11-18 14:22:23,749 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE