./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version d790fecc Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/plugins/org.eclipse.equinox.launcher_1.6.800.v20240513-1750.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 80b4c453e300455caffbcb636daccd3af095acb6ed433fb3111a61f5db77a0b9 --- Real Ultimate output --- This is Ultimate 0.3.0-dev-d790fec [2024-11-28 02:10:44,492 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-11-28 02:10:44,567 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-11-28 02:10:44,574 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-11-28 02:10:44,574 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-11-28 02:10:44,603 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-11-28 02:10:44,604 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-11-28 02:10:44,605 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-11-28 02:10:44,605 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-11-28 02:10:44,605 INFO L153 SettingsManager]: * Use memory slicer=true [2024-11-28 02:10:44,605 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-11-28 02:10:44,606 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-11-28 02:10:44,606 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-11-28 02:10:44,606 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-11-28 02:10:44,606 INFO L153 SettingsManager]: * Use SBE=true [2024-11-28 02:10:44,607 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-11-28 02:10:44,607 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-11-28 02:10:44,607 INFO L153 SettingsManager]: * sizeof long=4 [2024-11-28 02:10:44,607 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-11-28 02:10:44,608 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-11-28 02:10:44,608 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-11-28 02:10:44,608 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-11-28 02:10:44,608 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-11-28 02:10:44,608 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-11-28 02:10:44,608 INFO L153 SettingsManager]: * sizeof long double=12 [2024-11-28 02:10:44,609 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-11-28 02:10:44,609 INFO L153 SettingsManager]: * Behaviour of calls to undefined functions=OVERAPPROXIMATE_BEHAVIOUR [2024-11-28 02:10:44,609 INFO L153 SettingsManager]: * Use constant arrays=true [2024-11-28 02:10:44,609 INFO L151 SettingsManager]: Preferences of IcfgBuilder differ from their defaults: [2024-11-28 02:10:44,609 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-11-28 02:10:44,610 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-11-28 02:10:44,610 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-11-28 02:10:44,610 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-11-28 02:10:44,610 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-11-28 02:10:44,610 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-11-28 02:10:44,610 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-11-28 02:10:44,610 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-11-28 02:10:44,610 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-11-28 02:10:44,611 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-11-28 02:10:44,611 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-11-28 02:10:44,611 INFO L153 SettingsManager]: * Compute procedure contracts=false [2024-11-28 02:10:44,611 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-11-28 02:10:44,611 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-11-28 02:10:44,611 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-11-28 02:10:44,612 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-11-28 02:10:44,612 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-11-28 02:10:44,612 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-11-28 02:10:44,612 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-11-28 02:10:44,612 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 80b4c453e300455caffbcb636daccd3af095acb6ed433fb3111a61f5db77a0b9 [2024-11-28 02:10:45,004 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-11-28 02:10:45,015 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-11-28 02:10:45,018 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-11-28 02:10:45,020 INFO L270 PluginConnector]: Initializing CDTParser... [2024-11-28 02:10:45,020 INFO L274 PluginConnector]: CDTParser initialized [2024-11-28 02:10:45,022 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/../../sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c [2024-11-28 02:10:48,547 INFO L533 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/data/e211482c3/bf579acca4b2442ab330e98129a53409/FLAGc3f0d9d3b [2024-11-28 02:10:48,891 INFO L384 CDTParser]: Found 1 translation units. [2024-11-28 02:10:48,892 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c [2024-11-28 02:10:48,912 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/data/e211482c3/bf579acca4b2442ab330e98129a53409/FLAGc3f0d9d3b [2024-11-28 02:10:48,944 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/data/e211482c3/bf579acca4b2442ab330e98129a53409 [2024-11-28 02:10:48,949 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-11-28 02:10:48,953 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-11-28 02:10:48,955 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-11-28 02:10:48,956 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-11-28 02:10:48,962 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-11-28 02:10:48,963 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 02:10:48" (1/1) ... [2024-11-28 02:10:48,965 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@4faf93d8 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:48, skipping insertion in model container [2024-11-28 02:10:48,967 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 28.11 02:10:48" (1/1) ... [2024-11-28 02:10:49,024 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-11-28 02:10:49,209 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c[1605,1618] [2024-11-28 02:10:49,428 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-28 02:10:49,443 INFO L200 MainTranslator]: Completed pre-run [2024-11-28 02:10:49,451 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2024-11-28 02:10:49,453 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] [2024-11-28 02:10:49,453 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [300] [2024-11-28 02:10:49,453 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [370] [2024-11-28 02:10:49,453 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [409] [2024-11-28 02:10:49,453 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [509] [2024-11-28 02:10:49,453 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [544] [2024-11-28 02:10:49,454 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [910] [2024-11-28 02:10:49,457 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/sv-benchmarks/c/product-lines/minepump_spec2_product59.cil.c[1605,1618] [2024-11-28 02:10:49,519 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-11-28 02:10:49,551 INFO L204 MainTranslator]: Completed translation [2024-11-28 02:10:49,552 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49 WrapperNode [2024-11-28 02:10:49,552 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-11-28 02:10:49,553 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-11-28 02:10:49,553 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-11-28 02:10:49,553 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-11-28 02:10:49,561 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,577 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,606 INFO L138 Inliner]: procedures = 58, calls = 103, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 225 [2024-11-28 02:10:49,606 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-11-28 02:10:49,607 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-11-28 02:10:49,607 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-11-28 02:10:49,608 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-11-28 02:10:49,617 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,618 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,620 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,634 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-11-28 02:10:49,634 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,634 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,639 INFO L184 PluginConnector]: Executing the observer ReplaceArrayAssignments from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,640 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,645 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,646 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,648 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,650 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-11-28 02:10:49,651 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-11-28 02:10:49,651 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-11-28 02:10:49,651 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-11-28 02:10:49,652 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (1/1) ... [2024-11-28 02:10:49,659 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-11-28 02:10:49,673 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 [2024-11-28 02:10:49,690 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-11-28 02:10:49,694 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-11-28 02:10:49,729 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-11-28 02:10:49,730 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2024-11-28 02:10:49,730 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2024-11-28 02:10:49,730 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2024-11-28 02:10:49,730 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2024-11-28 02:10:49,730 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2024-11-28 02:10:49,730 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2024-11-28 02:10:49,730 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2024-11-28 02:10:49,730 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2024-11-28 02:10:49,730 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2024-11-28 02:10:49,730 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2024-11-28 02:10:49,730 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2024-11-28 02:10:49,731 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2024-11-28 02:10:49,731 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2024-11-28 02:10:49,731 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2024-11-28 02:10:49,731 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-11-28 02:10:49,731 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2024-11-28 02:10:49,731 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2024-11-28 02:10:49,731 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-11-28 02:10:49,731 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-11-28 02:10:49,826 INFO L234 CfgBuilder]: Building ICFG [2024-11-28 02:10:49,828 INFO L260 CfgBuilder]: Building CFG for each procedure with an implementation [2024-11-28 02:10:50,145 INFO L? ?]: Removed 49 outVars from TransFormulas that were not future-live. [2024-11-28 02:10:50,146 INFO L283 CfgBuilder]: Performing block encoding [2024-11-28 02:10:50,174 INFO L307 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-11-28 02:10:50,175 INFO L312 CfgBuilder]: Removed 4 assume(true) statements. [2024-11-28 02:10:50,175 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 02:10:50 BoogieIcfgContainer [2024-11-28 02:10:50,175 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-11-28 02:10:50,181 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-11-28 02:10:50,181 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-11-28 02:10:50,189 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-11-28 02:10:50,189 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 28.11 02:10:48" (1/3) ... [2024-11-28 02:10:50,190 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@6500bb5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 02:10:50, skipping insertion in model container [2024-11-28 02:10:50,191 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 28.11 02:10:49" (2/3) ... [2024-11-28 02:10:50,191 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@6500bb5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 28.11 02:10:50, skipping insertion in model container [2024-11-28 02:10:50,192 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 02:10:50" (3/3) ... [2024-11-28 02:10:50,193 INFO L128 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product59.cil.c [2024-11-28 02:10:50,216 INFO L216 ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-11-28 02:10:50,218 INFO L151 ceAbstractionStarter]: Applying trace abstraction to ICFG minepump_spec2_product59.cil.c that has 9 procedures, 98 locations, 1 initial locations, 2 loop locations, and 1 error locations. [2024-11-28 02:10:50,301 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-11-28 02:10:50,317 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@1048f7dc, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-11-28 02:10:50,317 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-11-28 02:10:50,322 INFO L276 IsEmpty]: Start isEmpty. Operand has 98 states, 74 states have (on average 1.3918918918918919) internal successors, (103), 83 states have internal predecessors, (103), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) [2024-11-28 02:10:50,332 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-11-28 02:10:50,332 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:50,333 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:50,333 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:50,340 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:50,340 INFO L85 PathProgramCache]: Analyzing trace with hash -358737545, now seen corresponding path program 1 times [2024-11-28 02:10:50,349 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:50,350 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1313901999] [2024-11-28 02:10:50,350 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:50,351 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:50,474 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:50,576 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-28 02:10:50,577 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:50,581 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1313901999] [2024-11-28 02:10:50,582 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1313901999] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:50,582 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-28 02:10:50,582 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-11-28 02:10:50,584 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [231950220] [2024-11-28 02:10:50,586 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:50,592 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-11-28 02:10:50,593 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:50,621 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-11-28 02:10:50,622 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-28 02:10:50,625 INFO L87 Difference]: Start difference. First operand has 98 states, 74 states have (on average 1.3918918918918919) internal successors, (103), 83 states have internal predecessors, (103), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-28 02:10:50,680 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:50,681 INFO L93 Difference]: Finished difference Result 187 states and 256 transitions. [2024-11-28 02:10:50,684 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-11-28 02:10:50,685 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-11-28 02:10:50,688 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:50,700 INFO L225 Difference]: With dead ends: 187 [2024-11-28 02:10:50,700 INFO L226 Difference]: Without dead ends: 89 [2024-11-28 02:10:50,707 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-11-28 02:10:50,713 INFO L435 NwaCegarLoop]: 125 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 125 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:50,715 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 125 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-28 02:10:50,734 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 89 states. [2024-11-28 02:10:50,767 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 89 to 89. [2024-11-28 02:10:50,769 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 89 states, 67 states have (on average 1.328358208955224) internal successors, (89), 75 states have internal predecessors, (89), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2024-11-28 02:10:50,778 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 89 states to 89 states and 116 transitions. [2024-11-28 02:10:50,781 INFO L78 Accepts]: Start accepts. Automaton has 89 states and 116 transitions. Word has length 25 [2024-11-28 02:10:50,782 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:50,783 INFO L471 AbstractCegarLoop]: Abstraction has 89 states and 116 transitions. [2024-11-28 02:10:50,783 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-28 02:10:50,783 INFO L276 IsEmpty]: Start isEmpty. Operand 89 states and 116 transitions. [2024-11-28 02:10:50,787 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-11-28 02:10:50,787 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:50,789 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:50,789 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-11-28 02:10:50,790 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:50,790 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:50,790 INFO L85 PathProgramCache]: Analyzing trace with hash -828813955, now seen corresponding path program 1 times [2024-11-28 02:10:50,791 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:50,791 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1356811019] [2024-11-28 02:10:50,791 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:50,791 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:50,844 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:51,052 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-28 02:10:51,053 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:51,053 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1356811019] [2024-11-28 02:10:51,053 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1356811019] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:51,053 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-28 02:10:51,053 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-28 02:10:51,053 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2028069409] [2024-11-28 02:10:51,053 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:51,055 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-28 02:10:51,055 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:51,055 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-28 02:10:51,056 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-28 02:10:51,056 INFO L87 Difference]: Start difference. First operand 89 states and 116 transitions. Second operand has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-28 02:10:51,092 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:51,096 INFO L93 Difference]: Finished difference Result 141 states and 183 transitions. [2024-11-28 02:10:51,096 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-28 02:10:51,097 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-11-28 02:10:51,097 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:51,098 INFO L225 Difference]: With dead ends: 141 [2024-11-28 02:10:51,098 INFO L226 Difference]: Without dead ends: 81 [2024-11-28 02:10:51,099 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-28 02:10:51,102 INFO L435 NwaCegarLoop]: 104 mSDtfsCounter, 16 mSDsluCounter, 84 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 188 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:51,102 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 188 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-28 02:10:51,105 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 81 states. [2024-11-28 02:10:51,121 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 81 to 81. [2024-11-28 02:10:51,121 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 81 states, 62 states have (on average 1.3387096774193548) internal successors, (83), 70 states have internal predecessors, (83), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 8 states have call predecessors, (11), 11 states have call successors, (11) [2024-11-28 02:10:51,125 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 81 states to 81 states and 105 transitions. [2024-11-28 02:10:51,126 INFO L78 Accepts]: Start accepts. Automaton has 81 states and 105 transitions. Word has length 25 [2024-11-28 02:10:51,126 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:51,126 INFO L471 AbstractCegarLoop]: Abstraction has 81 states and 105 transitions. [2024-11-28 02:10:51,126 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-28 02:10:51,126 INFO L276 IsEmpty]: Start isEmpty. Operand 81 states and 105 transitions. [2024-11-28 02:10:51,128 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2024-11-28 02:10:51,128 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:51,128 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:51,128 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-11-28 02:10:51,128 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:51,129 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:51,129 INFO L85 PathProgramCache]: Analyzing trace with hash -1486542754, now seen corresponding path program 1 times [2024-11-28 02:10:51,129 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:51,129 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1764736529] [2024-11-28 02:10:51,129 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:51,130 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:51,176 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:51,345 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-28 02:10:51,345 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:51,345 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1764736529] [2024-11-28 02:10:51,345 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1764736529] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:51,345 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-28 02:10:51,346 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-28 02:10:51,346 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [434310792] [2024-11-28 02:10:51,346 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:51,346 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-28 02:10:51,346 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:51,347 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-28 02:10:51,347 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-28 02:10:51,347 INFO L87 Difference]: Start difference. First operand 81 states and 105 transitions. Second operand has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 3 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-28 02:10:51,385 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:51,385 INFO L93 Difference]: Finished difference Result 226 states and 299 transitions. [2024-11-28 02:10:51,386 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-28 02:10:51,386 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 3 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 29 [2024-11-28 02:10:51,386 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:51,388 INFO L225 Difference]: With dead ends: 226 [2024-11-28 02:10:51,388 INFO L226 Difference]: Without dead ends: 153 [2024-11-28 02:10:51,389 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-28 02:10:51,390 INFO L435 NwaCegarLoop]: 122 mSDtfsCounter, 85 mSDsluCounter, 94 mSDsCounter, 0 mSdLazyCounter, 4 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 85 SdHoareTripleChecker+Valid, 216 SdHoareTripleChecker+Invalid, 4 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 4 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:51,390 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [85 Valid, 216 Invalid, 4 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 4 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-28 02:10:51,391 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 153 states. [2024-11-28 02:10:51,414 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 153 to 150. [2024-11-28 02:10:51,415 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 150 states, 113 states have (on average 1.3628318584070795) internal successors, (154), 128 states have internal predecessors, (154), 22 states have call successors, (22), 14 states have call predecessors, (22), 14 states have return successors, (22), 15 states have call predecessors, (22), 22 states have call successors, (22) [2024-11-28 02:10:51,417 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 150 states to 150 states and 198 transitions. [2024-11-28 02:10:51,418 INFO L78 Accepts]: Start accepts. Automaton has 150 states and 198 transitions. Word has length 29 [2024-11-28 02:10:51,418 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:51,418 INFO L471 AbstractCegarLoop]: Abstraction has 150 states and 198 transitions. [2024-11-28 02:10:51,418 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.666666666666666) internal successors, (26), 3 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-28 02:10:51,418 INFO L276 IsEmpty]: Start isEmpty. Operand 150 states and 198 transitions. [2024-11-28 02:10:51,420 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-11-28 02:10:51,420 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:51,420 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:51,420 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-11-28 02:10:51,421 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:51,421 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:51,421 INFO L85 PathProgramCache]: Analyzing trace with hash 1686245032, now seen corresponding path program 1 times [2024-11-28 02:10:51,421 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:51,421 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1899119901] [2024-11-28 02:10:51,422 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:51,422 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:51,442 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:51,627 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-11-28 02:10:51,628 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:51,628 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1899119901] [2024-11-28 02:10:51,628 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1899119901] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:51,628 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-28 02:10:51,628 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-11-28 02:10:51,628 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [177198640] [2024-11-28 02:10:51,628 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:51,629 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-28 02:10:51,629 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:51,629 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-28 02:10:51,630 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-28 02:10:51,630 INFO L87 Difference]: Start difference. First operand 150 states and 198 transitions. Second operand has 5 states, 5 states have (on average 6.0) internal successors, (30), 5 states have internal predecessors, (30), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-28 02:10:51,811 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:51,811 INFO L93 Difference]: Finished difference Result 374 states and 505 transitions. [2024-11-28 02:10:51,812 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-11-28 02:10:51,812 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 5 states have internal predecessors, (30), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-11-28 02:10:51,812 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:51,815 INFO L225 Difference]: With dead ends: 374 [2024-11-28 02:10:51,815 INFO L226 Difference]: Without dead ends: 232 [2024-11-28 02:10:51,817 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-11-28 02:10:51,818 INFO L435 NwaCegarLoop]: 99 mSDtfsCounter, 55 mSDsluCounter, 259 mSDsCounter, 0 mSdLazyCounter, 30 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 55 SdHoareTripleChecker+Valid, 358 SdHoareTripleChecker+Invalid, 39 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 30 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:51,818 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [55 Valid, 358 Invalid, 39 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 30 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-28 02:10:51,819 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 232 states. [2024-11-28 02:10:51,857 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 232 to 231. [2024-11-28 02:10:51,858 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 231 states, 174 states have (on average 1.3218390804597702) internal successors, (230), 191 states have internal predecessors, (230), 30 states have call successors, (30), 26 states have call predecessors, (30), 26 states have return successors, (38), 27 states have call predecessors, (38), 30 states have call successors, (38) [2024-11-28 02:10:51,861 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 231 states to 231 states and 298 transitions. [2024-11-28 02:10:51,861 INFO L78 Accepts]: Start accepts. Automaton has 231 states and 298 transitions. Word has length 33 [2024-11-28 02:10:51,861 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:51,862 INFO L471 AbstractCegarLoop]: Abstraction has 231 states and 298 transitions. [2024-11-28 02:10:51,862 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 5 states have internal predecessors, (30), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-11-28 02:10:51,862 INFO L276 IsEmpty]: Start isEmpty. Operand 231 states and 298 transitions. [2024-11-28 02:10:51,864 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2024-11-28 02:10:51,864 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:51,864 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:51,864 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-11-28 02:10:51,865 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:51,865 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:51,865 INFO L85 PathProgramCache]: Analyzing trace with hash 2070069342, now seen corresponding path program 1 times [2024-11-28 02:10:51,865 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:51,865 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1907709399] [2024-11-28 02:10:51,866 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:51,866 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:51,931 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:52,134 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-28 02:10:52,134 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:52,134 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1907709399] [2024-11-28 02:10:52,134 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1907709399] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:52,134 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-28 02:10:52,135 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-11-28 02:10:52,135 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [922581666] [2024-11-28 02:10:52,135 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:52,135 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-28 02:10:52,135 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:52,138 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-28 02:10:52,138 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-28 02:10:52,138 INFO L87 Difference]: Start difference. First operand 231 states and 298 transitions. Second operand has 5 states, 5 states have (on average 8.4) internal successors, (42), 5 states have internal predecessors, (42), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2024-11-28 02:10:52,218 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:52,218 INFO L93 Difference]: Finished difference Result 460 states and 612 transitions. [2024-11-28 02:10:52,220 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-11-28 02:10:52,220 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.4) internal successors, (42), 5 states have internal predecessors, (42), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) Word has length 51 [2024-11-28 02:10:52,221 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:52,226 INFO L225 Difference]: With dead ends: 460 [2024-11-28 02:10:52,226 INFO L226 Difference]: Without dead ends: 237 [2024-11-28 02:10:52,227 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-28 02:10:52,228 INFO L435 NwaCegarLoop]: 102 mSDtfsCounter, 0 mSDsluCounter, 300 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 402 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:52,229 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 402 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-28 02:10:52,234 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 237 states. [2024-11-28 02:10:52,271 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 237 to 237. [2024-11-28 02:10:52,276 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 237 states, 180 states have (on average 1.3111111111111111) internal successors, (236), 197 states have internal predecessors, (236), 30 states have call successors, (30), 26 states have call predecessors, (30), 26 states have return successors, (38), 27 states have call predecessors, (38), 30 states have call successors, (38) [2024-11-28 02:10:52,278 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 237 states to 237 states and 304 transitions. [2024-11-28 02:10:52,279 INFO L78 Accepts]: Start accepts. Automaton has 237 states and 304 transitions. Word has length 51 [2024-11-28 02:10:52,279 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:52,279 INFO L471 AbstractCegarLoop]: Abstraction has 237 states and 304 transitions. [2024-11-28 02:10:52,283 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.4) internal successors, (42), 5 states have internal predecessors, (42), 2 states have call successors, (4), 1 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2024-11-28 02:10:52,283 INFO L276 IsEmpty]: Start isEmpty. Operand 237 states and 304 transitions. [2024-11-28 02:10:52,285 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2024-11-28 02:10:52,285 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:52,285 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:52,286 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-11-28 02:10:52,286 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:52,286 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:52,286 INFO L85 PathProgramCache]: Analyzing trace with hash -301669920, now seen corresponding path program 1 times [2024-11-28 02:10:52,286 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:52,287 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [438098073] [2024-11-28 02:10:52,287 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:52,287 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:52,334 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:52,456 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-28 02:10:52,456 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:52,456 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [438098073] [2024-11-28 02:10:52,456 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [438098073] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:52,456 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-28 02:10:52,457 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-11-28 02:10:52,457 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1375060491] [2024-11-28 02:10:52,457 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:52,457 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-28 02:10:52,457 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:52,458 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-28 02:10:52,458 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-11-28 02:10:52,458 INFO L87 Difference]: Start difference. First operand 237 states and 304 transitions. Second operand has 5 states, 5 states have (on average 8.4) internal successors, (42), 5 states have internal predecessors, (42), 3 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2024-11-28 02:10:52,568 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:52,572 INFO L93 Difference]: Finished difference Result 474 states and 625 transitions. [2024-11-28 02:10:52,573 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-28 02:10:52,573 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.4) internal successors, (42), 5 states have internal predecessors, (42), 3 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) Word has length 51 [2024-11-28 02:10:52,573 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:52,576 INFO L225 Difference]: With dead ends: 474 [2024-11-28 02:10:52,576 INFO L226 Difference]: Without dead ends: 245 [2024-11-28 02:10:52,580 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-11-28 02:10:52,581 INFO L435 NwaCegarLoop]: 115 mSDtfsCounter, 87 mSDsluCounter, 316 mSDsCounter, 0 mSdLazyCounter, 19 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 87 SdHoareTripleChecker+Valid, 431 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 19 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:52,582 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [87 Valid, 431 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 19 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-28 02:10:52,583 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 245 states. [2024-11-28 02:10:52,626 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 245 to 241. [2024-11-28 02:10:52,627 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 241 states, 184 states have (on average 1.3043478260869565) internal successors, (240), 201 states have internal predecessors, (240), 30 states have call successors, (30), 26 states have call predecessors, (30), 26 states have return successors, (38), 27 states have call predecessors, (38), 30 states have call successors, (38) [2024-11-28 02:10:52,629 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 241 states to 241 states and 308 transitions. [2024-11-28 02:10:52,630 INFO L78 Accepts]: Start accepts. Automaton has 241 states and 308 transitions. Word has length 51 [2024-11-28 02:10:52,630 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:52,630 INFO L471 AbstractCegarLoop]: Abstraction has 241 states and 308 transitions. [2024-11-28 02:10:52,631 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.4) internal successors, (42), 5 states have internal predecessors, (42), 3 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 1 states have call predecessors, (3), 2 states have call successors, (3) [2024-11-28 02:10:52,631 INFO L276 IsEmpty]: Start isEmpty. Operand 241 states and 308 transitions. [2024-11-28 02:10:52,635 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2024-11-28 02:10:52,636 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:52,636 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:52,636 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-11-28 02:10:52,636 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:52,637 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:52,637 INFO L85 PathProgramCache]: Analyzing trace with hash 1084533474, now seen corresponding path program 1 times [2024-11-28 02:10:52,641 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:52,641 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [793801597] [2024-11-28 02:10:52,641 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:52,641 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:52,674 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:52,801 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-28 02:10:52,801 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:52,801 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [793801597] [2024-11-28 02:10:52,801 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [793801597] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:52,801 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-28 02:10:52,801 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-11-28 02:10:52,801 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [180443898] [2024-11-28 02:10:52,801 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:52,802 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-11-28 02:10:52,802 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:52,802 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-11-28 02:10:52,802 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-28 02:10:52,802 INFO L87 Difference]: Start difference. First operand 241 states and 308 transitions. Second operand has 4 states, 4 states have (on average 10.5) internal successors, (42), 4 states have internal predecessors, (42), 3 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2024-11-28 02:10:53,024 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:53,028 INFO L93 Difference]: Finished difference Result 776 states and 1022 transitions. [2024-11-28 02:10:53,029 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-11-28 02:10:53,029 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 10.5) internal successors, (42), 4 states have internal predecessors, (42), 3 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 51 [2024-11-28 02:10:53,032 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:53,039 INFO L225 Difference]: With dead ends: 776 [2024-11-28 02:10:53,040 INFO L226 Difference]: Without dead ends: 543 [2024-11-28 02:10:53,042 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-28 02:10:53,044 INFO L435 NwaCegarLoop]: 169 mSDtfsCounter, 130 mSDsluCounter, 161 mSDsCounter, 0 mSdLazyCounter, 57 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 130 SdHoareTripleChecker+Valid, 330 SdHoareTripleChecker+Invalid, 62 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 57 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:53,046 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [130 Valid, 330 Invalid, 62 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 57 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-28 02:10:53,048 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 543 states. [2024-11-28 02:10:53,126 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 543 to 531. [2024-11-28 02:10:53,128 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 531 states, 402 states have (on average 1.2810945273631842) internal successors, (515), 433 states have internal predecessors, (515), 66 states have call successors, (66), 60 states have call predecessors, (66), 62 states have return successors, (102), 62 states have call predecessors, (102), 66 states have call successors, (102) [2024-11-28 02:10:53,135 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 531 states to 531 states and 683 transitions. [2024-11-28 02:10:53,139 INFO L78 Accepts]: Start accepts. Automaton has 531 states and 683 transitions. Word has length 51 [2024-11-28 02:10:53,140 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:53,140 INFO L471 AbstractCegarLoop]: Abstraction has 531 states and 683 transitions. [2024-11-28 02:10:53,140 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 10.5) internal successors, (42), 4 states have internal predecessors, (42), 3 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2024-11-28 02:10:53,140 INFO L276 IsEmpty]: Start isEmpty. Operand 531 states and 683 transitions. [2024-11-28 02:10:53,145 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2024-11-28 02:10:53,145 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:53,145 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:53,146 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-11-28 02:10:53,146 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:53,146 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:53,149 INFO L85 PathProgramCache]: Analyzing trace with hash 1132230268, now seen corresponding path program 1 times [2024-11-28 02:10:53,149 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:53,150 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1840563300] [2024-11-28 02:10:53,150 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:53,150 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:53,191 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:53,271 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-11-28 02:10:53,272 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:53,272 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1840563300] [2024-11-28 02:10:53,272 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1840563300] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:53,272 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-28 02:10:53,272 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-11-28 02:10:53,272 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [582515344] [2024-11-28 02:10:53,272 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:53,273 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-11-28 02:10:53,273 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:53,277 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-11-28 02:10:53,278 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-28 02:10:53,278 INFO L87 Difference]: Start difference. First operand 531 states and 683 transitions. Second operand has 3 states, 3 states have (on average 14.666666666666666) internal successors, (44), 3 states have internal predecessors, (44), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-28 02:10:53,385 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:53,385 INFO L93 Difference]: Finished difference Result 883 states and 1171 transitions. [2024-11-28 02:10:53,385 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-11-28 02:10:53,386 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 14.666666666666666) internal successors, (44), 3 states have internal predecessors, (44), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 55 [2024-11-28 02:10:53,386 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:53,393 INFO L225 Difference]: With dead ends: 883 [2024-11-28 02:10:53,393 INFO L226 Difference]: Without dead ends: 881 [2024-11-28 02:10:53,394 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-11-28 02:10:53,395 INFO L435 NwaCegarLoop]: 104 mSDtfsCounter, 78 mSDsluCounter, 93 mSDsCounter, 0 mSdLazyCounter, 3 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 78 SdHoareTripleChecker+Valid, 197 SdHoareTripleChecker+Invalid, 8 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 3 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:53,395 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [78 Valid, 197 Invalid, 8 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 3 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-28 02:10:53,397 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 881 states. [2024-11-28 02:10:53,521 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 881 to 853. [2024-11-28 02:10:53,524 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 853 states, 642 states have (on average 1.2850467289719627) internal successors, (825), 697 states have internal predecessors, (825), 110 states have call successors, (110), 98 states have call predecessors, (110), 100 states have return successors, (199), 96 states have call predecessors, (199), 110 states have call successors, (199) [2024-11-28 02:10:53,539 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 853 states to 853 states and 1134 transitions. [2024-11-28 02:10:53,544 INFO L78 Accepts]: Start accepts. Automaton has 853 states and 1134 transitions. Word has length 55 [2024-11-28 02:10:53,544 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:53,545 INFO L471 AbstractCegarLoop]: Abstraction has 853 states and 1134 transitions. [2024-11-28 02:10:53,545 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 14.666666666666666) internal successors, (44), 3 states have internal predecessors, (44), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-11-28 02:10:53,545 INFO L276 IsEmpty]: Start isEmpty. Operand 853 states and 1134 transitions. [2024-11-28 02:10:53,553 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 85 [2024-11-28 02:10:53,557 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:53,557 INFO L218 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:53,558 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2024-11-28 02:10:53,558 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:53,558 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:53,559 INFO L85 PathProgramCache]: Analyzing trace with hash 1984251417, now seen corresponding path program 1 times [2024-11-28 02:10:53,559 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:53,559 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [214382011] [2024-11-28 02:10:53,559 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:53,559 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:53,593 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:53,683 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 17 proven. 0 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2024-11-28 02:10:53,683 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:53,684 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [214382011] [2024-11-28 02:10:53,684 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [214382011] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:53,684 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-11-28 02:10:53,684 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-11-28 02:10:53,688 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [963477567] [2024-11-28 02:10:53,688 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:53,689 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-11-28 02:10:53,689 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:53,689 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-11-28 02:10:53,689 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-28 02:10:53,690 INFO L87 Difference]: Start difference. First operand 853 states and 1134 transitions. Second operand has 4 states, 4 states have (on average 16.75) internal successors, (67), 4 states have internal predecessors, (67), 4 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) [2024-11-28 02:10:53,881 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:53,882 INFO L93 Difference]: Finished difference Result 974 states and 1296 transitions. [2024-11-28 02:10:53,882 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-11-28 02:10:53,883 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 16.75) internal successors, (67), 4 states have internal predecessors, (67), 4 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) Word has length 84 [2024-11-28 02:10:53,883 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:53,890 INFO L225 Difference]: With dead ends: 974 [2024-11-28 02:10:53,890 INFO L226 Difference]: Without dead ends: 415 [2024-11-28 02:10:53,897 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-11-28 02:10:53,897 INFO L435 NwaCegarLoop]: 142 mSDtfsCounter, 127 mSDsluCounter, 109 mSDsCounter, 0 mSdLazyCounter, 37 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 127 SdHoareTripleChecker+Valid, 251 SdHoareTripleChecker+Invalid, 39 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 37 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:53,898 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [127 Valid, 251 Invalid, 39 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 37 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-28 02:10:53,899 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 415 states. [2024-11-28 02:10:53,986 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 415 to 411. [2024-11-28 02:10:53,987 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 411 states, 312 states have (on average 1.2435897435897436) internal successors, (388), 335 states have internal predecessors, (388), 49 states have call successors, (49), 47 states have call predecessors, (49), 49 states have return successors, (91), 46 states have call predecessors, (91), 49 states have call successors, (91) [2024-11-28 02:10:53,993 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 411 states to 411 states and 528 transitions. [2024-11-28 02:10:53,994 INFO L78 Accepts]: Start accepts. Automaton has 411 states and 528 transitions. Word has length 84 [2024-11-28 02:10:53,995 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:53,995 INFO L471 AbstractCegarLoop]: Abstraction has 411 states and 528 transitions. [2024-11-28 02:10:53,996 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 16.75) internal successors, (67), 4 states have internal predecessors, (67), 4 states have call successors, (7), 2 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) [2024-11-28 02:10:53,996 INFO L276 IsEmpty]: Start isEmpty. Operand 411 states and 528 transitions. [2024-11-28 02:10:54,003 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 96 [2024-11-28 02:10:54,003 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:54,004 INFO L218 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:54,004 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2024-11-28 02:10:54,005 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:54,008 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:54,008 INFO L85 PathProgramCache]: Analyzing trace with hash 1386729185, now seen corresponding path program 1 times [2024-11-28 02:10:54,008 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:54,008 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2108712856] [2024-11-28 02:10:54,009 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:54,009 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:54,062 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:54,336 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 21 proven. 2 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2024-11-28 02:10:54,336 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:54,336 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2108712856] [2024-11-28 02:10:54,337 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2108712856] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-28 02:10:54,337 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [531578086] [2024-11-28 02:10:54,337 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:54,337 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-28 02:10:54,337 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 [2024-11-28 02:10:54,344 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-28 02:10:54,346 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-11-28 02:10:54,505 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:54,509 INFO L256 TraceCheckSpWp]: Trace formula consists of 325 conjuncts, 11 conjuncts are in the unsatisfiable core [2024-11-28 02:10:54,517 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-11-28 02:10:54,846 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 7 proven. 2 refuted. 0 times theorem prover too weak. 23 trivial. 0 not checked. [2024-11-28 02:10:54,848 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2024-11-28 02:10:55,095 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 15 proven. 0 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2024-11-28 02:10:55,096 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [531578086] provided 1 perfect and 1 imperfect interpolant sequences [2024-11-28 02:10:55,096 INFO L185 FreeRefinementEngine]: Found 1 perfect and 2 imperfect interpolant sequences. [2024-11-28 02:10:55,096 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [7, 5] total 10 [2024-11-28 02:10:55,096 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [153518466] [2024-11-28 02:10:55,096 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:55,097 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-28 02:10:55,097 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:55,097 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-28 02:10:55,098 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=24, Invalid=66, Unknown=0, NotChecked=0, Total=90 [2024-11-28 02:10:55,098 INFO L87 Difference]: Start difference. First operand 411 states and 528 transitions. Second operand has 6 states, 6 states have (on average 11.333333333333334) internal successors, (68), 5 states have internal predecessors, (68), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (8), 3 states have call predecessors, (8), 2 states have call successors, (8) [2024-11-28 02:10:55,362 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:55,363 INFO L93 Difference]: Finished difference Result 1171 states and 1544 transitions. [2024-11-28 02:10:55,363 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-28 02:10:55,364 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 11.333333333333334) internal successors, (68), 5 states have internal predecessors, (68), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (8), 3 states have call predecessors, (8), 2 states have call successors, (8) Word has length 95 [2024-11-28 02:10:55,364 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:55,375 INFO L225 Difference]: With dead ends: 1171 [2024-11-28 02:10:55,377 INFO L226 Difference]: Without dead ends: 768 [2024-11-28 02:10:55,380 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 198 GetRequests, 187 SyntacticMatches, 1 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=34, Invalid=98, Unknown=0, NotChecked=0, Total=132 [2024-11-28 02:10:55,380 INFO L435 NwaCegarLoop]: 95 mSDtfsCounter, 55 mSDsluCounter, 337 mSDsCounter, 0 mSdLazyCounter, 48 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 57 SdHoareTripleChecker+Valid, 432 SdHoareTripleChecker+Invalid, 52 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 48 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:55,381 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [57 Valid, 432 Invalid, 52 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 48 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-11-28 02:10:55,382 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 768 states. [2024-11-28 02:10:55,492 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 768 to 655. [2024-11-28 02:10:55,494 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 655 states, 492 states have (on average 1.2215447154471544) internal successors, (601), 530 states have internal predecessors, (601), 80 states have call successors, (80), 77 states have call predecessors, (80), 82 states have return successors, (147), 76 states have call predecessors, (147), 80 states have call successors, (147) [2024-11-28 02:10:55,501 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 655 states to 655 states and 828 transitions. [2024-11-28 02:10:55,502 INFO L78 Accepts]: Start accepts. Automaton has 655 states and 828 transitions. Word has length 95 [2024-11-28 02:10:55,503 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:55,503 INFO L471 AbstractCegarLoop]: Abstraction has 655 states and 828 transitions. [2024-11-28 02:10:55,503 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 11.333333333333334) internal successors, (68), 5 states have internal predecessors, (68), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (8), 3 states have call predecessors, (8), 2 states have call successors, (8) [2024-11-28 02:10:55,503 INFO L276 IsEmpty]: Start isEmpty. Operand 655 states and 828 transitions. [2024-11-28 02:10:55,508 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 100 [2024-11-28 02:10:55,508 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:55,508 INFO L218 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:55,521 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-11-28 02:10:55,709 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2024-11-28 02:10:55,711 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:55,712 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:55,712 INFO L85 PathProgramCache]: Analyzing trace with hash 1130873341, now seen corresponding path program 1 times [2024-11-28 02:10:55,712 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:55,712 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [942780024] [2024-11-28 02:10:55,713 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:55,713 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:55,740 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:56,028 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 19 proven. 6 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2024-11-28 02:10:56,028 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:56,028 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [942780024] [2024-11-28 02:10:56,028 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [942780024] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-28 02:10:56,028 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [20316554] [2024-11-28 02:10:56,029 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:56,029 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-28 02:10:56,029 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 [2024-11-28 02:10:56,031 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-28 02:10:56,035 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-11-28 02:10:56,196 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:56,199 INFO L256 TraceCheckSpWp]: Trace formula consists of 335 conjuncts, 8 conjuncts are in the unsatisfiable core [2024-11-28 02:10:56,205 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-11-28 02:10:56,441 INFO L134 CoverageAnalysis]: Checked inductivity of 32 backedges. 19 proven. 0 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-11-28 02:10:56,442 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-11-28 02:10:56,442 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [20316554] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:56,442 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-11-28 02:10:56,442 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [8] total 13 [2024-11-28 02:10:56,442 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [317601018] [2024-11-28 02:10:56,443 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:56,443 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2024-11-28 02:10:56,443 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:56,444 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2024-11-28 02:10:56,444 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=28, Invalid=128, Unknown=0, NotChecked=0, Total=156 [2024-11-28 02:10:56,445 INFO L87 Difference]: Start difference. First operand 655 states and 828 transitions. Second operand has 7 states, 7 states have (on average 10.142857142857142) internal successors, (71), 6 states have internal predecessors, (71), 3 states have call successors, (9), 3 states have call predecessors, (9), 4 states have return successors, (8), 4 states have call predecessors, (8), 3 states have call successors, (8) [2024-11-28 02:10:56,726 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:56,727 INFO L93 Difference]: Finished difference Result 1294 states and 1652 transitions. [2024-11-28 02:10:56,727 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-28 02:10:56,728 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 10.142857142857142) internal successors, (71), 6 states have internal predecessors, (71), 3 states have call successors, (9), 3 states have call predecessors, (9), 4 states have return successors, (8), 4 states have call predecessors, (8), 3 states have call successors, (8) Word has length 99 [2024-11-28 02:10:56,728 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:56,733 INFO L225 Difference]: With dead ends: 1294 [2024-11-28 02:10:56,734 INFO L226 Difference]: Without dead ends: 647 [2024-11-28 02:10:56,737 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 106 GetRequests, 95 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 4 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=28, Invalid=128, Unknown=0, NotChecked=0, Total=156 [2024-11-28 02:10:56,737 INFO L435 NwaCegarLoop]: 169 mSDtfsCounter, 61 mSDsluCounter, 410 mSDsCounter, 0 mSdLazyCounter, 111 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 62 SdHoareTripleChecker+Valid, 579 SdHoareTripleChecker+Invalid, 112 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 111 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:56,738 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [62 Valid, 579 Invalid, 112 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 111 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-28 02:10:56,740 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 647 states. [2024-11-28 02:10:56,817 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 647 to 639. [2024-11-28 02:10:56,819 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 639 states, 482 states have (on average 1.2074688796680497) internal successors, (582), 514 states have internal predecessors, (582), 78 states have call successors, (78), 75 states have call predecessors, (78), 78 states have return successors, (128), 74 states have call predecessors, (128), 78 states have call successors, (128) [2024-11-28 02:10:56,826 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 639 states to 639 states and 788 transitions. [2024-11-28 02:10:56,828 INFO L78 Accepts]: Start accepts. Automaton has 639 states and 788 transitions. Word has length 99 [2024-11-28 02:10:56,829 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:56,829 INFO L471 AbstractCegarLoop]: Abstraction has 639 states and 788 transitions. [2024-11-28 02:10:56,829 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 10.142857142857142) internal successors, (71), 6 states have internal predecessors, (71), 3 states have call successors, (9), 3 states have call predecessors, (9), 4 states have return successors, (8), 4 states have call predecessors, (8), 3 states have call successors, (8) [2024-11-28 02:10:56,830 INFO L276 IsEmpty]: Start isEmpty. Operand 639 states and 788 transitions. [2024-11-28 02:10:56,834 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 141 [2024-11-28 02:10:56,834 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:56,834 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:56,846 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-11-28 02:10:57,035 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-11-28 02:10:57,035 INFO L396 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:57,036 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:57,036 INFO L85 PathProgramCache]: Analyzing trace with hash -729542894, now seen corresponding path program 1 times [2024-11-28 02:10:57,036 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:57,036 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [633474872] [2024-11-28 02:10:57,036 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:57,036 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:57,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:57,284 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 50 proven. 12 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-11-28 02:10:57,284 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:57,284 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [633474872] [2024-11-28 02:10:57,284 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [633474872] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-28 02:10:57,285 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1161064004] [2024-11-28 02:10:57,285 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:57,285 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-28 02:10:57,285 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 [2024-11-28 02:10:57,287 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-28 02:10:57,292 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-11-28 02:10:57,480 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:57,483 INFO L256 TraceCheckSpWp]: Trace formula consists of 434 conjuncts, 4 conjuncts are in the unsatisfiable core [2024-11-28 02:10:57,491 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-11-28 02:10:57,602 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 62 proven. 0 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-11-28 02:10:57,605 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-11-28 02:10:57,605 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1161064004] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:10:57,605 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-11-28 02:10:57,605 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [5] total 6 [2024-11-28 02:10:57,606 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [67722789] [2024-11-28 02:10:57,606 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:10:57,606 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-28 02:10:57,607 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:10:57,608 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-28 02:10:57,608 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2024-11-28 02:10:57,608 INFO L87 Difference]: Start difference. First operand 639 states and 788 transitions. Second operand has 5 states, 5 states have (on average 16.8) internal successors, (84), 4 states have internal predecessors, (84), 3 states have call successors, (11), 4 states have call predecessors, (11), 4 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2024-11-28 02:10:58,139 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:10:58,139 INFO L93 Difference]: Finished difference Result 1424 states and 1826 transitions. [2024-11-28 02:10:58,140 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-11-28 02:10:58,140 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 16.8) internal successors, (84), 4 states have internal predecessors, (84), 3 states have call successors, (11), 4 states have call predecessors, (11), 4 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) Word has length 140 [2024-11-28 02:10:58,141 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:10:58,149 INFO L225 Difference]: With dead ends: 1424 [2024-11-28 02:10:58,149 INFO L226 Difference]: Without dead ends: 881 [2024-11-28 02:10:58,152 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 149 GetRequests, 142 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=25, Invalid=47, Unknown=0, NotChecked=0, Total=72 [2024-11-28 02:10:58,153 INFO L435 NwaCegarLoop]: 121 mSDtfsCounter, 141 mSDsluCounter, 196 mSDsCounter, 0 mSdLazyCounter, 204 mSolverCounterSat, 39 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 145 SdHoareTripleChecker+Valid, 317 SdHoareTripleChecker+Invalid, 243 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 39 IncrementalHoareTripleChecker+Valid, 204 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-11-28 02:10:58,153 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [145 Valid, 317 Invalid, 243 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [39 Valid, 204 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-11-28 02:10:58,155 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 881 states. [2024-11-28 02:10:58,288 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 881 to 869. [2024-11-28 02:10:58,290 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 869 states, 650 states have (on average 1.1846153846153846) internal successors, (770), 691 states have internal predecessors, (770), 114 states have call successors, (114), 95 states have call predecessors, (114), 104 states have return successors, (223), 110 states have call predecessors, (223), 114 states have call successors, (223) [2024-11-28 02:10:58,299 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 869 states to 869 states and 1107 transitions. [2024-11-28 02:10:58,301 INFO L78 Accepts]: Start accepts. Automaton has 869 states and 1107 transitions. Word has length 140 [2024-11-28 02:10:58,301 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:10:58,302 INFO L471 AbstractCegarLoop]: Abstraction has 869 states and 1107 transitions. [2024-11-28 02:10:58,302 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 16.8) internal successors, (84), 4 states have internal predecessors, (84), 3 states have call successors, (11), 4 states have call predecessors, (11), 4 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2024-11-28 02:10:58,302 INFO L276 IsEmpty]: Start isEmpty. Operand 869 states and 1107 transitions. [2024-11-28 02:10:58,308 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 141 [2024-11-28 02:10:58,308 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:10:58,308 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:10:58,321 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-11-28 02:10:58,509 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-11-28 02:10:58,509 INFO L396 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:10:58,510 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:10:58,510 INFO L85 PathProgramCache]: Analyzing trace with hash 2108251344, now seen corresponding path program 1 times [2024-11-28 02:10:58,510 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:10:58,510 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1374008944] [2024-11-28 02:10:58,510 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:58,510 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:10:58,547 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:59,107 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 43 proven. 17 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2024-11-28 02:10:59,107 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:10:59,108 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1374008944] [2024-11-28 02:10:59,108 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1374008944] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-28 02:10:59,109 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1918538590] [2024-11-28 02:10:59,109 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:10:59,109 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-28 02:10:59,109 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 [2024-11-28 02:10:59,111 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-28 02:10:59,114 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-11-28 02:10:59,267 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:10:59,272 INFO L256 TraceCheckSpWp]: Trace formula consists of 432 conjuncts, 12 conjuncts are in the unsatisfiable core [2024-11-28 02:10:59,277 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-11-28 02:10:59,522 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 72 proven. 3 refuted. 0 times theorem prover too weak. 24 trivial. 0 not checked. [2024-11-28 02:10:59,522 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2024-11-28 02:11:00,191 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 52 proven. 3 refuted. 0 times theorem prover too weak. 44 trivial. 0 not checked. [2024-11-28 02:11:00,192 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1918538590] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-28 02:11:00,192 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-28 02:11:00,192 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 8, 9] total 18 [2024-11-28 02:11:00,192 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [213861336] [2024-11-28 02:11:00,193 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-28 02:11:00,193 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 18 states [2024-11-28 02:11:00,194 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:11:00,195 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 18 interpolants. [2024-11-28 02:11:00,195 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=104, Invalid=202, Unknown=0, NotChecked=0, Total=306 [2024-11-28 02:11:00,196 INFO L87 Difference]: Start difference. First operand 869 states and 1107 transitions. Second operand has 18 states, 18 states have (on average 8.833333333333334) internal successors, (159), 16 states have internal predecessors, (159), 10 states have call successors, (27), 8 states have call predecessors, (27), 14 states have return successors, (30), 9 states have call predecessors, (30), 10 states have call successors, (30) [2024-11-28 02:11:01,097 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:11:01,099 INFO L93 Difference]: Finished difference Result 1664 states and 2198 transitions. [2024-11-28 02:11:01,100 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-11-28 02:11:01,101 INFO L78 Accepts]: Start accepts. Automaton has has 18 states, 18 states have (on average 8.833333333333334) internal successors, (159), 16 states have internal predecessors, (159), 10 states have call successors, (27), 8 states have call predecessors, (27), 14 states have return successors, (30), 9 states have call predecessors, (30), 10 states have call successors, (30) Word has length 140 [2024-11-28 02:11:01,101 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:11:01,109 INFO L225 Difference]: With dead ends: 1664 [2024-11-28 02:11:01,109 INFO L226 Difference]: Without dead ends: 895 [2024-11-28 02:11:01,114 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 301 GetRequests, 275 SyntacticMatches, 4 SemanticMatches, 22 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 133 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=184, Invalid=368, Unknown=0, NotChecked=0, Total=552 [2024-11-28 02:11:01,114 INFO L435 NwaCegarLoop]: 91 mSDtfsCounter, 543 mSDsluCounter, 400 mSDsCounter, 0 mSdLazyCounter, 423 mSolverCounterSat, 188 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 545 SdHoareTripleChecker+Valid, 491 SdHoareTripleChecker+Invalid, 611 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 188 IncrementalHoareTripleChecker+Valid, 423 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2024-11-28 02:11:01,115 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [545 Valid, 491 Invalid, 611 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [188 Valid, 423 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2024-11-28 02:11:01,118 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 895 states. [2024-11-28 02:11:01,221 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 895 to 887. [2024-11-28 02:11:01,224 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 887 states, 667 states have (on average 1.1874062968515742) internal successors, (792), 702 states have internal predecessors, (792), 118 states have call successors, (118), 110 states have call predecessors, (118), 101 states have return successors, (194), 99 states have call predecessors, (194), 118 states have call successors, (194) [2024-11-28 02:11:01,233 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 887 states to 887 states and 1104 transitions. [2024-11-28 02:11:01,235 INFO L78 Accepts]: Start accepts. Automaton has 887 states and 1104 transitions. Word has length 140 [2024-11-28 02:11:01,236 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:11:01,236 INFO L471 AbstractCegarLoop]: Abstraction has 887 states and 1104 transitions. [2024-11-28 02:11:01,236 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 18 states, 18 states have (on average 8.833333333333334) internal successors, (159), 16 states have internal predecessors, (159), 10 states have call successors, (27), 8 states have call predecessors, (27), 14 states have return successors, (30), 9 states have call predecessors, (30), 10 states have call successors, (30) [2024-11-28 02:11:01,237 INFO L276 IsEmpty]: Start isEmpty. Operand 887 states and 1104 transitions. [2024-11-28 02:11:01,243 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 137 [2024-11-28 02:11:01,244 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:11:01,244 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:11:01,257 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2024-11-28 02:11:01,448 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-28 02:11:01,449 INFO L396 AbstractCegarLoop]: === Iteration 14 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:11:01,449 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:11:01,450 INFO L85 PathProgramCache]: Analyzing trace with hash 1031012332, now seen corresponding path program 2 times [2024-11-28 02:11:01,450 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:11:01,450 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1840369519] [2024-11-28 02:11:01,450 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-11-28 02:11:01,450 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:11:01,494 INFO L229 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-11-28 02:11:01,496 INFO L230 tOrderPrioritization]: Conjunction of SSA is unsat [2024-11-28 02:11:01,905 INFO L134 CoverageAnalysis]: Checked inductivity of 95 backedges. 54 proven. 12 refuted. 0 times theorem prover too weak. 29 trivial. 0 not checked. [2024-11-28 02:11:01,907 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:11:01,907 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1840369519] [2024-11-28 02:11:01,907 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1840369519] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-28 02:11:01,907 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [156469607] [2024-11-28 02:11:01,907 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-11-28 02:11:01,907 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-28 02:11:01,908 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 [2024-11-28 02:11:01,910 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-28 02:11:01,914 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-11-28 02:11:02,068 INFO L229 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-11-28 02:11:02,068 INFO L230 tOrderPrioritization]: Conjunction of SSA is unsat [2024-11-28 02:11:02,073 INFO L256 TraceCheckSpWp]: Trace formula consists of 425 conjuncts, 12 conjuncts are in the unsatisfiable core [2024-11-28 02:11:02,077 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-11-28 02:11:02,276 INFO L134 CoverageAnalysis]: Checked inductivity of 95 backedges. 81 proven. 0 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-11-28 02:11:02,277 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-11-28 02:11:02,277 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [156469607] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:11:02,277 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-11-28 02:11:02,277 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [8] total 12 [2024-11-28 02:11:02,277 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1573134937] [2024-11-28 02:11:02,278 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:11:02,278 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-11-28 02:11:02,278 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:11:02,279 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-11-28 02:11:02,279 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=31, Invalid=101, Unknown=0, NotChecked=0, Total=132 [2024-11-28 02:11:02,280 INFO L87 Difference]: Start difference. First operand 887 states and 1104 transitions. Second operand has 6 states, 6 states have (on average 16.833333333333332) internal successors, (101), 6 states have internal predecessors, (101), 3 states have call successors, (13), 4 states have call predecessors, (13), 3 states have return successors, (13), 3 states have call predecessors, (13), 3 states have call successors, (13) [2024-11-28 02:11:02,715 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:11:02,715 INFO L93 Difference]: Finished difference Result 2223 states and 2818 transitions. [2024-11-28 02:11:02,715 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-11-28 02:11:02,716 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 16.833333333333332) internal successors, (101), 6 states have internal predecessors, (101), 3 states have call successors, (13), 4 states have call predecessors, (13), 3 states have return successors, (13), 3 states have call predecessors, (13), 3 states have call successors, (13) Word has length 136 [2024-11-28 02:11:02,716 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:11:02,726 INFO L225 Difference]: With dead ends: 2223 [2024-11-28 02:11:02,727 INFO L226 Difference]: Without dead ends: 1470 [2024-11-28 02:11:02,730 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 147 GetRequests, 133 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 37 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=51, Invalid=189, Unknown=0, NotChecked=0, Total=240 [2024-11-28 02:11:02,731 INFO L435 NwaCegarLoop]: 145 mSDtfsCounter, 109 mSDsluCounter, 463 mSDsCounter, 0 mSdLazyCounter, 121 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 109 SdHoareTripleChecker+Valid, 608 SdHoareTripleChecker+Invalid, 123 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 121 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-11-28 02:11:02,732 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [109 Valid, 608 Invalid, 123 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 121 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-11-28 02:11:02,734 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1470 states. [2024-11-28 02:11:02,917 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1470 to 1446. [2024-11-28 02:11:02,921 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1446 states, 1090 states have (on average 1.1798165137614678) internal successors, (1286), 1141 states have internal predecessors, (1286), 186 states have call successors, (186), 176 states have call predecessors, (186), 169 states have return successors, (318), 163 states have call predecessors, (318), 186 states have call successors, (318) [2024-11-28 02:11:02,938 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1446 states to 1446 states and 1790 transitions. [2024-11-28 02:11:02,940 INFO L78 Accepts]: Start accepts. Automaton has 1446 states and 1790 transitions. Word has length 136 [2024-11-28 02:11:02,941 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:11:02,941 INFO L471 AbstractCegarLoop]: Abstraction has 1446 states and 1790 transitions. [2024-11-28 02:11:02,941 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 16.833333333333332) internal successors, (101), 6 states have internal predecessors, (101), 3 states have call successors, (13), 4 states have call predecessors, (13), 3 states have return successors, (13), 3 states have call predecessors, (13), 3 states have call successors, (13) [2024-11-28 02:11:02,942 INFO L276 IsEmpty]: Start isEmpty. Operand 1446 states and 1790 transitions. [2024-11-28 02:11:02,952 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 141 [2024-11-28 02:11:02,952 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:11:02,952 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:11:02,964 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-11-28 02:11:03,153 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13,6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-28 02:11:03,154 INFO L396 AbstractCegarLoop]: === Iteration 15 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:11:03,157 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:11:03,158 INFO L85 PathProgramCache]: Analyzing trace with hash 228846740, now seen corresponding path program 1 times [2024-11-28 02:11:03,158 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:11:03,158 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1542781546] [2024-11-28 02:11:03,158 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:11:03,158 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:11:03,192 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:11:03,532 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 48 proven. 17 refuted. 0 times theorem prover too weak. 34 trivial. 0 not checked. [2024-11-28 02:11:03,533 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:11:03,533 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1542781546] [2024-11-28 02:11:03,533 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1542781546] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-28 02:11:03,533 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1482267879] [2024-11-28 02:11:03,533 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:11:03,534 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-28 02:11:03,534 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 [2024-11-28 02:11:03,536 INFO L229 MonitoredProcess]: Starting monitored process 7 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-28 02:11:03,560 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-11-28 02:11:03,721 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:11:03,727 INFO L256 TraceCheckSpWp]: Trace formula consists of 432 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-11-28 02:11:03,731 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-11-28 02:11:03,944 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 68 proven. 21 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-11-28 02:11:03,944 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2024-11-28 02:11:04,448 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 50 proven. 15 refuted. 0 times theorem prover too weak. 34 trivial. 0 not checked. [2024-11-28 02:11:04,448 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1482267879] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-28 02:11:04,448 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-28 02:11:04,448 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 7, 8] total 13 [2024-11-28 02:11:04,449 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1527933741] [2024-11-28 02:11:04,449 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-28 02:11:04,450 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2024-11-28 02:11:04,450 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:11:04,451 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2024-11-28 02:11:04,451 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=57, Invalid=99, Unknown=0, NotChecked=0, Total=156 [2024-11-28 02:11:04,452 INFO L87 Difference]: Start difference. First operand 1446 states and 1790 transitions. Second operand has 13 states, 13 states have (on average 12.307692307692308) internal successors, (160), 12 states have internal predecessors, (160), 7 states have call successors, (30), 8 states have call predecessors, (30), 8 states have return successors, (28), 7 states have call predecessors, (28), 7 states have call successors, (28) [2024-11-28 02:11:05,265 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:11:05,266 INFO L93 Difference]: Finished difference Result 3266 states and 4112 transitions. [2024-11-28 02:11:05,266 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2024-11-28 02:11:05,267 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 13 states have (on average 12.307692307692308) internal successors, (160), 12 states have internal predecessors, (160), 7 states have call successors, (30), 8 states have call predecessors, (30), 8 states have return successors, (28), 7 states have call predecessors, (28), 7 states have call successors, (28) Word has length 140 [2024-11-28 02:11:05,267 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:11:05,283 INFO L225 Difference]: With dead ends: 3266 [2024-11-28 02:11:05,283 INFO L226 Difference]: Without dead ends: 1951 [2024-11-28 02:11:05,291 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 300 GetRequests, 279 SyntacticMatches, 3 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 59 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=141, Invalid=239, Unknown=0, NotChecked=0, Total=380 [2024-11-28 02:11:05,291 INFO L435 NwaCegarLoop]: 97 mSDtfsCounter, 329 mSDsluCounter, 343 mSDsCounter, 0 mSdLazyCounter, 308 mSolverCounterSat, 107 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 330 SdHoareTripleChecker+Valid, 440 SdHoareTripleChecker+Invalid, 415 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 107 IncrementalHoareTripleChecker+Valid, 308 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-11-28 02:11:05,292 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [330 Valid, 440 Invalid, 415 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [107 Valid, 308 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-11-28 02:11:05,295 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1951 states. [2024-11-28 02:11:05,538 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1951 to 1831. [2024-11-28 02:11:05,542 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1831 states, 1376 states have (on average 1.180232558139535) internal successors, (1624), 1443 states have internal predecessors, (1624), 235 states have call successors, (235), 218 states have call predecessors, (235), 219 states have return successors, (373), 208 states have call predecessors, (373), 235 states have call successors, (373) [2024-11-28 02:11:05,555 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1831 states to 1831 states and 2232 transitions. [2024-11-28 02:11:05,558 INFO L78 Accepts]: Start accepts. Automaton has 1831 states and 2232 transitions. Word has length 140 [2024-11-28 02:11:05,558 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:11:05,559 INFO L471 AbstractCegarLoop]: Abstraction has 1831 states and 2232 transitions. [2024-11-28 02:11:05,559 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 13 states have (on average 12.307692307692308) internal successors, (160), 12 states have internal predecessors, (160), 7 states have call successors, (30), 8 states have call predecessors, (30), 8 states have return successors, (28), 7 states have call predecessors, (28), 7 states have call successors, (28) [2024-11-28 02:11:05,559 INFO L276 IsEmpty]: Start isEmpty. Operand 1831 states and 2232 transitions. [2024-11-28 02:11:05,565 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 137 [2024-11-28 02:11:05,565 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:11:05,565 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:11:05,577 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-11-28 02:11:05,765 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 7 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-11-28 02:11:05,766 INFO L396 AbstractCegarLoop]: === Iteration 16 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:11:05,766 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:11:05,766 INFO L85 PathProgramCache]: Analyzing trace with hash 976619434, now seen corresponding path program 1 times [2024-11-28 02:11:05,767 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:11:05,767 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [872615244] [2024-11-28 02:11:05,767 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:11:05,767 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:11:05,792 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:11:05,949 INFO L134 CoverageAnalysis]: Checked inductivity of 95 backedges. 42 proven. 9 refuted. 0 times theorem prover too weak. 44 trivial. 0 not checked. [2024-11-28 02:11:05,950 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:11:05,951 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [872615244] [2024-11-28 02:11:05,951 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [872615244] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-28 02:11:05,951 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1793178995] [2024-11-28 02:11:05,951 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-11-28 02:11:05,951 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-28 02:11:05,951 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 [2024-11-28 02:11:05,954 INFO L229 MonitoredProcess]: Starting monitored process 8 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-28 02:11:05,957 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-11-28 02:11:06,114 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-11-28 02:11:06,116 INFO L256 TraceCheckSpWp]: Trace formula consists of 426 conjuncts, 5 conjuncts are in the unsatisfiable core [2024-11-28 02:11:06,119 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-11-28 02:11:06,167 INFO L134 CoverageAnalysis]: Checked inductivity of 95 backedges. 62 proven. 0 refuted. 0 times theorem prover too weak. 33 trivial. 0 not checked. [2024-11-28 02:11:06,168 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-11-28 02:11:06,168 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1793178995] provided 1 perfect and 0 imperfect interpolant sequences [2024-11-28 02:11:06,168 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-11-28 02:11:06,168 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [7] total 10 [2024-11-28 02:11:06,168 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1238368250] [2024-11-28 02:11:06,168 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-11-28 02:11:06,169 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-11-28 02:11:06,169 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:11:06,170 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-11-28 02:11:06,170 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=21, Invalid=69, Unknown=0, NotChecked=0, Total=90 [2024-11-28 02:11:06,170 INFO L87 Difference]: Start difference. First operand 1831 states and 2232 transitions. Second operand has 5 states, 5 states have (on average 17.8) internal successors, (89), 5 states have internal predecessors, (89), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (10), 2 states have call predecessors, (10), 2 states have call successors, (10) [2024-11-28 02:11:06,306 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:11:06,306 INFO L93 Difference]: Finished difference Result 2409 states and 2903 transitions. [2024-11-28 02:11:06,307 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-11-28 02:11:06,307 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 17.8) internal successors, (89), 5 states have internal predecessors, (89), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (10), 2 states have call predecessors, (10), 2 states have call successors, (10) Word has length 136 [2024-11-28 02:11:06,307 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:11:06,314 INFO L225 Difference]: With dead ends: 2409 [2024-11-28 02:11:06,315 INFO L226 Difference]: Without dead ends: 670 [2024-11-28 02:11:06,321 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 144 GetRequests, 136 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 9 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=21, Invalid=69, Unknown=0, NotChecked=0, Total=90 [2024-11-28 02:11:06,322 INFO L435 NwaCegarLoop]: 96 mSDtfsCounter, 0 mSDsluCounter, 275 mSDsCounter, 0 mSdLazyCounter, 22 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 371 SdHoareTripleChecker+Invalid, 22 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 22 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-11-28 02:11:06,322 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 371 Invalid, 22 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 22 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-11-28 02:11:06,324 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 670 states. [2024-11-28 02:11:06,396 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 670 to 637. [2024-11-28 02:11:06,398 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 637 states, 479 states have (on average 1.139874739039666) internal successors, (546), 506 states have internal predecessors, (546), 80 states have call successors, (80), 72 states have call predecessors, (80), 77 states have return successors, (97), 74 states have call predecessors, (97), 80 states have call successors, (97) [2024-11-28 02:11:06,402 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 637 states to 637 states and 723 transitions. [2024-11-28 02:11:06,405 INFO L78 Accepts]: Start accepts. Automaton has 637 states and 723 transitions. Word has length 136 [2024-11-28 02:11:06,406 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:11:06,408 INFO L471 AbstractCegarLoop]: Abstraction has 637 states and 723 transitions. [2024-11-28 02:11:06,408 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 17.8) internal successors, (89), 5 states have internal predecessors, (89), 2 states have call successors, (10), 2 states have call predecessors, (10), 2 states have return successors, (10), 2 states have call predecessors, (10), 2 states have call successors, (10) [2024-11-28 02:11:06,409 INFO L276 IsEmpty]: Start isEmpty. Operand 637 states and 723 transitions. [2024-11-28 02:11:06,412 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 141 [2024-11-28 02:11:06,412 INFO L210 NwaCegarLoop]: Found error trace [2024-11-28 02:11:06,412 INFO L218 NwaCegarLoop]: trace histogram [4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:11:06,424 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-11-28 02:11:06,613 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 8 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2024-11-28 02:11:06,613 INFO L396 AbstractCegarLoop]: === Iteration 17 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-11-28 02:11:06,614 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-11-28 02:11:06,614 INFO L85 PathProgramCache]: Analyzing trace with hash -1157356654, now seen corresponding path program 3 times [2024-11-28 02:11:06,614 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-11-28 02:11:06,614 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1005448666] [2024-11-28 02:11:06,615 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-11-28 02:11:06,615 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-11-28 02:11:06,648 INFO L229 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-11-28 02:11:06,649 INFO L230 tOrderPrioritization]: Conjunction of SSA is unsat [2024-11-28 02:11:07,368 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 20 proven. 40 refuted. 0 times theorem prover too weak. 39 trivial. 0 not checked. [2024-11-28 02:11:07,369 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-11-28 02:11:07,369 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1005448666] [2024-11-28 02:11:07,369 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1005448666] provided 0 perfect and 1 imperfect interpolant sequences [2024-11-28 02:11:07,369 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [88181563] [2024-11-28 02:11:07,369 INFO L95 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-11-28 02:11:07,369 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-11-28 02:11:07,370 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 [2024-11-28 02:11:07,372 INFO L229 MonitoredProcess]: Starting monitored process 9 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-11-28 02:11:07,379 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-11-28 02:11:07,542 INFO L229 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-11-28 02:11:07,542 INFO L230 tOrderPrioritization]: Conjunction of SSA is unsat [2024-11-28 02:11:07,545 INFO L256 TraceCheckSpWp]: Trace formula consists of 404 conjuncts, 17 conjuncts are in the unsatisfiable core [2024-11-28 02:11:07,549 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-11-28 02:11:07,769 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 63 proven. 26 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-11-28 02:11:07,770 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2024-11-28 02:11:08,274 INFO L134 CoverageAnalysis]: Checked inductivity of 99 backedges. 45 proven. 20 refuted. 0 times theorem prover too weak. 34 trivial. 0 not checked. [2024-11-28 02:11:08,274 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [88181563] provided 0 perfect and 2 imperfect interpolant sequences [2024-11-28 02:11:08,274 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-11-28 02:11:08,275 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 9, 11] total 22 [2024-11-28 02:11:08,275 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1449284250] [2024-11-28 02:11:08,275 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-11-28 02:11:08,276 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-11-28 02:11:08,276 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-11-28 02:11:08,277 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-11-28 02:11:08,278 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=105, Invalid=357, Unknown=0, NotChecked=0, Total=462 [2024-11-28 02:11:08,278 INFO L87 Difference]: Start difference. First operand 637 states and 723 transitions. Second operand has 22 states, 22 states have (on average 8.863636363636363) internal successors, (195), 19 states have internal predecessors, (195), 11 states have call successors, (33), 10 states have call predecessors, (33), 11 states have return successors, (32), 10 states have call predecessors, (32), 10 states have call successors, (32) [2024-11-28 02:11:08,955 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-11-28 02:11:08,955 INFO L93 Difference]: Finished difference Result 989 states and 1132 transitions. [2024-11-28 02:11:08,956 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2024-11-28 02:11:08,956 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 22 states have (on average 8.863636363636363) internal successors, (195), 19 states have internal predecessors, (195), 11 states have call successors, (33), 10 states have call predecessors, (33), 11 states have return successors, (32), 10 states have call predecessors, (32), 10 states have call successors, (32) Word has length 140 [2024-11-28 02:11:08,957 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-11-28 02:11:08,959 INFO L225 Difference]: With dead ends: 989 [2024-11-28 02:11:08,960 INFO L226 Difference]: Without dead ends: 0 [2024-11-28 02:11:08,962 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 308 GetRequests, 276 SyntacticMatches, 4 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 232 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=218, Invalid=652, Unknown=0, NotChecked=0, Total=870 [2024-11-28 02:11:08,963 INFO L435 NwaCegarLoop]: 85 mSDtfsCounter, 470 mSDsluCounter, 402 mSDsCounter, 0 mSdLazyCounter, 389 mSolverCounterSat, 144 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 472 SdHoareTripleChecker+Valid, 487 SdHoareTripleChecker+Invalid, 533 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 144 IncrementalHoareTripleChecker+Valid, 389 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-11-28 02:11:08,964 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [472 Valid, 487 Invalid, 533 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [144 Valid, 389 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-11-28 02:11:08,964 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-11-28 02:11:08,964 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-11-28 02:11:08,965 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-11-28 02:11:08,965 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-11-28 02:11:08,967 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 140 [2024-11-28 02:11:08,967 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-11-28 02:11:08,967 INFO L471 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-11-28 02:11:08,968 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 22 states have (on average 8.863636363636363) internal successors, (195), 19 states have internal predecessors, (195), 11 states have call successors, (33), 10 states have call predecessors, (33), 11 states have return successors, (32), 10 states have call predecessors, (32), 10 states have call successors, (32) [2024-11-28 02:11:08,968 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-11-28 02:11:08,968 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-11-28 02:11:08,971 INFO L782 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-11-28 02:11:08,984 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2024-11-28 02:11:09,176 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 9 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2024-11-28 02:11:09,179 INFO L422 BasicCegarLoop]: Path program histogram: [3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-11-28 02:11:09,181 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-11-28 02:11:18,000 INFO L170 ceAbstractionStarter]: Computing trace abstraction results [2024-11-28 02:11:18,016 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 28.11 02:11:18 BoogieIcfgContainer [2024-11-28 02:11:18,016 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-11-28 02:11:18,017 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-11-28 02:11:18,017 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-11-28 02:11:18,017 INFO L274 PluginConnector]: Witness Printer initialized [2024-11-28 02:11:18,018 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 28.11 02:10:50" (3/4) ... [2024-11-28 02:11:18,021 INFO L146 WitnessPrinter]: Generating witness for correct program [2024-11-28 02:11:18,027 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2024-11-28 02:11:18,028 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2024-11-28 02:11:18,028 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2024-11-28 02:11:18,028 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2024-11-28 02:11:18,028 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2024-11-28 02:11:18,028 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2024-11-28 02:11:18,028 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2024-11-28 02:11:18,028 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2024-11-28 02:11:18,036 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 20 nodes and edges [2024-11-28 02:11:18,037 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2024-11-28 02:11:18,037 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2024-11-28 02:11:18,038 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-28 02:11:18,038 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-11-28 02:11:18,151 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/witness.graphml [2024-11-28 02:11:18,152 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/witness.yml [2024-11-28 02:11:18,152 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-11-28 02:11:18,153 INFO L158 Benchmark]: Toolchain (without parser) took 29200.34ms. Allocated memory was 117.4MB in the beginning and 302.0MB in the end (delta: 184.5MB). Free memory was 91.7MB in the beginning and 108.1MB in the end (delta: -16.4MB). Peak memory consumption was 169.9MB. Max. memory is 16.1GB. [2024-11-28 02:11:18,153 INFO L158 Benchmark]: CDTParser took 0.49ms. Allocated memory is still 117.4MB. Free memory was 72.3MB in the beginning and 72.2MB in the end (delta: 146.8kB). There was no memory consumed. Max. memory is 16.1GB. [2024-11-28 02:11:18,154 INFO L158 Benchmark]: CACSL2BoogieTranslator took 597.41ms. Allocated memory is still 117.4MB. Free memory was 91.7MB in the beginning and 72.4MB in the end (delta: 19.2MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-11-28 02:11:18,154 INFO L158 Benchmark]: Boogie Procedure Inliner took 53.73ms. Allocated memory is still 117.4MB. Free memory was 72.2MB in the beginning and 70.4MB in the end (delta: 1.8MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2024-11-28 02:11:18,155 INFO L158 Benchmark]: Boogie Preprocessor took 43.27ms. Allocated memory is still 117.4MB. Free memory was 70.4MB in the beginning and 68.4MB in the end (delta: 2.0MB). There was no memory consumed. Max. memory is 16.1GB. [2024-11-28 02:11:18,155 INFO L158 Benchmark]: RCFGBuilder took 524.48ms. Allocated memory is still 117.4MB. Free memory was 68.4MB in the beginning and 51.1MB in the end (delta: 17.3MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-11-28 02:11:18,155 INFO L158 Benchmark]: TraceAbstraction took 27834.97ms. Allocated memory was 117.4MB in the beginning and 302.0MB in the end (delta: 184.5MB). Free memory was 50.6MB in the beginning and 113.0MB in the end (delta: -62.4MB). Peak memory consumption was 136.6MB. Max. memory is 16.1GB. [2024-11-28 02:11:18,156 INFO L158 Benchmark]: Witness Printer took 135.20ms. Allocated memory is still 302.0MB. Free memory was 113.0MB in the beginning and 108.1MB in the end (delta: 4.9MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2024-11-28 02:11:18,158 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.49ms. Allocated memory is still 117.4MB. Free memory was 72.3MB in the beginning and 72.2MB in the end (delta: 146.8kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 597.41ms. Allocated memory is still 117.4MB. Free memory was 91.7MB in the beginning and 72.4MB in the end (delta: 19.2MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 53.73ms. Allocated memory is still 117.4MB. Free memory was 72.2MB in the beginning and 70.4MB in the end (delta: 1.8MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Preprocessor took 43.27ms. Allocated memory is still 117.4MB. Free memory was 70.4MB in the beginning and 68.4MB in the end (delta: 2.0MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 524.48ms. Allocated memory is still 117.4MB. Free memory was 68.4MB in the beginning and 51.1MB in the end (delta: 17.3MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 27834.97ms. Allocated memory was 117.4MB in the beginning and 302.0MB in the end (delta: 184.5MB). Free memory was 50.6MB in the beginning and 113.0MB in the end (delta: -62.4MB). Peak memory consumption was 136.6MB. Max. memory is 16.1GB. * Witness Printer took 135.20ms. Allocated memory is still 302.0MB. Free memory was 113.0MB in the beginning and 108.1MB in the end (delta: 4.9MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [58] - GenericResultAtLocation [Line: 300]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [300] - GenericResultAtLocation [Line: 370]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [370] - GenericResultAtLocation [Line: 409]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [409] - GenericResultAtLocation [Line: 509]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [509] - GenericResultAtLocation [Line: 544]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [544] - GenericResultAtLocation [Line: 910]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [910] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 98 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 18.9s, OverallIterations: 17, TraceHistogramMax: 4, PathProgramHistogramMax: 3, EmptinessCheckTime: 0.1s, AutomataDifference: 5.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 2302 SdHoareTripleChecker+Valid, 2.8s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 2286 mSDsluCounter, 6223 SdHoareTripleChecker+Invalid, 2.3s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 4242 mSDsCounter, 506 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1794 IncrementalHoareTripleChecker+Invalid, 2300 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 506 mSolverCounterUnsat, 1981 mSDtfsCounter, 1794 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 1696 GetRequests, 1546 SyntacticMatches, 12 SemanticMatches, 138 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 493 ImplicationChecksByTransitivity, 1.7s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1831occurred in iteration=15, InterpolantAutomatonStates: 108, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 1.6s AutomataMinimizationTime, 17 MinimizatonAttempts, 370 StatesRemovedByMinimization, 13 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.3s SsaConstructionTime, 0.9s SatisfiabilityAnalysisTime, 7.8s InterpolantComputationTime, 2456 NumberOfCodeBlocks, 2430 NumberOfCodeBlocksAsserted, 31 NumberOfCheckSat, 2942 ConstructedInterpolants, 0 QuantifiedInterpolants, 6329 SizeOfPredicates, 5 NumberOfNonLiveVariables, 3213 ConjunctsInSsa, 79 ConjunctsInUnsatCore, 29 InterpolantComputations, 14 PerfectInterpolantSequences, 1462/1667 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available, ConComCheckerStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 421]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 313]: Location Invariant Derived location invariant: 0 - InvariantResult [Line: 314]: Loop Invariant Derived loop invariant: (((((((((methAndRunningLastTime == 0) && (2 == waterLevel)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) || ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 <= methaneLevelCritical)) && (2 == waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0))) || ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1))) || ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (splverifierCounter == 0)) && (0 == systemActive))) || ((((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 <= methaneLevelCritical)) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1))) RESULT: Ultimate proved your program to be correct! [2024-11-28 02:11:18,182 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_18191e98-c383-4384-b96e-d2d51dcba0a1/bin/uautomizer-verify-aQ6SnzHsRB/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE