./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec2_product40.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version d790fecc Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/plugins/org.eclipse.equinox.launcher_1.6.800.v20240513-1750.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec2_product40.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1 --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 1b223e2286b1d2d2d4710f5bd529ee4610cfb9619424734c12c9aa00d3c99444 --- Real Ultimate output --- This is Ultimate 0.3.0-dev-d790fec [2024-12-02 12:20:52,151 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-12-02 12:20:52,207 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-12-02 12:20:52,212 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-12-02 12:20:52,212 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-12-02 12:20:52,235 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-12-02 12:20:52,236 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-12-02 12:20:52,236 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-12-02 12:20:52,236 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-12-02 12:20:52,236 INFO L153 SettingsManager]: * Use memory slicer=true [2024-12-02 12:20:52,237 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-12-02 12:20:52,237 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-12-02 12:20:52,237 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-12-02 12:20:52,237 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-12-02 12:20:52,237 INFO L153 SettingsManager]: * Use SBE=true [2024-12-02 12:20:52,237 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-12-02 12:20:52,237 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * sizeof long=4 [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * sizeof long double=12 [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * Behaviour of calls to undefined functions=OVERAPPROXIMATE_BEHAVIOUR [2024-12-02 12:20:52,238 INFO L153 SettingsManager]: * Use constant arrays=true [2024-12-02 12:20:52,239 INFO L151 SettingsManager]: Preferences of IcfgBuilder differ from their defaults: [2024-12-02 12:20:52,239 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-12-02 12:20:52,239 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-12-02 12:20:52,239 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-12-02 12:20:52,239 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-12-02 12:20:52,239 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-12-02 12:20:52,239 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-12-02 12:20:52,239 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-12-02 12:20:52,239 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-12-02 12:20:52,239 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-12-02 12:20:52,240 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-12-02 12:20:52,240 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-12-02 12:20:52,240 INFO L153 SettingsManager]: * Compute procedure contracts=false [2024-12-02 12:20:52,240 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-12-02 12:20:52,240 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-12-02 12:20:52,240 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-12-02 12:20:52,240 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-12-02 12:20:52,240 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-12-02 12:20:52,240 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-12-02 12:20:52,240 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-12-02 12:20:52,241 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 1b223e2286b1d2d2d4710f5bd529ee4610cfb9619424734c12c9aa00d3c99444 [2024-12-02 12:20:52,476 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-12-02 12:20:52,484 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-12-02 12:20:52,486 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-12-02 12:20:52,488 INFO L270 PluginConnector]: Initializing CDTParser... [2024-12-02 12:20:52,488 INFO L274 PluginConnector]: CDTParser initialized [2024-12-02 12:20:52,489 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/../../sv-benchmarks/c/product-lines/minepump_spec2_product40.cil.c [2024-12-02 12:20:55,171 INFO L533 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/data/90bb5c6d5/4fc6666c2f1241c48d9cc57829cb644c/FLAG58af4609e [2024-12-02 12:20:55,385 INFO L384 CDTParser]: Found 1 translation units. [2024-12-02 12:20:55,386 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/sv-benchmarks/c/product-lines/minepump_spec2_product40.cil.c [2024-12-02 12:20:55,395 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/data/90bb5c6d5/4fc6666c2f1241c48d9cc57829cb644c/FLAG58af4609e [2024-12-02 12:20:55,409 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/data/90bb5c6d5/4fc6666c2f1241c48d9cc57829cb644c [2024-12-02 12:20:55,411 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-12-02 12:20:55,412 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-12-02 12:20:55,413 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-12-02 12:20:55,414 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-12-02 12:20:55,418 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-12-02 12:20:55,419 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,420 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6752e498 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55, skipping insertion in model container [2024-12-02 12:20:55,420 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,448 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-12-02 12:20:55,682 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/sv-benchmarks/c/product-lines/minepump_spec2_product40.cil.c[17002,17015] [2024-12-02 12:20:55,694 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-12-02 12:20:55,704 INFO L200 MainTranslator]: Completed pre-run [2024-12-02 12:20:55,712 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [49] [2024-12-02 12:20:55,713 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [91] [2024-12-02 12:20:55,713 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [191] [2024-12-02 12:20:55,714 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [264] [2024-12-02 12:20:55,714 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [468] [2024-12-02 12:20:55,714 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [834] [2024-12-02 12:20:55,714 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [843] [2024-12-02 12:20:55,714 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [943] [2024-12-02 12:20:55,759 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/sv-benchmarks/c/product-lines/minepump_spec2_product40.cil.c[17002,17015] [2024-12-02 12:20:55,763 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-12-02 12:20:55,781 INFO L204 MainTranslator]: Completed translation [2024-12-02 12:20:55,782 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55 WrapperNode [2024-12-02 12:20:55,782 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-12-02 12:20:55,783 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-12-02 12:20:55,783 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-12-02 12:20:55,783 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-12-02 12:20:55,789 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,800 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,819 INFO L138 Inliner]: procedures = 56, calls = 101, calls flagged for inlining = 23, calls inlined = 20, statements flattened = 199 [2024-12-02 12:20:55,819 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-12-02 12:20:55,819 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-12-02 12:20:55,819 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-12-02 12:20:55,820 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-12-02 12:20:55,828 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,828 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,830 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,842 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-12-02 12:20:55,843 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,843 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,847 INFO L184 PluginConnector]: Executing the observer ReplaceArrayAssignments from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,848 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,851 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,852 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,853 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,855 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-12-02 12:20:55,856 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-12-02 12:20:55,856 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-12-02 12:20:55,856 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-12-02 12:20:55,857 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (1/1) ... [2024-12-02 12:20:55,863 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-12-02 12:20:55,874 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 12:20:55,885 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-12-02 12:20:55,887 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-12-02 12:20:55,912 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-12-02 12:20:55,912 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2024-12-02 12:20:55,912 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2024-12-02 12:20:55,912 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2024-12-02 12:20:55,912 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2024-12-02 12:20:55,912 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2024-12-02 12:20:55,912 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2024-12-02 12:20:55,912 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2024-12-02 12:20:55,912 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2024-12-02 12:20:55,912 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2024-12-02 12:20:55,912 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2024-12-02 12:20:55,912 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2024-12-02 12:20:55,913 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2024-12-02 12:20:55,913 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2024-12-02 12:20:55,913 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2024-12-02 12:20:55,913 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-12-02 12:20:55,913 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2024-12-02 12:20:55,913 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2024-12-02 12:20:55,913 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-12-02 12:20:55,913 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-12-02 12:20:55,980 INFO L234 CfgBuilder]: Building ICFG [2024-12-02 12:20:55,981 INFO L260 CfgBuilder]: Building CFG for each procedure with an implementation [2024-12-02 12:20:56,203 INFO L? ?]: Removed 40 outVars from TransFormulas that were not future-live. [2024-12-02 12:20:56,203 INFO L283 CfgBuilder]: Performing block encoding [2024-12-02 12:20:56,213 INFO L307 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-12-02 12:20:56,213 INFO L312 CfgBuilder]: Removed 4 assume(true) statements. [2024-12-02 12:20:56,213 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 12:20:56 BoogieIcfgContainer [2024-12-02 12:20:56,213 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-12-02 12:20:56,216 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-12-02 12:20:56,216 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-12-02 12:20:56,220 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-12-02 12:20:56,220 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 02.12 12:20:55" (1/3) ... [2024-12-02 12:20:56,221 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@62c222fd and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 02.12 12:20:56, skipping insertion in model container [2024-12-02 12:20:56,221 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 12:20:55" (2/3) ... [2024-12-02 12:20:56,221 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@62c222fd and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 02.12 12:20:56, skipping insertion in model container [2024-12-02 12:20:56,221 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 12:20:56" (3/3) ... [2024-12-02 12:20:56,222 INFO L128 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product40.cil.c [2024-12-02 12:20:56,237 INFO L216 ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-12-02 12:20:56,238 INFO L151 ceAbstractionStarter]: Applying trace abstraction to ICFG minepump_spec2_product40.cil.c that has 9 procedures, 93 locations, 1 initial locations, 2 loop locations, and 1 error locations. [2024-12-02 12:20:56,286 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-12-02 12:20:56,296 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@346cf24f, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-12-02 12:20:56,296 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-12-02 12:20:56,300 INFO L276 IsEmpty]: Start isEmpty. Operand has 93 states, 69 states have (on average 1.391304347826087) internal successors, (96), 78 states have internal predecessors, (96), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) [2024-12-02 12:20:56,307 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-12-02 12:20:56,308 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:56,308 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:56,308 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:56,313 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:56,313 INFO L85 PathProgramCache]: Analyzing trace with hash -1381248210, now seen corresponding path program 1 times [2024-12-02 12:20:56,320 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:56,320 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1957717999] [2024-12-02 12:20:56,321 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:56,321 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:56,408 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:56,458 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 12:20:56,460 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:56,460 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1957717999] [2024-12-02 12:20:56,461 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1957717999] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:56,461 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 12:20:56,461 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-12-02 12:20:56,462 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [161191616] [2024-12-02 12:20:56,462 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:56,465 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-12-02 12:20:56,465 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:56,480 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-12-02 12:20:56,480 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-12-02 12:20:56,482 INFO L87 Difference]: Start difference. First operand has 93 states, 69 states have (on average 1.391304347826087) internal successors, (96), 78 states have internal predecessors, (96), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 12:20:56,505 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:56,505 INFO L93 Difference]: Finished difference Result 177 states and 242 transitions. [2024-12-02 12:20:56,506 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-12-02 12:20:56,507 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-12-02 12:20:56,507 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:56,514 INFO L225 Difference]: With dead ends: 177 [2024-12-02 12:20:56,515 INFO L226 Difference]: Without dead ends: 84 [2024-12-02 12:20:56,517 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-12-02 12:20:56,520 INFO L435 NwaCegarLoop]: 118 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 118 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:56,521 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 118 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 12:20:56,534 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 84 states. [2024-12-02 12:20:56,549 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 84 to 84. [2024-12-02 12:20:56,550 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 84 states, 62 states have (on average 1.3225806451612903) internal successors, (82), 70 states have internal predecessors, (82), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2024-12-02 12:20:56,553 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 84 states to 84 states and 109 transitions. [2024-12-02 12:20:56,555 INFO L78 Accepts]: Start accepts. Automaton has 84 states and 109 transitions. Word has length 25 [2024-12-02 12:20:56,555 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:56,555 INFO L471 AbstractCegarLoop]: Abstraction has 84 states and 109 transitions. [2024-12-02 12:20:56,555 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 12:20:56,555 INFO L276 IsEmpty]: Start isEmpty. Operand 84 states and 109 transitions. [2024-12-02 12:20:56,556 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-12-02 12:20:56,556 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:56,557 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:56,557 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-12-02 12:20:56,557 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:56,557 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:56,557 INFO L85 PathProgramCache]: Analyzing trace with hash -1851324620, now seen corresponding path program 1 times [2024-12-02 12:20:56,557 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:56,557 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1703289860] [2024-12-02 12:20:56,558 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:56,558 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:56,580 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:56,666 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 12:20:56,666 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:56,666 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1703289860] [2024-12-02 12:20:56,666 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1703289860] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:56,666 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 12:20:56,666 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-12-02 12:20:56,666 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1952282358] [2024-12-02 12:20:56,666 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:56,667 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 12:20:56,667 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:56,668 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 12:20:56,668 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 12:20:56,668 INFO L87 Difference]: Start difference. First operand 84 states and 109 transitions. Second operand has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 12:20:56,684 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:56,684 INFO L93 Difference]: Finished difference Result 130 states and 168 transitions. [2024-12-02 12:20:56,684 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 12:20:56,684 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-12-02 12:20:56,685 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:56,686 INFO L225 Difference]: With dead ends: 130 [2024-12-02 12:20:56,686 INFO L226 Difference]: Without dead ends: 76 [2024-12-02 12:20:56,686 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 12:20:56,687 INFO L435 NwaCegarLoop]: 97 mSDtfsCounter, 17 mSDsluCounter, 76 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 21 SdHoareTripleChecker+Valid, 173 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:56,687 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [21 Valid, 173 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 12:20:56,688 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2024-12-02 12:20:56,695 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 76. [2024-12-02 12:20:56,695 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 57 states have (on average 1.3333333333333333) internal successors, (76), 65 states have internal predecessors, (76), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 8 states have call predecessors, (11), 11 states have call successors, (11) [2024-12-02 12:20:56,696 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 98 transitions. [2024-12-02 12:20:56,697 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 98 transitions. Word has length 25 [2024-12-02 12:20:56,697 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:56,697 INFO L471 AbstractCegarLoop]: Abstraction has 76 states and 98 transitions. [2024-12-02 12:20:56,697 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 12:20:56,697 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 98 transitions. [2024-12-02 12:20:56,698 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2024-12-02 12:20:56,698 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:56,698 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:56,699 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-12-02 12:20:56,699 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:56,699 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:56,699 INFO L85 PathProgramCache]: Analyzing trace with hash -1483191814, now seen corresponding path program 1 times [2024-12-02 12:20:56,699 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:56,699 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1167959655] [2024-12-02 12:20:56,700 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:56,700 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:56,717 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:56,828 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 12:20:56,828 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:56,828 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1167959655] [2024-12-02 12:20:56,828 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1167959655] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:56,828 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 12:20:56,828 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-12-02 12:20:56,828 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1367986055] [2024-12-02 12:20:56,828 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:56,829 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-12-02 12:20:56,829 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:56,829 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-12-02 12:20:56,829 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2024-12-02 12:20:56,830 INFO L87 Difference]: Start difference. First operand 76 states and 98 transitions. Second operand has 6 states, 6 states have (on average 4.5) internal successors, (27), 6 states have internal predecessors, (27), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 12:20:57,038 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:57,038 INFO L93 Difference]: Finished difference Result 252 states and 333 transitions. [2024-12-02 12:20:57,039 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-12-02 12:20:57,039 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 6 states have internal predecessors, (27), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 30 [2024-12-02 12:20:57,039 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:57,041 INFO L225 Difference]: With dead ends: 252 [2024-12-02 12:20:57,041 INFO L226 Difference]: Without dead ends: 184 [2024-12-02 12:20:57,042 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=20, Invalid=36, Unknown=0, NotChecked=0, Total=56 [2024-12-02 12:20:57,043 INFO L435 NwaCegarLoop]: 111 mSDtfsCounter, 222 mSDsluCounter, 279 mSDsCounter, 0 mSdLazyCounter, 90 mSolverCounterSat, 25 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 222 SdHoareTripleChecker+Valid, 390 SdHoareTripleChecker+Invalid, 115 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 90 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:57,043 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [222 Valid, 390 Invalid, 115 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 90 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-12-02 12:20:57,044 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 184 states. [2024-12-02 12:20:57,065 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 184 to 178. [2024-12-02 12:20:57,065 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 178 states, 131 states have (on average 1.3740458015267176) internal successors, (180), 149 states have internal predecessors, (180), 27 states have call successors, (27), 19 states have call predecessors, (27), 19 states have return successors, (28), 19 states have call predecessors, (28), 27 states have call successors, (28) [2024-12-02 12:20:57,067 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 178 states to 178 states and 235 transitions. [2024-12-02 12:20:57,067 INFO L78 Accepts]: Start accepts. Automaton has 178 states and 235 transitions. Word has length 30 [2024-12-02 12:20:57,067 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:57,068 INFO L471 AbstractCegarLoop]: Abstraction has 178 states and 235 transitions. [2024-12-02 12:20:57,068 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 6 states have internal predecessors, (27), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 12:20:57,068 INFO L276 IsEmpty]: Start isEmpty. Operand 178 states and 235 transitions. [2024-12-02 12:20:57,069 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-12-02 12:20:57,069 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:57,069 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:57,070 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-12-02 12:20:57,070 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:57,070 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:57,070 INFO L85 PathProgramCache]: Analyzing trace with hash -1457259952, now seen corresponding path program 1 times [2024-12-02 12:20:57,070 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:57,070 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [288301579] [2024-12-02 12:20:57,070 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:57,071 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:57,085 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:57,169 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 12:20:57,169 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:57,169 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [288301579] [2024-12-02 12:20:57,169 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [288301579] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:57,169 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 12:20:57,169 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-12-02 12:20:57,169 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [9991110] [2024-12-02 12:20:57,170 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:57,170 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-12-02 12:20:57,170 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:57,171 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-12-02 12:20:57,171 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-12-02 12:20:57,171 INFO L87 Difference]: Start difference. First operand 178 states and 235 transitions. Second operand has 5 states, 5 states have (on average 6.0) internal successors, (30), 5 states have internal predecessors, (30), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 12:20:57,240 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:57,240 INFO L93 Difference]: Finished difference Result 422 states and 571 transitions. [2024-12-02 12:20:57,241 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-12-02 12:20:57,241 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 5 states have internal predecessors, (30), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-12-02 12:20:57,241 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:57,243 INFO L225 Difference]: With dead ends: 422 [2024-12-02 12:20:57,244 INFO L226 Difference]: Without dead ends: 252 [2024-12-02 12:20:57,245 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-12-02 12:20:57,245 INFO L435 NwaCegarLoop]: 95 mSDtfsCounter, 49 mSDsluCounter, 249 mSDsCounter, 0 mSdLazyCounter, 30 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 49 SdHoareTripleChecker+Valid, 344 SdHoareTripleChecker+Invalid, 39 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 30 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:57,246 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [49 Valid, 344 Invalid, 39 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 30 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 12:20:57,247 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 252 states. [2024-12-02 12:20:57,275 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 252 to 250. [2024-12-02 12:20:57,276 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 250 states, 185 states have (on average 1.3135135135135134) internal successors, (243), 202 states have internal predecessors, (243), 34 states have call successors, (34), 30 states have call predecessors, (34), 30 states have return successors, (44), 31 states have call predecessors, (44), 34 states have call successors, (44) [2024-12-02 12:20:57,278 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 250 states to 250 states and 321 transitions. [2024-12-02 12:20:57,279 INFO L78 Accepts]: Start accepts. Automaton has 250 states and 321 transitions. Word has length 33 [2024-12-02 12:20:57,279 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:57,279 INFO L471 AbstractCegarLoop]: Abstraction has 250 states and 321 transitions. [2024-12-02 12:20:57,279 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 5 states have internal predecessors, (30), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 12:20:57,279 INFO L276 IsEmpty]: Start isEmpty. Operand 250 states and 321 transitions. [2024-12-02 12:20:57,280 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2024-12-02 12:20:57,280 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:57,281 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:57,281 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-12-02 12:20:57,281 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:57,281 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:57,281 INFO L85 PathProgramCache]: Analyzing trace with hash 601802361, now seen corresponding path program 1 times [2024-12-02 12:20:57,281 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:57,281 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2109309976] [2024-12-02 12:20:57,282 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:57,282 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:57,297 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:57,390 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 12:20:57,390 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:57,390 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2109309976] [2024-12-02 12:20:57,390 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2109309976] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:57,390 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 12:20:57,390 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-12-02 12:20:57,390 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1966696185] [2024-12-02 12:20:57,390 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:57,391 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-12-02 12:20:57,391 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:57,391 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-12-02 12:20:57,391 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-12-02 12:20:57,392 INFO L87 Difference]: Start difference. First operand 250 states and 321 transitions. Second operand has 6 states, 6 states have (on average 6.5) internal successors, (39), 6 states have internal predecessors, (39), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 12:20:57,429 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:57,429 INFO L93 Difference]: Finished difference Result 496 states and 658 transitions. [2024-12-02 12:20:57,429 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-12-02 12:20:57,430 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 6 states have internal predecessors, (39), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 44 [2024-12-02 12:20:57,430 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:57,432 INFO L225 Difference]: With dead ends: 496 [2024-12-02 12:20:57,432 INFO L226 Difference]: Without dead ends: 254 [2024-12-02 12:20:57,433 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-12-02 12:20:57,434 INFO L435 NwaCegarLoop]: 94 mSDtfsCounter, 0 mSDsluCounter, 368 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 462 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:57,434 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 462 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 12:20:57,435 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 254 states. [2024-12-02 12:20:57,455 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 254 to 254. [2024-12-02 12:20:57,456 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 254 states, 189 states have (on average 1.306878306878307) internal successors, (247), 206 states have internal predecessors, (247), 34 states have call successors, (34), 30 states have call predecessors, (34), 30 states have return successors, (44), 31 states have call predecessors, (44), 34 states have call successors, (44) [2024-12-02 12:20:57,458 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 254 states to 254 states and 325 transitions. [2024-12-02 12:20:57,458 INFO L78 Accepts]: Start accepts. Automaton has 254 states and 325 transitions. Word has length 44 [2024-12-02 12:20:57,458 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:57,458 INFO L471 AbstractCegarLoop]: Abstraction has 254 states and 325 transitions. [2024-12-02 12:20:57,458 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 6 states have internal predecessors, (39), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 12:20:57,459 INFO L276 IsEmpty]: Start isEmpty. Operand 254 states and 325 transitions. [2024-12-02 12:20:57,460 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2024-12-02 12:20:57,460 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:57,460 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:57,460 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-12-02 12:20:57,460 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:57,461 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:57,461 INFO L85 PathProgramCache]: Analyzing trace with hash -2004221193, now seen corresponding path program 1 times [2024-12-02 12:20:57,461 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:57,461 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [873474648] [2024-12-02 12:20:57,461 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:57,461 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:57,475 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:57,521 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 12:20:57,522 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:57,522 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [873474648] [2024-12-02 12:20:57,522 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [873474648] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:57,522 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 12:20:57,522 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-12-02 12:20:57,522 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1177714702] [2024-12-02 12:20:57,522 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:57,522 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-12-02 12:20:57,522 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:57,523 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-12-02 12:20:57,523 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-12-02 12:20:57,523 INFO L87 Difference]: Start difference. First operand 254 states and 325 transitions. Second operand has 5 states, 5 states have (on average 7.8) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 12:20:57,551 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:57,551 INFO L93 Difference]: Finished difference Result 506 states and 659 transitions. [2024-12-02 12:20:57,551 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-12-02 12:20:57,552 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.8) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 44 [2024-12-02 12:20:57,552 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:57,553 INFO L225 Difference]: With dead ends: 506 [2024-12-02 12:20:57,553 INFO L226 Difference]: Without dead ends: 260 [2024-12-02 12:20:57,554 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-12-02 12:20:57,555 INFO L435 NwaCegarLoop]: 95 mSDtfsCounter, 0 mSDsluCounter, 279 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 374 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:57,555 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 374 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 12:20:57,556 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 260 states. [2024-12-02 12:20:57,573 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 260 to 260. [2024-12-02 12:20:57,573 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 260 states, 195 states have (on average 1.2974358974358975) internal successors, (253), 212 states have internal predecessors, (253), 34 states have call successors, (34), 30 states have call predecessors, (34), 30 states have return successors, (44), 31 states have call predecessors, (44), 34 states have call successors, (44) [2024-12-02 12:20:57,574 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 331 transitions. [2024-12-02 12:20:57,575 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 331 transitions. Word has length 44 [2024-12-02 12:20:57,575 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:57,575 INFO L471 AbstractCegarLoop]: Abstraction has 260 states and 331 transitions. [2024-12-02 12:20:57,575 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.8) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 12:20:57,575 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 331 transitions. [2024-12-02 12:20:57,576 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2024-12-02 12:20:57,576 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:57,576 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:57,576 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-12-02 12:20:57,576 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:57,577 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:57,577 INFO L85 PathProgramCache]: Analyzing trace with hash 1024504187, now seen corresponding path program 1 times [2024-12-02 12:20:57,577 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:57,577 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [657974091] [2024-12-02 12:20:57,577 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:57,577 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:57,587 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:57,648 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 12:20:57,648 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:57,648 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [657974091] [2024-12-02 12:20:57,648 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [657974091] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:57,649 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 12:20:57,649 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-12-02 12:20:57,649 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1567549062] [2024-12-02 12:20:57,649 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:57,649 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-12-02 12:20:57,649 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:57,650 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-12-02 12:20:57,650 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-12-02 12:20:57,650 INFO L87 Difference]: Start difference. First operand 260 states and 331 transitions. Second operand has 4 states, 4 states have (on average 9.75) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 12:20:57,777 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:57,777 INFO L93 Difference]: Finished difference Result 875 states and 1152 transitions. [2024-12-02 12:20:57,778 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-12-02 12:20:57,778 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.75) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 44 [2024-12-02 12:20:57,778 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:57,782 INFO L225 Difference]: With dead ends: 875 [2024-12-02 12:20:57,782 INFO L226 Difference]: Without dead ends: 623 [2024-12-02 12:20:57,782 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-12-02 12:20:57,783 INFO L435 NwaCegarLoop]: 163 mSDtfsCounter, 128 mSDsluCounter, 156 mSDsCounter, 0 mSdLazyCounter, 53 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 128 SdHoareTripleChecker+Valid, 319 SdHoareTripleChecker+Invalid, 58 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 53 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:57,783 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [128 Valid, 319 Invalid, 58 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 53 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-12-02 12:20:57,784 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 623 states. [2024-12-02 12:20:57,830 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 623 to 609. [2024-12-02 12:20:57,831 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 609 states, 456 states have (on average 1.2719298245614035) internal successors, (580), 490 states have internal predecessors, (580), 79 states have call successors, (79), 71 states have call predecessors, (79), 73 states have return successors, (122), 75 states have call predecessors, (122), 79 states have call successors, (122) [2024-12-02 12:20:57,834 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 609 states to 609 states and 781 transitions. [2024-12-02 12:20:57,835 INFO L78 Accepts]: Start accepts. Automaton has 609 states and 781 transitions. Word has length 44 [2024-12-02 12:20:57,835 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:57,835 INFO L471 AbstractCegarLoop]: Abstraction has 609 states and 781 transitions. [2024-12-02 12:20:57,835 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.75) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 12:20:57,835 INFO L276 IsEmpty]: Start isEmpty. Operand 609 states and 781 transitions. [2024-12-02 12:20:57,836 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 49 [2024-12-02 12:20:57,836 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:57,836 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:57,836 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-12-02 12:20:57,836 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:57,837 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:57,837 INFO L85 PathProgramCache]: Analyzing trace with hash -1558755551, now seen corresponding path program 1 times [2024-12-02 12:20:57,837 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:57,837 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [681666273] [2024-12-02 12:20:57,837 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:57,837 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:57,851 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:57,889 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 12:20:57,890 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:57,890 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [681666273] [2024-12-02 12:20:57,890 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [681666273] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:57,890 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 12:20:57,890 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-12-02 12:20:57,890 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1428495919] [2024-12-02 12:20:57,890 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:57,890 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 12:20:57,890 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:57,891 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 12:20:57,891 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 12:20:57,891 INFO L87 Difference]: Start difference. First operand 609 states and 781 transitions. Second operand has 3 states, 3 states have (on average 13.666666666666666) internal successors, (41), 3 states have internal predecessors, (41), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-12-02 12:20:57,949 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:57,949 INFO L93 Difference]: Finished difference Result 967 states and 1275 transitions. [2024-12-02 12:20:57,949 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 12:20:57,950 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 13.666666666666666) internal successors, (41), 3 states have internal predecessors, (41), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 48 [2024-12-02 12:20:57,950 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:57,954 INFO L225 Difference]: With dead ends: 967 [2024-12-02 12:20:57,954 INFO L226 Difference]: Without dead ends: 965 [2024-12-02 12:20:57,955 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 12:20:57,955 INFO L435 NwaCegarLoop]: 97 mSDtfsCounter, 70 mSDsluCounter, 86 mSDsCounter, 0 mSdLazyCounter, 3 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 70 SdHoareTripleChecker+Valid, 183 SdHoareTripleChecker+Invalid, 8 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 3 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:57,955 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [70 Valid, 183 Invalid, 8 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 3 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 12:20:57,957 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 965 states. [2024-12-02 12:20:58,024 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 965 to 907. [2024-12-02 12:20:58,025 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 907 states, 674 states have (on average 1.2759643916913948) internal successors, (860), 730 states have internal predecessors, (860), 123 states have call successors, (123), 107 states have call predecessors, (123), 109 states have return successors, (223), 109 states have call predecessors, (223), 123 states have call successors, (223) [2024-12-02 12:20:58,030 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 907 states to 907 states and 1206 transitions. [2024-12-02 12:20:58,031 INFO L78 Accepts]: Start accepts. Automaton has 907 states and 1206 transitions. Word has length 48 [2024-12-02 12:20:58,031 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:58,031 INFO L471 AbstractCegarLoop]: Abstraction has 907 states and 1206 transitions. [2024-12-02 12:20:58,031 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 13.666666666666666) internal successors, (41), 3 states have internal predecessors, (41), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-12-02 12:20:58,031 INFO L276 IsEmpty]: Start isEmpty. Operand 907 states and 1206 transitions. [2024-12-02 12:20:58,036 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 93 [2024-12-02 12:20:58,036 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:58,036 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:58,037 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2024-12-02 12:20:58,037 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:58,037 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:58,037 INFO L85 PathProgramCache]: Analyzing trace with hash 1418857615, now seen corresponding path program 1 times [2024-12-02 12:20:58,037 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:58,037 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1991420659] [2024-12-02 12:20:58,037 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:58,038 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:58,054 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:58,168 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 25 proven. 8 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-12-02 12:20:58,168 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:58,168 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1991420659] [2024-12-02 12:20:58,168 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1991420659] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 12:20:58,168 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1262710205] [2024-12-02 12:20:58,168 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:58,168 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 12:20:58,168 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 12:20:58,170 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 12:20:58,172 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-12-02 12:20:58,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:58,275 INFO L256 TraceCheckSpWp]: Trace formula consists of 320 conjuncts, 2 conjuncts are in the unsatisfiable core [2024-12-02 12:20:58,281 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 12:20:58,313 INFO L134 CoverageAnalysis]: Checked inductivity of 39 backedges. 25 proven. 0 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-12-02 12:20:58,314 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-12-02 12:20:58,314 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1262710205] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:58,314 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-12-02 12:20:58,314 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [5] total 6 [2024-12-02 12:20:58,314 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [278538801] [2024-12-02 12:20:58,314 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:58,315 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 12:20:58,315 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:58,315 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 12:20:58,315 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-12-02 12:20:58,315 INFO L87 Difference]: Start difference. First operand 907 states and 1206 transitions. Second operand has 3 states, 3 states have (on average 22.333333333333332) internal successors, (67), 3 states have internal predecessors, (67), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 3 states have call successors, (6) [2024-12-02 12:20:58,414 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:58,414 INFO L93 Difference]: Finished difference Result 1999 states and 2767 transitions. [2024-12-02 12:20:58,415 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 12:20:58,415 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 22.333333333333332) internal successors, (67), 3 states have internal predecessors, (67), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 3 states have call successors, (6) Word has length 92 [2024-12-02 12:20:58,415 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:58,423 INFO L225 Difference]: With dead ends: 1999 [2024-12-02 12:20:58,423 INFO L226 Difference]: Without dead ends: 1223 [2024-12-02 12:20:58,427 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 96 GetRequests, 92 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-12-02 12:20:58,428 INFO L435 NwaCegarLoop]: 178 mSDtfsCounter, 74 mSDsluCounter, 92 mSDsCounter, 0 mSdLazyCounter, 10 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 74 SdHoareTripleChecker+Valid, 270 SdHoareTripleChecker+Invalid, 12 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 10 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:58,428 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [74 Valid, 270 Invalid, 12 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 10 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 12:20:58,429 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1223 states. [2024-12-02 12:20:58,507 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1223 to 1035. [2024-12-02 12:20:58,509 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1035 states, 773 states have (on average 1.2768434670116429) internal successors, (987), 828 states have internal predecessors, (987), 137 states have call successors, (137), 121 states have call predecessors, (137), 124 states have return successors, (206), 122 states have call predecessors, (206), 137 states have call successors, (206) [2024-12-02 12:20:58,513 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1035 states to 1035 states and 1330 transitions. [2024-12-02 12:20:58,514 INFO L78 Accepts]: Start accepts. Automaton has 1035 states and 1330 transitions. Word has length 92 [2024-12-02 12:20:58,515 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:58,515 INFO L471 AbstractCegarLoop]: Abstraction has 1035 states and 1330 transitions. [2024-12-02 12:20:58,515 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 22.333333333333332) internal successors, (67), 3 states have internal predecessors, (67), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 3 states have call successors, (6) [2024-12-02 12:20:58,515 INFO L276 IsEmpty]: Start isEmpty. Operand 1035 states and 1330 transitions. [2024-12-02 12:20:58,518 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 87 [2024-12-02 12:20:58,518 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:58,518 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:58,525 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-12-02 12:20:58,719 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 12:20:58,719 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:58,719 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:58,719 INFO L85 PathProgramCache]: Analyzing trace with hash 1751614928, now seen corresponding path program 1 times [2024-12-02 12:20:58,720 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:58,720 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [639508518] [2024-12-02 12:20:58,720 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:58,720 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:58,735 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:58,834 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 21 proven. 3 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2024-12-02 12:20:58,834 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:58,834 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [639508518] [2024-12-02 12:20:58,834 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [639508518] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 12:20:58,834 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1803440130] [2024-12-02 12:20:58,835 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:58,835 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 12:20:58,835 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 12:20:58,836 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 12:20:58,838 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-12-02 12:20:58,929 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:58,930 INFO L256 TraceCheckSpWp]: Trace formula consists of 310 conjuncts, 4 conjuncts are in the unsatisfiable core [2024-12-02 12:20:58,934 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 12:20:59,005 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 35 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 12:20:59,006 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-12-02 12:20:59,006 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1803440130] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:59,006 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-12-02 12:20:59,006 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [6] total 7 [2024-12-02 12:20:59,006 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [316066071] [2024-12-02 12:20:59,006 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:59,007 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 12:20:59,007 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:59,007 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 12:20:59,008 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=28, Unknown=0, NotChecked=0, Total=42 [2024-12-02 12:20:59,008 INFO L87 Difference]: Start difference. First operand 1035 states and 1330 transitions. Second operand has 3 states, 3 states have (on average 24.333333333333332) internal successors, (73), 3 states have internal predecessors, (73), 3 states have call successors, (7), 3 states have call predecessors, (7), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-12-02 12:20:59,097 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:59,097 INFO L93 Difference]: Finished difference Result 1892 states and 2468 transitions. [2024-12-02 12:20:59,097 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 12:20:59,098 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 24.333333333333332) internal successors, (73), 3 states have internal predecessors, (73), 3 states have call successors, (7), 3 states have call predecessors, (7), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) Word has length 86 [2024-12-02 12:20:59,098 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:59,102 INFO L225 Difference]: With dead ends: 1892 [2024-12-02 12:20:59,102 INFO L226 Difference]: Without dead ends: 982 [2024-12-02 12:20:59,104 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 93 GetRequests, 88 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=14, Invalid=28, Unknown=0, NotChecked=0, Total=42 [2024-12-02 12:20:59,104 INFO L435 NwaCegarLoop]: 138 mSDtfsCounter, 41 mSDsluCounter, 67 mSDsCounter, 0 mSdLazyCounter, 12 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 41 SdHoareTripleChecker+Valid, 205 SdHoareTripleChecker+Invalid, 15 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 12 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:59,105 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [41 Valid, 205 Invalid, 15 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 12 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 12:20:59,106 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 982 states. [2024-12-02 12:20:59,146 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 982 to 950. [2024-12-02 12:20:59,147 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 950 states, 710 states have (on average 1.2436619718309858) internal successors, (883), 757 states have internal predecessors, (883), 125 states have call successors, (125), 111 states have call predecessors, (125), 114 states have return successors, (172), 116 states have call predecessors, (172), 125 states have call successors, (172) [2024-12-02 12:20:59,151 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 950 states to 950 states and 1180 transitions. [2024-12-02 12:20:59,152 INFO L78 Accepts]: Start accepts. Automaton has 950 states and 1180 transitions. Word has length 86 [2024-12-02 12:20:59,152 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:59,152 INFO L471 AbstractCegarLoop]: Abstraction has 950 states and 1180 transitions. [2024-12-02 12:20:59,152 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 24.333333333333332) internal successors, (73), 3 states have internal predecessors, (73), 3 states have call successors, (7), 3 states have call predecessors, (7), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-12-02 12:20:59,152 INFO L276 IsEmpty]: Start isEmpty. Operand 950 states and 1180 transitions. [2024-12-02 12:20:59,154 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 92 [2024-12-02 12:20:59,154 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:59,154 INFO L218 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:59,160 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-12-02 12:20:59,355 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2024-12-02 12:20:59,355 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:59,356 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:59,356 INFO L85 PathProgramCache]: Analyzing trace with hash 1082819183, now seen corresponding path program 1 times [2024-12-02 12:20:59,356 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:59,356 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1084984600] [2024-12-02 12:20:59,356 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:59,356 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:59,371 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:59,485 INFO L134 CoverageAnalysis]: Checked inductivity of 33 backedges. 12 proven. 0 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2024-12-02 12:20:59,485 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:59,485 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1084984600] [2024-12-02 12:20:59,485 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1084984600] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:59,485 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 12:20:59,485 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2024-12-02 12:20:59,485 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1335436952] [2024-12-02 12:20:59,486 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:59,486 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-12-02 12:20:59,486 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:59,486 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-12-02 12:20:59,487 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=57, Unknown=0, NotChecked=0, Total=72 [2024-12-02 12:20:59,487 INFO L87 Difference]: Start difference. First operand 950 states and 1180 transitions. Second operand has 9 states, 9 states have (on average 6.888888888888889) internal successors, (62), 7 states have internal predecessors, (62), 2 states have call successors, (8), 1 states have call predecessors, (8), 2 states have return successors, (8), 4 states have call predecessors, (8), 2 states have call successors, (8) [2024-12-02 12:20:59,730 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:59,730 INFO L93 Difference]: Finished difference Result 2461 states and 3120 transitions. [2024-12-02 12:20:59,730 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2024-12-02 12:20:59,731 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 6.888888888888889) internal successors, (62), 7 states have internal predecessors, (62), 2 states have call successors, (8), 1 states have call predecessors, (8), 2 states have return successors, (8), 4 states have call predecessors, (8), 2 states have call successors, (8) Word has length 91 [2024-12-02 12:20:59,731 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:59,736 INFO L225 Difference]: With dead ends: 2461 [2024-12-02 12:20:59,736 INFO L226 Difference]: Without dead ends: 1519 [2024-12-02 12:20:59,738 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=39, Invalid=171, Unknown=0, NotChecked=0, Total=210 [2024-12-02 12:20:59,739 INFO L435 NwaCegarLoop]: 92 mSDtfsCounter, 80 mSDsluCounter, 529 mSDsCounter, 0 mSdLazyCounter, 157 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 82 SdHoareTripleChecker+Valid, 621 SdHoareTripleChecker+Invalid, 161 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 157 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:59,739 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [82 Valid, 621 Invalid, 161 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 157 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-12-02 12:20:59,741 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1519 states. [2024-12-02 12:20:59,805 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1519 to 1316. [2024-12-02 12:20:59,806 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1316 states, 983 states have (on average 1.2065106815869786) internal successors, (1186), 1048 states have internal predecessors, (1186), 168 states have call successors, (168), 158 states have call predecessors, (168), 164 states have return successors, (230), 156 states have call predecessors, (230), 168 states have call successors, (230) [2024-12-02 12:20:59,810 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1316 states to 1316 states and 1584 transitions. [2024-12-02 12:20:59,812 INFO L78 Accepts]: Start accepts. Automaton has 1316 states and 1584 transitions. Word has length 91 [2024-12-02 12:20:59,812 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:59,812 INFO L471 AbstractCegarLoop]: Abstraction has 1316 states and 1584 transitions. [2024-12-02 12:20:59,812 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 6.888888888888889) internal successors, (62), 7 states have internal predecessors, (62), 2 states have call successors, (8), 1 states have call predecessors, (8), 2 states have return successors, (8), 4 states have call predecessors, (8), 2 states have call successors, (8) [2024-12-02 12:20:59,812 INFO L276 IsEmpty]: Start isEmpty. Operand 1316 states and 1584 transitions. [2024-12-02 12:20:59,814 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 98 [2024-12-02 12:20:59,814 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 12:20:59,815 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:59,815 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2024-12-02 12:20:59,815 INFO L396 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 12:20:59,815 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 12:20:59,815 INFO L85 PathProgramCache]: Analyzing trace with hash 963127957, now seen corresponding path program 1 times [2024-12-02 12:20:59,815 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 12:20:59,815 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [314576047] [2024-12-02 12:20:59,815 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 12:20:59,816 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 12:20:59,827 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 12:20:59,846 INFO L134 CoverageAnalysis]: Checked inductivity of 35 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2024-12-02 12:20:59,846 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 12:20:59,846 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [314576047] [2024-12-02 12:20:59,846 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [314576047] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 12:20:59,846 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 12:20:59,847 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-12-02 12:20:59,847 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [646649175] [2024-12-02 12:20:59,847 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 12:20:59,847 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 12:20:59,847 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 12:20:59,848 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 12:20:59,848 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 12:20:59,848 INFO L87 Difference]: Start difference. First operand 1316 states and 1584 transitions. Second operand has 3 states, 3 states have (on average 21.0) internal successors, (63), 3 states have internal predecessors, (63), 3 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2024-12-02 12:20:59,894 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 12:20:59,894 INFO L93 Difference]: Finished difference Result 2075 states and 2503 transitions. [2024-12-02 12:20:59,894 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 12:20:59,895 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 21.0) internal successors, (63), 3 states have internal predecessors, (63), 3 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) Word has length 97 [2024-12-02 12:20:59,895 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 12:20:59,896 INFO L225 Difference]: With dead ends: 2075 [2024-12-02 12:20:59,896 INFO L226 Difference]: Without dead ends: 0 [2024-12-02 12:20:59,899 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 12:20:59,899 INFO L435 NwaCegarLoop]: 119 mSDtfsCounter, 36 mSDsluCounter, 90 mSDsCounter, 0 mSdLazyCounter, 5 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 36 SdHoareTripleChecker+Valid, 209 SdHoareTripleChecker+Invalid, 5 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 5 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 12:20:59,900 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [36 Valid, 209 Invalid, 5 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 5 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 12:20:59,900 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-12-02 12:20:59,900 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-12-02 12:20:59,900 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-12-02 12:20:59,900 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-12-02 12:20:59,901 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 97 [2024-12-02 12:20:59,901 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 12:20:59,901 INFO L471 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-12-02 12:20:59,901 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 21.0) internal successors, (63), 3 states have internal predecessors, (63), 3 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2024-12-02 12:20:59,901 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-12-02 12:20:59,901 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-12-02 12:20:59,903 INFO L782 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-12-02 12:20:59,904 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2024-12-02 12:20:59,906 INFO L422 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 12:20:59,907 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-12-02 12:21:05,165 INFO L170 ceAbstractionStarter]: Computing trace abstraction results [2024-12-02 12:21:05,174 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 02.12 12:21:05 BoogieIcfgContainer [2024-12-02 12:21:05,174 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-12-02 12:21:05,174 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-12-02 12:21:05,175 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-12-02 12:21:05,175 INFO L274 PluginConnector]: Witness Printer initialized [2024-12-02 12:21:05,175 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 12:20:56" (3/4) ... [2024-12-02 12:21:05,176 INFO L146 WitnessPrinter]: Generating witness for correct program [2024-12-02 12:21:05,180 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2024-12-02 12:21:05,180 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2024-12-02 12:21:05,180 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2024-12-02 12:21:05,180 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2024-12-02 12:21:05,180 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2024-12-02 12:21:05,180 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2024-12-02 12:21:05,180 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2024-12-02 12:21:05,180 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2024-12-02 12:21:05,184 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 20 nodes and edges [2024-12-02 12:21:05,184 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2024-12-02 12:21:05,184 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2024-12-02 12:21:05,184 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-12-02 12:21:05,184 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-12-02 12:21:05,263 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/witness.graphml [2024-12-02 12:21:05,263 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/witness.yml [2024-12-02 12:21:05,263 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-12-02 12:21:05,264 INFO L158 Benchmark]: Toolchain (without parser) took 9851.99ms. Allocated memory was 142.6MB in the beginning and 385.9MB in the end (delta: 243.3MB). Free memory was 117.2MB in the beginning and 268.4MB in the end (delta: -151.2MB). Peak memory consumption was 91.7MB. Max. memory is 16.1GB. [2024-12-02 12:21:05,264 INFO L158 Benchmark]: CDTParser took 0.25ms. Allocated memory is still 142.6MB. Free memory is still 82.0MB. There was no memory consumed. Max. memory is 16.1GB. [2024-12-02 12:21:05,264 INFO L158 Benchmark]: CACSL2BoogieTranslator took 368.93ms. Allocated memory is still 142.6MB. Free memory was 117.0MB in the beginning and 98.3MB in the end (delta: 18.7MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-12-02 12:21:05,265 INFO L158 Benchmark]: Boogie Procedure Inliner took 35.94ms. Allocated memory is still 142.6MB. Free memory was 98.3MB in the beginning and 96.5MB in the end (delta: 1.7MB). There was no memory consumed. Max. memory is 16.1GB. [2024-12-02 12:21:05,265 INFO L158 Benchmark]: Boogie Preprocessor took 35.73ms. Allocated memory is still 142.6MB. Free memory was 96.5MB in the beginning and 94.7MB in the end (delta: 1.8MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2024-12-02 12:21:05,265 INFO L158 Benchmark]: RCFGBuilder took 357.40ms. Allocated memory is still 142.6MB. Free memory was 94.5MB in the beginning and 77.8MB in the end (delta: 16.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-12-02 12:21:05,266 INFO L158 Benchmark]: TraceAbstraction took 8958.52ms. Allocated memory was 142.6MB in the beginning and 385.9MB in the end (delta: 243.3MB). Free memory was 77.2MB in the beginning and 276.7MB in the end (delta: -199.5MB). Peak memory consumption was 179.6MB. Max. memory is 16.1GB. [2024-12-02 12:21:05,266 INFO L158 Benchmark]: Witness Printer took 88.96ms. Allocated memory is still 385.9MB. Free memory was 276.7MB in the beginning and 268.4MB in the end (delta: 8.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2024-12-02 12:21:05,268 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.25ms. Allocated memory is still 142.6MB. Free memory is still 82.0MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 368.93ms. Allocated memory is still 142.6MB. Free memory was 117.0MB in the beginning and 98.3MB in the end (delta: 18.7MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 35.94ms. Allocated memory is still 142.6MB. Free memory was 98.3MB in the beginning and 96.5MB in the end (delta: 1.7MB). There was no memory consumed. Max. memory is 16.1GB. * Boogie Preprocessor took 35.73ms. Allocated memory is still 142.6MB. Free memory was 96.5MB in the beginning and 94.7MB in the end (delta: 1.8MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * RCFGBuilder took 357.40ms. Allocated memory is still 142.6MB. Free memory was 94.5MB in the beginning and 77.8MB in the end (delta: 16.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 8958.52ms. Allocated memory was 142.6MB in the beginning and 385.9MB in the end (delta: 243.3MB). Free memory was 77.2MB in the beginning and 276.7MB in the end (delta: -199.5MB). Peak memory consumption was 179.6MB. Max. memory is 16.1GB. * Witness Printer took 88.96ms. Allocated memory is still 385.9MB. Free memory was 276.7MB in the beginning and 268.4MB in the end (delta: 8.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [49] - GenericResultAtLocation [Line: 91]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [91] - GenericResultAtLocation [Line: 191]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [191] - GenericResultAtLocation [Line: 264]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [264] - GenericResultAtLocation [Line: 468]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [468] - GenericResultAtLocation [Line: 834]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [834] - GenericResultAtLocation [Line: 843]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [843] - GenericResultAtLocation [Line: 943]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [943] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 839]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 93 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 3.6s, OverallIterations: 12, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.2s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 723 SdHoareTripleChecker+Valid, 0.4s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 717 mSDsluCounter, 3668 SdHoareTripleChecker+Invalid, 0.4s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2271 mSDsCounter, 53 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 403 IncrementalHoareTripleChecker+Invalid, 456 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 53 mSolverCounterUnsat, 1397 mSDtfsCounter, 403 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 251 GetRequests, 206 SyntacticMatches, 0 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 17 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1316occurred in iteration=11, InterpolantAutomatonStates: 56, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.5s AutomataMinimizationTime, 12 MinimizatonAttempts, 503 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 1.0s InterpolantComputationTime, 837 NumberOfCodeBlocks, 837 NumberOfCodeBlocksAsserted, 14 NumberOfCheckSat, 823 ConstructedInterpolants, 0 QuantifiedInterpolants, 1268 SizeOfPredicates, 1 NumberOfNonLiveVariables, 630 ConjunctsInSsa, 6 ConjunctsInUnsatCore, 14 InterpolantComputations, 12 PerfectInterpolantSequences, 205/216 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available, ConComCheckerStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 206]: Loop Invariant Derived loop invariant: ((((((((1 <= pumpRunning) && (methAndRunningLastTime == 0)) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) || ((((1 <= pumpRunning) && (waterLevel != 1)) && (1 == systemActive)) && (splverifierCounter == 0))) || ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (splverifierCounter == 0))) || ((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (splverifierCounter == 0)) && (0 == systemActive))) - InvariantResult [Line: 205]: Location Invariant Derived location invariant: 0 - InvariantResult [Line: 855]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2024-12-02 12:21:05,286 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2d4408bf-aeed-4fba-907f-cc899c77a40a/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE