./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec2_product51.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version d790fecc Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/plugins/org.eclipse.equinox.launcher_1.6.800.v20240513-1750.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec2_product51.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1 --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 242c9b24ea8c293cca4af0028144a97f9048375edcd4379fb21e62564563d3d5 --- Real Ultimate output --- This is Ultimate 0.3.0-dev-d790fec [2024-12-02 07:03:15,962 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-12-02 07:03:16,027 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-12-02 07:03:16,032 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-12-02 07:03:16,032 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-12-02 07:03:16,058 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-12-02 07:03:16,059 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-12-02 07:03:16,059 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-12-02 07:03:16,060 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-12-02 07:03:16,060 INFO L153 SettingsManager]: * Use memory slicer=true [2024-12-02 07:03:16,060 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-12-02 07:03:16,060 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-12-02 07:03:16,060 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-12-02 07:03:16,060 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-12-02 07:03:16,061 INFO L153 SettingsManager]: * Use SBE=true [2024-12-02 07:03:16,061 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-12-02 07:03:16,061 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-12-02 07:03:16,061 INFO L153 SettingsManager]: * sizeof long=4 [2024-12-02 07:03:16,061 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-12-02 07:03:16,061 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-12-02 07:03:16,061 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-12-02 07:03:16,061 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-12-02 07:03:16,061 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-12-02 07:03:16,062 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-12-02 07:03:16,062 INFO L153 SettingsManager]: * sizeof long double=12 [2024-12-02 07:03:16,062 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-12-02 07:03:16,062 INFO L153 SettingsManager]: * Behaviour of calls to undefined functions=OVERAPPROXIMATE_BEHAVIOUR [2024-12-02 07:03:16,062 INFO L153 SettingsManager]: * Use constant arrays=true [2024-12-02 07:03:16,062 INFO L151 SettingsManager]: Preferences of IcfgBuilder differ from their defaults: [2024-12-02 07:03:16,062 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-12-02 07:03:16,062 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-12-02 07:03:16,062 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-12-02 07:03:16,062 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-12-02 07:03:16,063 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-12-02 07:03:16,063 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-12-02 07:03:16,063 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-12-02 07:03:16,063 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-12-02 07:03:16,063 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-12-02 07:03:16,063 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-12-02 07:03:16,063 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-12-02 07:03:16,063 INFO L153 SettingsManager]: * Compute procedure contracts=false [2024-12-02 07:03:16,063 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-12-02 07:03:16,063 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-12-02 07:03:16,064 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-12-02 07:03:16,064 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-12-02 07:03:16,064 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-12-02 07:03:16,064 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-12-02 07:03:16,064 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-12-02 07:03:16,064 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 242c9b24ea8c293cca4af0028144a97f9048375edcd4379fb21e62564563d3d5 [2024-12-02 07:03:16,323 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-12-02 07:03:16,332 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-12-02 07:03:16,334 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-12-02 07:03:16,336 INFO L270 PluginConnector]: Initializing CDTParser... [2024-12-02 07:03:16,336 INFO L274 PluginConnector]: CDTParser initialized [2024-12-02 07:03:16,337 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/../../sv-benchmarks/c/product-lines/minepump_spec2_product51.cil.c [2024-12-02 07:03:19,055 INFO L533 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/data/aa382fe0f/e69c1c3409a743f2a35e2e2fd0c319ec/FLAGa43c1138b [2024-12-02 07:03:19,285 INFO L384 CDTParser]: Found 1 translation units. [2024-12-02 07:03:19,286 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/sv-benchmarks/c/product-lines/minepump_spec2_product51.cil.c [2024-12-02 07:03:19,299 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/data/aa382fe0f/e69c1c3409a743f2a35e2e2fd0c319ec/FLAGa43c1138b [2024-12-02 07:03:19,313 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/data/aa382fe0f/e69c1c3409a743f2a35e2e2fd0c319ec [2024-12-02 07:03:19,315 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-12-02 07:03:19,316 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-12-02 07:03:19,317 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-12-02 07:03:19,318 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-12-02 07:03:19,322 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-12-02 07:03:19,323 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,324 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@94a4dfd and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19, skipping insertion in model container [2024-12-02 07:03:19,324 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,358 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-12-02 07:03:19,585 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/sv-benchmarks/c/product-lines/minepump_spec2_product51.cil.c[9329,9342] [2024-12-02 07:03:19,637 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-12-02 07:03:19,648 INFO L200 MainTranslator]: Completed pre-run [2024-12-02 07:03:19,658 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49] [2024-12-02 07:03:19,659 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [121] [2024-12-02 07:03:19,659 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [343] [2024-12-02 07:03:19,659 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [383] [2024-12-02 07:03:19,660 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [421] [2024-12-02 07:03:19,660 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [525] [2024-12-02 07:03:19,660 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [622] [2024-12-02 07:03:19,660 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [631] [2024-12-02 07:03:19,686 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/sv-benchmarks/c/product-lines/minepump_spec2_product51.cil.c[9329,9342] [2024-12-02 07:03:19,715 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-12-02 07:03:19,735 INFO L204 MainTranslator]: Completed translation [2024-12-02 07:03:19,735 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19 WrapperNode [2024-12-02 07:03:19,735 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-12-02 07:03:19,737 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-12-02 07:03:19,737 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-12-02 07:03:19,737 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-12-02 07:03:19,744 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,756 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,775 INFO L138 Inliner]: procedures = 57, calls = 101, calls flagged for inlining = 23, calls inlined = 20, statements flattened = 208 [2024-12-02 07:03:19,776 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-12-02 07:03:19,776 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-12-02 07:03:19,776 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-12-02 07:03:19,776 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-12-02 07:03:19,786 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,786 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,787 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,802 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-12-02 07:03:19,802 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,803 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,807 INFO L184 PluginConnector]: Executing the observer ReplaceArrayAssignments from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,808 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,812 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,813 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,814 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,816 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-12-02 07:03:19,817 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-12-02 07:03:19,817 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-12-02 07:03:19,817 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-12-02 07:03:19,818 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (1/1) ... [2024-12-02 07:03:19,824 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-12-02 07:03:19,835 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 07:03:19,848 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-12-02 07:03:19,851 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-12-02 07:03:19,874 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-12-02 07:03:19,874 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2024-12-02 07:03:19,874 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2024-12-02 07:03:19,874 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2024-12-02 07:03:19,874 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2024-12-02 07:03:19,875 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2024-12-02 07:03:19,875 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2024-12-02 07:03:19,875 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2024-12-02 07:03:19,875 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2024-12-02 07:03:19,875 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2024-12-02 07:03:19,875 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2024-12-02 07:03:19,875 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2024-12-02 07:03:19,875 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2024-12-02 07:03:19,875 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2024-12-02 07:03:19,875 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2024-12-02 07:03:19,875 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-12-02 07:03:19,875 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2024-12-02 07:03:19,875 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2024-12-02 07:03:19,876 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-12-02 07:03:19,876 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-12-02 07:03:19,937 INFO L234 CfgBuilder]: Building ICFG [2024-12-02 07:03:19,938 INFO L260 CfgBuilder]: Building CFG for each procedure with an implementation [2024-12-02 07:03:20,149 INFO L? ?]: Removed 45 outVars from TransFormulas that were not future-live. [2024-12-02 07:03:20,149 INFO L283 CfgBuilder]: Performing block encoding [2024-12-02 07:03:20,160 INFO L307 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-12-02 07:03:20,160 INFO L312 CfgBuilder]: Removed 4 assume(true) statements. [2024-12-02 07:03:20,161 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 07:03:20 BoogieIcfgContainer [2024-12-02 07:03:20,161 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-12-02 07:03:20,163 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-12-02 07:03:20,163 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-12-02 07:03:20,166 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-12-02 07:03:20,167 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 02.12 07:03:19" (1/3) ... [2024-12-02 07:03:20,167 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@47542dc6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 02.12 07:03:20, skipping insertion in model container [2024-12-02 07:03:20,167 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 07:03:19" (2/3) ... [2024-12-02 07:03:20,168 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@47542dc6 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 02.12 07:03:20, skipping insertion in model container [2024-12-02 07:03:20,168 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 07:03:20" (3/3) ... [2024-12-02 07:03:20,169 INFO L128 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product51.cil.c [2024-12-02 07:03:20,183 INFO L216 ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-12-02 07:03:20,184 INFO L151 ceAbstractionStarter]: Applying trace abstraction to ICFG minepump_spec2_product51.cil.c that has 9 procedures, 93 locations, 1 initial locations, 2 loop locations, and 1 error locations. [2024-12-02 07:03:20,237 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-12-02 07:03:20,248 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@2c0a9ab, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-12-02 07:03:20,249 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-12-02 07:03:20,252 INFO L276 IsEmpty]: Start isEmpty. Operand has 93 states, 70 states have (on average 1.4) internal successors, (98), 79 states have internal predecessors, (98), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2024-12-02 07:03:20,260 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-12-02 07:03:20,260 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:20,260 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:20,261 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:20,265 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:20,266 INFO L85 PathProgramCache]: Analyzing trace with hash -480877935, now seen corresponding path program 1 times [2024-12-02 07:03:20,273 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:20,274 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2044895531] [2024-12-02 07:03:20,274 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:20,274 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:20,359 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:20,414 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 07:03:20,414 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:20,414 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2044895531] [2024-12-02 07:03:20,416 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2044895531] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:20,416 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 07:03:20,416 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-12-02 07:03:20,418 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [697904567] [2024-12-02 07:03:20,418 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:20,421 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-12-02 07:03:20,421 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:20,437 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-12-02 07:03:20,437 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-12-02 07:03:20,439 INFO L87 Difference]: Start difference. First operand has 93 states, 70 states have (on average 1.4) internal successors, (98), 79 states have internal predecessors, (98), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 07:03:20,462 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:20,462 INFO L93 Difference]: Finished difference Result 177 states and 242 transitions. [2024-12-02 07:03:20,463 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-12-02 07:03:20,463 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-12-02 07:03:20,464 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:20,469 INFO L225 Difference]: With dead ends: 177 [2024-12-02 07:03:20,470 INFO L226 Difference]: Without dead ends: 84 [2024-12-02 07:03:20,472 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-12-02 07:03:20,474 INFO L435 NwaCegarLoop]: 118 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 118 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:20,475 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 118 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 07:03:20,486 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 84 states. [2024-12-02 07:03:20,501 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 84 to 84. [2024-12-02 07:03:20,502 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 84 states, 63 states have (on average 1.3333333333333333) internal successors, (84), 71 states have internal predecessors, (84), 13 states have call successors, (13), 8 states have call predecessors, (13), 7 states have return successors, (12), 9 states have call predecessors, (12), 12 states have call successors, (12) [2024-12-02 07:03:20,506 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 84 states to 84 states and 109 transitions. [2024-12-02 07:03:20,507 INFO L78 Accepts]: Start accepts. Automaton has 84 states and 109 transitions. Word has length 25 [2024-12-02 07:03:20,507 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:20,507 INFO L471 AbstractCegarLoop]: Abstraction has 84 states and 109 transitions. [2024-12-02 07:03:20,507 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 07:03:20,507 INFO L276 IsEmpty]: Start isEmpty. Operand 84 states and 109 transitions. [2024-12-02 07:03:20,509 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-12-02 07:03:20,509 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:20,509 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:20,509 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-12-02 07:03:20,509 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:20,510 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:20,510 INFO L85 PathProgramCache]: Analyzing trace with hash -950954345, now seen corresponding path program 1 times [2024-12-02 07:03:20,510 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:20,510 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [297678383] [2024-12-02 07:03:20,510 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:20,510 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:20,539 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:20,612 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 07:03:20,612 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:20,612 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [297678383] [2024-12-02 07:03:20,612 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [297678383] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:20,612 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 07:03:20,612 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-12-02 07:03:20,612 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1281186744] [2024-12-02 07:03:20,613 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:20,614 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 07:03:20,614 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:20,614 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 07:03:20,614 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 07:03:20,615 INFO L87 Difference]: Start difference. First operand 84 states and 109 transitions. Second operand has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 07:03:20,630 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:20,630 INFO L93 Difference]: Finished difference Result 131 states and 169 transitions. [2024-12-02 07:03:20,631 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 07:03:20,631 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-12-02 07:03:20,631 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:20,632 INFO L225 Difference]: With dead ends: 131 [2024-12-02 07:03:20,632 INFO L226 Difference]: Without dead ends: 76 [2024-12-02 07:03:20,633 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 07:03:20,634 INFO L435 NwaCegarLoop]: 97 mSDtfsCounter, 16 mSDsluCounter, 77 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 174 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:20,634 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [20 Valid, 174 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 07:03:20,635 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2024-12-02 07:03:20,641 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 76. [2024-12-02 07:03:20,641 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 58 states have (on average 1.3448275862068966) internal successors, (78), 66 states have internal predecessors, (78), 10 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (10), 7 states have call predecessors, (10), 10 states have call successors, (10) [2024-12-02 07:03:20,642 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 98 transitions. [2024-12-02 07:03:20,642 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 98 transitions. Word has length 25 [2024-12-02 07:03:20,642 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:20,643 INFO L471 AbstractCegarLoop]: Abstraction has 76 states and 98 transitions. [2024-12-02 07:03:20,643 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.0) internal successors, (21), 3 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 07:03:20,643 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 98 transitions. [2024-12-02 07:03:20,644 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2024-12-02 07:03:20,644 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:20,644 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:20,644 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-12-02 07:03:20,644 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:20,644 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:20,645 INFO L85 PathProgramCache]: Analyzing trace with hash 2134705002, now seen corresponding path program 1 times [2024-12-02 07:03:20,645 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:20,645 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [662228657] [2024-12-02 07:03:20,645 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:20,645 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:20,664 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:20,780 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 07:03:20,780 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:20,780 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [662228657] [2024-12-02 07:03:20,780 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [662228657] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:20,780 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 07:03:20,780 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-12-02 07:03:20,780 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [860928254] [2024-12-02 07:03:20,780 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:20,781 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-12-02 07:03:20,781 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:20,781 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-12-02 07:03:20,781 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2024-12-02 07:03:20,782 INFO L87 Difference]: Start difference. First operand 76 states and 98 transitions. Second operand has 6 states, 6 states have (on average 4.333333333333333) internal successors, (26), 6 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 07:03:20,981 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:20,981 INFO L93 Difference]: Finished difference Result 253 states and 334 transitions. [2024-12-02 07:03:20,981 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-12-02 07:03:20,981 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.333333333333333) internal successors, (26), 6 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 29 [2024-12-02 07:03:20,982 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:20,984 INFO L225 Difference]: With dead ends: 253 [2024-12-02 07:03:20,984 INFO L226 Difference]: Without dead ends: 185 [2024-12-02 07:03:20,985 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=20, Invalid=36, Unknown=0, NotChecked=0, Total=56 [2024-12-02 07:03:20,985 INFO L435 NwaCegarLoop]: 113 mSDtfsCounter, 230 mSDsluCounter, 294 mSDsCounter, 0 mSdLazyCounter, 82 mSolverCounterSat, 19 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 230 SdHoareTripleChecker+Valid, 407 SdHoareTripleChecker+Invalid, 101 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 19 IncrementalHoareTripleChecker+Valid, 82 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:20,986 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [230 Valid, 407 Invalid, 101 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [19 Valid, 82 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-12-02 07:03:20,987 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 185 states. [2024-12-02 07:03:21,011 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 185 to 179. [2024-12-02 07:03:21,011 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 134 states have (on average 1.3805970149253732) internal successors, (185), 152 states have internal predecessors, (185), 25 states have call successors, (25), 19 states have call predecessors, (25), 19 states have return successors, (26), 17 states have call predecessors, (26), 25 states have call successors, (26) [2024-12-02 07:03:21,013 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 236 transitions. [2024-12-02 07:03:21,013 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 236 transitions. Word has length 29 [2024-12-02 07:03:21,013 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:21,014 INFO L471 AbstractCegarLoop]: Abstraction has 179 states and 236 transitions. [2024-12-02 07:03:21,014 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.333333333333333) internal successors, (26), 6 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 07:03:21,014 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 236 transitions. [2024-12-02 07:03:21,015 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-12-02 07:03:21,015 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:21,015 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:21,015 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-12-02 07:03:21,015 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:21,016 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:21,016 INFO L85 PathProgramCache]: Analyzing trace with hash 1012525492, now seen corresponding path program 1 times [2024-12-02 07:03:21,016 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:21,016 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1832387955] [2024-12-02 07:03:21,016 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:21,016 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:21,032 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:21,128 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 07:03:21,129 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:21,129 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1832387955] [2024-12-02 07:03:21,129 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1832387955] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:21,129 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 07:03:21,129 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-12-02 07:03:21,129 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [797450042] [2024-12-02 07:03:21,129 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:21,129 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-12-02 07:03:21,130 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:21,130 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-12-02 07:03:21,130 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-12-02 07:03:21,130 INFO L87 Difference]: Start difference. First operand 179 states and 236 transitions. Second operand has 5 states, 5 states have (on average 6.0) internal successors, (30), 5 states have internal predecessors, (30), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 07:03:21,226 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:21,226 INFO L93 Difference]: Finished difference Result 423 states and 572 transitions. [2024-12-02 07:03:21,226 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-12-02 07:03:21,226 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 5 states have internal predecessors, (30), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-12-02 07:03:21,227 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:21,229 INFO L225 Difference]: With dead ends: 423 [2024-12-02 07:03:21,229 INFO L226 Difference]: Without dead ends: 252 [2024-12-02 07:03:21,231 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-12-02 07:03:21,231 INFO L435 NwaCegarLoop]: 95 mSDtfsCounter, 48 mSDsluCounter, 249 mSDsCounter, 0 mSdLazyCounter, 30 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 48 SdHoareTripleChecker+Valid, 344 SdHoareTripleChecker+Invalid, 39 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 30 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:21,232 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [48 Valid, 344 Invalid, 39 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 30 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 07:03:21,233 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 252 states. [2024-12-02 07:03:21,262 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 252 to 250. [2024-12-02 07:03:21,262 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 250 states, 187 states have (on average 1.320855614973262) internal successors, (247), 204 states have internal predecessors, (247), 32 states have call successors, (32), 30 states have call predecessors, (32), 30 states have return successors, (42), 29 states have call predecessors, (42), 32 states have call successors, (42) [2024-12-02 07:03:21,265 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 250 states to 250 states and 321 transitions. [2024-12-02 07:03:21,266 INFO L78 Accepts]: Start accepts. Automaton has 250 states and 321 transitions. Word has length 33 [2024-12-02 07:03:21,266 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:21,266 INFO L471 AbstractCegarLoop]: Abstraction has 250 states and 321 transitions. [2024-12-02 07:03:21,266 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 5 states have internal predecessors, (30), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-12-02 07:03:21,266 INFO L276 IsEmpty]: Start isEmpty. Operand 250 states and 321 transitions. [2024-12-02 07:03:21,268 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2024-12-02 07:03:21,268 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:21,268 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:21,268 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-12-02 07:03:21,269 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:21,269 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:21,269 INFO L85 PathProgramCache]: Analyzing trace with hash 288328878, now seen corresponding path program 1 times [2024-12-02 07:03:21,269 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:21,270 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2036207615] [2024-12-02 07:03:21,270 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:21,270 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:21,287 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:21,360 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 07:03:21,360 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:21,360 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2036207615] [2024-12-02 07:03:21,360 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2036207615] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:21,360 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 07:03:21,360 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-12-02 07:03:21,360 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2062036856] [2024-12-02 07:03:21,360 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:21,361 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-12-02 07:03:21,361 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:21,361 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-12-02 07:03:21,361 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-12-02 07:03:21,361 INFO L87 Difference]: Start difference. First operand 250 states and 321 transitions. Second operand has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 07:03:21,395 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:21,396 INFO L93 Difference]: Finished difference Result 498 states and 651 transitions. [2024-12-02 07:03:21,396 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-12-02 07:03:21,397 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 43 [2024-12-02 07:03:21,397 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:21,399 INFO L225 Difference]: With dead ends: 498 [2024-12-02 07:03:21,399 INFO L226 Difference]: Without dead ends: 256 [2024-12-02 07:03:21,400 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-12-02 07:03:21,401 INFO L435 NwaCegarLoop]: 95 mSDtfsCounter, 0 mSDsluCounter, 279 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 374 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:21,401 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 374 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 07:03:21,402 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 256 states. [2024-12-02 07:03:21,423 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 256 to 256. [2024-12-02 07:03:21,423 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 256 states, 193 states have (on average 1.310880829015544) internal successors, (253), 210 states have internal predecessors, (253), 32 states have call successors, (32), 30 states have call predecessors, (32), 30 states have return successors, (42), 29 states have call predecessors, (42), 32 states have call successors, (42) [2024-12-02 07:03:21,425 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 256 states to 256 states and 327 transitions. [2024-12-02 07:03:21,426 INFO L78 Accepts]: Start accepts. Automaton has 256 states and 327 transitions. Word has length 43 [2024-12-02 07:03:21,426 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:21,426 INFO L471 AbstractCegarLoop]: Abstraction has 256 states and 327 transitions. [2024-12-02 07:03:21,426 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 07:03:21,426 INFO L276 IsEmpty]: Start isEmpty. Operand 256 states and 327 transitions. [2024-12-02 07:03:21,427 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2024-12-02 07:03:21,428 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:21,428 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:21,428 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-12-02 07:03:21,428 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:21,428 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:21,428 INFO L85 PathProgramCache]: Analyzing trace with hash -1400614864, now seen corresponding path program 1 times [2024-12-02 07:03:21,428 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:21,429 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [151819167] [2024-12-02 07:03:21,429 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:21,429 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:21,442 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:21,497 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 07:03:21,497 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:21,497 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [151819167] [2024-12-02 07:03:21,497 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [151819167] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:21,497 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 07:03:21,497 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-12-02 07:03:21,497 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1014588706] [2024-12-02 07:03:21,497 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:21,498 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-12-02 07:03:21,498 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:21,498 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-12-02 07:03:21,498 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-12-02 07:03:21,498 INFO L87 Difference]: Start difference. First operand 256 states and 327 transitions. Second operand has 4 states, 4 states have (on average 9.5) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 07:03:21,530 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:21,530 INFO L93 Difference]: Finished difference Result 508 states and 670 transitions. [2024-12-02 07:03:21,530 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-12-02 07:03:21,531 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.5) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 43 [2024-12-02 07:03:21,531 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:21,533 INFO L225 Difference]: With dead ends: 508 [2024-12-02 07:03:21,533 INFO L226 Difference]: Without dead ends: 260 [2024-12-02 07:03:21,534 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-12-02 07:03:21,534 INFO L435 NwaCegarLoop]: 96 mSDtfsCounter, 0 mSDsluCounter, 186 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 282 SdHoareTripleChecker+Invalid, 11 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:21,535 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 282 Invalid, 11 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 07:03:21,535 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 260 states. [2024-12-02 07:03:21,557 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 260 to 260. [2024-12-02 07:03:21,558 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 260 states, 197 states have (on average 1.3045685279187818) internal successors, (257), 214 states have internal predecessors, (257), 32 states have call successors, (32), 30 states have call predecessors, (32), 30 states have return successors, (42), 29 states have call predecessors, (42), 32 states have call successors, (42) [2024-12-02 07:03:21,560 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 331 transitions. [2024-12-02 07:03:21,560 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 331 transitions. Word has length 43 [2024-12-02 07:03:21,561 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:21,561 INFO L471 AbstractCegarLoop]: Abstraction has 260 states and 331 transitions. [2024-12-02 07:03:21,561 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.5) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 07:03:21,561 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 331 transitions. [2024-12-02 07:03:21,562 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2024-12-02 07:03:21,562 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:21,562 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:21,562 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-12-02 07:03:21,563 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:21,563 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:21,563 INFO L85 PathProgramCache]: Analyzing trace with hash -977913038, now seen corresponding path program 1 times [2024-12-02 07:03:21,563 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:21,563 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1864430253] [2024-12-02 07:03:21,563 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:21,563 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:21,577 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:21,644 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 07:03:21,645 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:21,645 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1864430253] [2024-12-02 07:03:21,645 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1864430253] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:21,645 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 07:03:21,645 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-12-02 07:03:21,645 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [223272237] [2024-12-02 07:03:21,645 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:21,645 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-12-02 07:03:21,645 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:21,646 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-12-02 07:03:21,646 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-12-02 07:03:21,646 INFO L87 Difference]: Start difference. First operand 260 states and 331 transitions. Second operand has 4 states, 4 states have (on average 9.5) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 07:03:21,767 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:21,768 INFO L93 Difference]: Finished difference Result 874 states and 1151 transitions. [2024-12-02 07:03:21,768 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-12-02 07:03:21,768 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.5) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 43 [2024-12-02 07:03:21,769 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:21,772 INFO L225 Difference]: With dead ends: 874 [2024-12-02 07:03:21,772 INFO L226 Difference]: Without dead ends: 622 [2024-12-02 07:03:21,773 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-12-02 07:03:21,774 INFO L435 NwaCegarLoop]: 162 mSDtfsCounter, 128 mSDsluCounter, 156 mSDsCounter, 0 mSdLazyCounter, 55 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 128 SdHoareTripleChecker+Valid, 318 SdHoareTripleChecker+Invalid, 60 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 55 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:21,774 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [128 Valid, 318 Invalid, 60 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 55 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-12-02 07:03:21,790 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 622 states. [2024-12-02 07:03:21,845 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 622 to 608. [2024-12-02 07:03:21,846 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 608 states, 459 states have (on average 1.2788671023965141) internal successors, (587), 493 states have internal predecessors, (587), 75 states have call successors, (75), 71 states have call predecessors, (75), 73 states have return successors, (118), 71 states have call predecessors, (118), 75 states have call successors, (118) [2024-12-02 07:03:21,851 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 608 states to 608 states and 780 transitions. [2024-12-02 07:03:21,852 INFO L78 Accepts]: Start accepts. Automaton has 608 states and 780 transitions. Word has length 43 [2024-12-02 07:03:21,852 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:21,852 INFO L471 AbstractCegarLoop]: Abstraction has 608 states and 780 transitions. [2024-12-02 07:03:21,853 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.5) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 07:03:21,853 INFO L276 IsEmpty]: Start isEmpty. Operand 608 states and 780 transitions. [2024-12-02 07:03:21,854 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2024-12-02 07:03:21,854 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:21,854 INFO L218 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:21,854 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-12-02 07:03:21,854 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:21,855 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:21,855 INFO L85 PathProgramCache]: Analyzing trace with hash -629236276, now seen corresponding path program 1 times [2024-12-02 07:03:21,855 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:21,855 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1928470308] [2024-12-02 07:03:21,855 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:21,855 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:21,869 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:21,912 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 07:03:21,912 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:21,912 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1928470308] [2024-12-02 07:03:21,912 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1928470308] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:21,912 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 07:03:21,912 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-12-02 07:03:21,912 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [666806081] [2024-12-02 07:03:21,912 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:21,913 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 07:03:21,913 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:21,913 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 07:03:21,913 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 07:03:21,913 INFO L87 Difference]: Start difference. First operand 608 states and 780 transitions. Second operand has 3 states, 3 states have (on average 13.333333333333334) internal successors, (40), 3 states have internal predecessors, (40), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-12-02 07:03:21,986 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:21,986 INFO L93 Difference]: Finished difference Result 968 states and 1276 transitions. [2024-12-02 07:03:21,986 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 07:03:21,986 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 13.333333333333334) internal successors, (40), 3 states have internal predecessors, (40), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 47 [2024-12-02 07:03:21,987 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:21,992 INFO L225 Difference]: With dead ends: 968 [2024-12-02 07:03:21,992 INFO L226 Difference]: Without dead ends: 966 [2024-12-02 07:03:21,993 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 07:03:21,994 INFO L435 NwaCegarLoop]: 97 mSDtfsCounter, 71 mSDsluCounter, 86 mSDsCounter, 0 mSdLazyCounter, 3 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 71 SdHoareTripleChecker+Valid, 183 SdHoareTripleChecker+Invalid, 8 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 3 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:21,994 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [71 Valid, 183 Invalid, 8 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 3 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 07:03:21,995 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 966 states. [2024-12-02 07:03:22,081 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 966 to 908. [2024-12-02 07:03:22,083 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 908 states, 683 states have (on average 1.2840409956076135) internal successors, (877), 739 states have internal predecessors, (877), 115 states have call successors, (115), 107 states have call predecessors, (115), 109 states have return successors, (215), 101 states have call predecessors, (215), 115 states have call successors, (215) [2024-12-02 07:03:22,099 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 908 states to 908 states and 1207 transitions. [2024-12-02 07:03:22,100 INFO L78 Accepts]: Start accepts. Automaton has 908 states and 1207 transitions. Word has length 47 [2024-12-02 07:03:22,101 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:22,101 INFO L471 AbstractCegarLoop]: Abstraction has 908 states and 1207 transitions. [2024-12-02 07:03:22,101 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 13.333333333333334) internal successors, (40), 3 states have internal predecessors, (40), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-12-02 07:03:22,101 INFO L276 IsEmpty]: Start isEmpty. Operand 908 states and 1207 transitions. [2024-12-02 07:03:22,106 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 91 [2024-12-02 07:03:22,107 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:22,107 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:22,107 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2024-12-02 07:03:22,107 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:22,108 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:22,108 INFO L85 PathProgramCache]: Analyzing trace with hash 1739661003, now seen corresponding path program 1 times [2024-12-02 07:03:22,108 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:22,108 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1933444675] [2024-12-02 07:03:22,108 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:22,108 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:22,125 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:22,235 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 24 proven. 8 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-12-02 07:03:22,235 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:22,236 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1933444675] [2024-12-02 07:03:22,236 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1933444675] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 07:03:22,236 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1800862183] [2024-12-02 07:03:22,236 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:22,236 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 07:03:22,236 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 07:03:22,238 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 07:03:22,242 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-12-02 07:03:22,333 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:22,335 INFO L256 TraceCheckSpWp]: Trace formula consists of 310 conjuncts, 2 conjuncts are in the unsatisfiable core [2024-12-02 07:03:22,339 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 07:03:22,372 INFO L134 CoverageAnalysis]: Checked inductivity of 38 backedges. 25 proven. 0 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-12-02 07:03:22,372 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-12-02 07:03:22,372 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1800862183] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:22,372 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-12-02 07:03:22,372 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [5] total 6 [2024-12-02 07:03:22,372 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1794292125] [2024-12-02 07:03:22,372 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:22,373 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 07:03:22,373 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:22,373 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 07:03:22,373 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-12-02 07:03:22,374 INFO L87 Difference]: Start difference. First operand 908 states and 1207 transitions. Second operand has 3 states, 3 states have (on average 22.0) internal successors, (66), 3 states have internal predecessors, (66), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 3 states have call successors, (6) [2024-12-02 07:03:22,465 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:22,465 INFO L93 Difference]: Finished difference Result 1999 states and 2767 transitions. [2024-12-02 07:03:22,466 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 07:03:22,466 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 22.0) internal successors, (66), 3 states have internal predecessors, (66), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 3 states have call successors, (6) Word has length 90 [2024-12-02 07:03:22,466 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:22,473 INFO L225 Difference]: With dead ends: 1999 [2024-12-02 07:03:22,473 INFO L226 Difference]: Without dead ends: 1221 [2024-12-02 07:03:22,477 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 94 GetRequests, 90 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-12-02 07:03:22,477 INFO L435 NwaCegarLoop]: 177 mSDtfsCounter, 74 mSDsluCounter, 91 mSDsCounter, 0 mSdLazyCounter, 12 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 74 SdHoareTripleChecker+Valid, 268 SdHoareTripleChecker+Invalid, 14 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 12 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:22,478 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [74 Valid, 268 Invalid, 14 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 12 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 07:03:22,479 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1221 states. [2024-12-02 07:03:22,588 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1221 to 1036. [2024-12-02 07:03:22,590 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1036 states, 782 states have (on average 1.2838874680306904) internal successors, (1004), 837 states have internal predecessors, (1004), 129 states have call successors, (129), 121 states have call predecessors, (129), 124 states have return successors, (198), 114 states have call predecessors, (198), 129 states have call successors, (198) [2024-12-02 07:03:22,599 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1036 states to 1036 states and 1331 transitions. [2024-12-02 07:03:22,600 INFO L78 Accepts]: Start accepts. Automaton has 1036 states and 1331 transitions. Word has length 90 [2024-12-02 07:03:22,601 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:22,601 INFO L471 AbstractCegarLoop]: Abstraction has 1036 states and 1331 transitions. [2024-12-02 07:03:22,601 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 22.0) internal successors, (66), 3 states have internal predecessors, (66), 3 states have call successors, (6), 3 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 3 states have call successors, (6) [2024-12-02 07:03:22,601 INFO L276 IsEmpty]: Start isEmpty. Operand 1036 states and 1331 transitions. [2024-12-02 07:03:22,606 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 85 [2024-12-02 07:03:22,606 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:22,606 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:22,615 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-12-02 07:03:22,806 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable8 [2024-12-02 07:03:22,807 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:22,807 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:22,807 INFO L85 PathProgramCache]: Analyzing trace with hash -1513714536, now seen corresponding path program 1 times [2024-12-02 07:03:22,807 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:22,807 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2035199441] [2024-12-02 07:03:22,807 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:22,807 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:22,828 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:22,960 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 20 proven. 3 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2024-12-02 07:03:22,960 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:22,961 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2035199441] [2024-12-02 07:03:22,961 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2035199441] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 07:03:22,961 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [459713990] [2024-12-02 07:03:22,961 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:22,961 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 07:03:22,961 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 07:03:22,963 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 07:03:22,966 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-12-02 07:03:23,075 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:23,077 INFO L256 TraceCheckSpWp]: Trace formula consists of 300 conjuncts, 4 conjuncts are in the unsatisfiable core [2024-12-02 07:03:23,081 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 07:03:23,176 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 34 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 07:03:23,176 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-12-02 07:03:23,176 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [459713990] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:23,176 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-12-02 07:03:23,176 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [6] total 7 [2024-12-02 07:03:23,176 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1682137293] [2024-12-02 07:03:23,176 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:23,177 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 07:03:23,177 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:23,178 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 07:03:23,178 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=28, Unknown=0, NotChecked=0, Total=42 [2024-12-02 07:03:23,178 INFO L87 Difference]: Start difference. First operand 1036 states and 1331 transitions. Second operand has 3 states, 3 states have (on average 23.666666666666668) internal successors, (71), 3 states have internal predecessors, (71), 3 states have call successors, (7), 3 states have call predecessors, (7), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-12-02 07:03:23,325 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:23,325 INFO L93 Difference]: Finished difference Result 1895 states and 2471 transitions. [2024-12-02 07:03:23,326 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 07:03:23,326 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 23.666666666666668) internal successors, (71), 3 states have internal predecessors, (71), 3 states have call successors, (7), 3 states have call predecessors, (7), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) Word has length 84 [2024-12-02 07:03:23,326 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:23,335 INFO L225 Difference]: With dead ends: 1895 [2024-12-02 07:03:23,335 INFO L226 Difference]: Without dead ends: 983 [2024-12-02 07:03:23,339 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 91 GetRequests, 86 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=14, Invalid=28, Unknown=0, NotChecked=0, Total=42 [2024-12-02 07:03:23,340 INFO L435 NwaCegarLoop]: 137 mSDtfsCounter, 42 mSDsluCounter, 66 mSDsCounter, 0 mSdLazyCounter, 12 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 42 SdHoareTripleChecker+Valid, 203 SdHoareTripleChecker+Invalid, 15 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 12 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:23,340 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [42 Valid, 203 Invalid, 15 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 12 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 07:03:23,342 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 983 states. [2024-12-02 07:03:23,464 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 983 to 951. [2024-12-02 07:03:23,467 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 951 states, 719 states have (on average 1.2517385257301807) internal successors, (900), 766 states have internal predecessors, (900), 117 states have call successors, (117), 111 states have call predecessors, (117), 114 states have return successors, (164), 108 states have call predecessors, (164), 117 states have call successors, (164) [2024-12-02 07:03:23,475 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 951 states to 951 states and 1181 transitions. [2024-12-02 07:03:23,476 INFO L78 Accepts]: Start accepts. Automaton has 951 states and 1181 transitions. Word has length 84 [2024-12-02 07:03:23,477 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:23,477 INFO L471 AbstractCegarLoop]: Abstraction has 951 states and 1181 transitions. [2024-12-02 07:03:23,477 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 23.666666666666668) internal successors, (71), 3 states have internal predecessors, (71), 3 states have call successors, (7), 3 states have call predecessors, (7), 3 states have return successors, (6), 3 states have call predecessors, (6), 3 states have call successors, (6) [2024-12-02 07:03:23,477 INFO L276 IsEmpty]: Start isEmpty. Operand 951 states and 1181 transitions. [2024-12-02 07:03:23,482 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 88 [2024-12-02 07:03:23,482 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:23,482 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:23,494 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-12-02 07:03:23,683 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 07:03:23,683 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:23,683 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:23,683 INFO L85 PathProgramCache]: Analyzing trace with hash 1967939477, now seen corresponding path program 1 times [2024-12-02 07:03:23,684 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:23,684 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2062882707] [2024-12-02 07:03:23,684 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:23,684 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:23,709 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:23,818 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 19 proven. 2 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-12-02 07:03:23,818 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:23,818 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2062882707] [2024-12-02 07:03:23,818 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2062882707] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 07:03:23,818 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [491631535] [2024-12-02 07:03:23,818 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:23,818 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 07:03:23,818 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 07:03:23,820 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 07:03:23,822 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-12-02 07:03:23,915 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:23,917 INFO L256 TraceCheckSpWp]: Trace formula consists of 302 conjuncts, 11 conjuncts are in the unsatisfiable core [2024-12-02 07:03:23,920 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 07:03:24,116 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 5 proven. 2 refuted. 0 times theorem prover too weak. 19 trivial. 0 not checked. [2024-12-02 07:03:24,116 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2024-12-02 07:03:24,257 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-12-02 07:03:24,257 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [491631535] provided 1 perfect and 1 imperfect interpolant sequences [2024-12-02 07:03:24,257 INFO L185 FreeRefinementEngine]: Found 1 perfect and 2 imperfect interpolant sequences. [2024-12-02 07:03:24,257 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [7, 5] total 10 [2024-12-02 07:03:24,257 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1327523583] [2024-12-02 07:03:24,257 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:24,258 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-12-02 07:03:24,258 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:24,258 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-12-02 07:03:24,258 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=24, Invalid=66, Unknown=0, NotChecked=0, Total=90 [2024-12-02 07:03:24,258 INFO L87 Difference]: Start difference. First operand 951 states and 1181 transitions. Second operand has 6 states, 6 states have (on average 10.666666666666666) internal successors, (64), 5 states have internal predecessors, (64), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2024-12-02 07:03:24,433 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:24,434 INFO L93 Difference]: Finished difference Result 2708 states and 3439 transitions. [2024-12-02 07:03:24,434 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-12-02 07:03:24,434 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 10.666666666666666) internal successors, (64), 5 states have internal predecessors, (64), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) Word has length 87 [2024-12-02 07:03:24,435 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:24,443 INFO L225 Difference]: With dead ends: 2708 [2024-12-02 07:03:24,443 INFO L226 Difference]: Without dead ends: 1765 [2024-12-02 07:03:24,446 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 182 GetRequests, 171 SyntacticMatches, 1 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=34, Invalid=98, Unknown=0, NotChecked=0, Total=132 [2024-12-02 07:03:24,447 INFO L435 NwaCegarLoop]: 96 mSDtfsCounter, 57 mSDsluCounter, 342 mSDsCounter, 0 mSdLazyCounter, 47 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 58 SdHoareTripleChecker+Valid, 438 SdHoareTripleChecker+Invalid, 51 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 47 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:24,447 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [58 Valid, 438 Invalid, 51 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 47 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-12-02 07:03:24,450 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1765 states. [2024-12-02 07:03:24,533 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1765 to 1586. [2024-12-02 07:03:24,535 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1586 states, 1187 states have (on average 1.223251895534962) internal successors, (1452), 1271 states have internal predecessors, (1452), 199 states have call successors, (199), 189 states have call predecessors, (199), 199 states have return successors, (285), 184 states have call predecessors, (285), 199 states have call successors, (285) [2024-12-02 07:03:24,542 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1586 states to 1586 states and 1936 transitions. [2024-12-02 07:03:24,544 INFO L78 Accepts]: Start accepts. Automaton has 1586 states and 1936 transitions. Word has length 87 [2024-12-02 07:03:24,544 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:24,544 INFO L471 AbstractCegarLoop]: Abstraction has 1586 states and 1936 transitions. [2024-12-02 07:03:24,544 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 10.666666666666666) internal successors, (64), 5 states have internal predecessors, (64), 2 states have call successors, (8), 2 states have call predecessors, (8), 2 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2024-12-02 07:03:24,545 INFO L276 IsEmpty]: Start isEmpty. Operand 1586 states and 1936 transitions. [2024-12-02 07:03:24,548 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 92 [2024-12-02 07:03:24,548 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:24,548 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:24,557 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-12-02 07:03:24,748 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 07:03:24,749 INFO L396 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:24,749 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:24,749 INFO L85 PathProgramCache]: Analyzing trace with hash -1149199823, now seen corresponding path program 1 times [2024-12-02 07:03:24,749 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:24,749 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [781283999] [2024-12-02 07:03:24,749 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:24,749 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:24,776 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:24,962 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 19 proven. 2 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2024-12-02 07:03:24,962 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:24,962 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [781283999] [2024-12-02 07:03:24,962 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [781283999] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 07:03:24,963 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [270529849] [2024-12-02 07:03:24,963 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:24,963 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 07:03:24,963 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 07:03:24,965 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 07:03:24,967 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-12-02 07:03:25,068 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:25,070 INFO L256 TraceCheckSpWp]: Trace formula consists of 312 conjuncts, 11 conjuncts are in the unsatisfiable core [2024-12-02 07:03:25,074 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 07:03:25,163 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 26 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 07:03:25,163 INFO L308 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-12-02 07:03:25,163 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [270529849] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:25,163 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-12-02 07:03:25,163 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [6] total 7 [2024-12-02 07:03:25,163 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1779990255] [2024-12-02 07:03:25,164 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:25,164 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-12-02 07:03:25,164 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:25,165 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-12-02 07:03:25,165 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=28, Unknown=0, NotChecked=0, Total=42 [2024-12-02 07:03:25,165 INFO L87 Difference]: Start difference. First operand 1586 states and 1936 transitions. Second operand has 6 states, 6 states have (on average 12.333333333333334) internal successors, (74), 6 states have internal predecessors, (74), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2024-12-02 07:03:25,480 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:25,480 INFO L93 Difference]: Finished difference Result 3918 states and 4971 transitions. [2024-12-02 07:03:25,481 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-12-02 07:03:25,481 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 12.333333333333334) internal successors, (74), 6 states have internal predecessors, (74), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) Word has length 91 [2024-12-02 07:03:25,481 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:25,499 INFO L225 Difference]: With dead ends: 3918 [2024-12-02 07:03:25,499 INFO L226 Difference]: Without dead ends: 2566 [2024-12-02 07:03:25,505 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 99 GetRequests, 92 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=24, Invalid=48, Unknown=0, NotChecked=0, Total=72 [2024-12-02 07:03:25,506 INFO L435 NwaCegarLoop]: 146 mSDtfsCounter, 129 mSDsluCounter, 433 mSDsCounter, 0 mSdLazyCounter, 57 mSolverCounterSat, 14 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 129 SdHoareTripleChecker+Valid, 579 SdHoareTripleChecker+Invalid, 71 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 14 IncrementalHoareTripleChecker+Valid, 57 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:25,506 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [129 Valid, 579 Invalid, 71 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [14 Valid, 57 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-12-02 07:03:25,509 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2566 states. [2024-12-02 07:03:25,731 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2566 to 2474. [2024-12-02 07:03:25,737 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 2474 states, 1833 states have (on average 1.2138570649208946) internal successors, (2225), 1961 states have internal predecessors, (2225), 335 states have call successors, (335), 319 states have call predecessors, (335), 305 states have return successors, (525), 280 states have call predecessors, (525), 335 states have call successors, (525) [2024-12-02 07:03:25,756 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 2474 states to 2474 states and 3085 transitions. [2024-12-02 07:03:25,759 INFO L78 Accepts]: Start accepts. Automaton has 2474 states and 3085 transitions. Word has length 91 [2024-12-02 07:03:25,760 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:25,760 INFO L471 AbstractCegarLoop]: Abstraction has 2474 states and 3085 transitions. [2024-12-02 07:03:25,760 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 12.333333333333334) internal successors, (74), 6 states have internal predecessors, (74), 3 states have call successors, (9), 3 states have call predecessors, (9), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2024-12-02 07:03:25,760 INFO L276 IsEmpty]: Start isEmpty. Operand 2474 states and 3085 transitions. [2024-12-02 07:03:25,764 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 92 [2024-12-02 07:03:25,764 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:25,764 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:25,775 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-12-02 07:03:25,964 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 07:03:25,965 INFO L396 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:25,965 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:25,965 INFO L85 PathProgramCache]: Analyzing trace with hash -1283213329, now seen corresponding path program 1 times [2024-12-02 07:03:25,965 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:25,965 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [168553769] [2024-12-02 07:03:25,965 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:25,966 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:25,986 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:26,117 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 8 proven. 0 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2024-12-02 07:03:26,117 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:26,117 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [168553769] [2024-12-02 07:03:26,117 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [168553769] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:26,117 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 07:03:26,117 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2024-12-02 07:03:26,117 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [26938950] [2024-12-02 07:03:26,117 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:26,118 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2024-12-02 07:03:26,118 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:26,118 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2024-12-02 07:03:26,118 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2024-12-02 07:03:26,118 INFO L87 Difference]: Start difference. First operand 2474 states and 3085 transitions. Second operand has 7 states, 7 states have (on average 9.142857142857142) internal successors, (64), 7 states have internal predecessors, (64), 2 states have call successors, (8), 1 states have call predecessors, (8), 1 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2024-12-02 07:03:26,252 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:26,252 INFO L93 Difference]: Finished difference Result 3286 states and 4086 transitions. [2024-12-02 07:03:26,252 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-12-02 07:03:26,252 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 9.142857142857142) internal successors, (64), 7 states have internal predecessors, (64), 2 states have call successors, (8), 1 states have call predecessors, (8), 1 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) Word has length 91 [2024-12-02 07:03:26,253 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:26,260 INFO L225 Difference]: With dead ends: 3286 [2024-12-02 07:03:26,260 INFO L226 Difference]: Without dead ends: 1058 [2024-12-02 07:03:26,265 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2024-12-02 07:03:26,266 INFO L435 NwaCegarLoop]: 85 mSDtfsCounter, 0 mSDsluCounter, 418 mSDsCounter, 0 mSdLazyCounter, 32 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 503 SdHoareTripleChecker+Invalid, 32 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 32 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:26,266 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 503 Invalid, 32 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 32 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 07:03:26,268 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1058 states. [2024-12-02 07:03:26,343 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1058 to 1028. [2024-12-02 07:03:26,345 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1028 states, 777 states have (on average 1.1956241956241955) internal successors, (929), 823 states have internal predecessors, (929), 127 states have call successors, (127), 127 states have call predecessors, (127), 123 states have return successors, (186), 116 states have call predecessors, (186), 127 states have call successors, (186) [2024-12-02 07:03:26,350 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1028 states to 1028 states and 1242 transitions. [2024-12-02 07:03:26,353 INFO L78 Accepts]: Start accepts. Automaton has 1028 states and 1242 transitions. Word has length 91 [2024-12-02 07:03:26,353 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:26,353 INFO L471 AbstractCegarLoop]: Abstraction has 1028 states and 1242 transitions. [2024-12-02 07:03:26,353 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 9.142857142857142) internal successors, (64), 7 states have internal predecessors, (64), 2 states have call successors, (8), 1 states have call predecessors, (8), 1 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2024-12-02 07:03:26,353 INFO L276 IsEmpty]: Start isEmpty. Operand 1028 states and 1242 transitions. [2024-12-02 07:03:26,356 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 97 [2024-12-02 07:03:26,356 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 07:03:26,356 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:26,356 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2024-12-02 07:03:26,357 INFO L396 AbstractCegarLoop]: === Iteration 14 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 07:03:26,357 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 07:03:26,357 INFO L85 PathProgramCache]: Analyzing trace with hash 999171619, now seen corresponding path program 1 times [2024-12-02 07:03:26,357 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 07:03:26,357 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1984196632] [2024-12-02 07:03:26,357 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 07:03:26,357 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 07:03:26,372 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 07:03:26,399 INFO L134 CoverageAnalysis]: Checked inductivity of 34 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2024-12-02 07:03:26,399 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 07:03:26,400 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1984196632] [2024-12-02 07:03:26,400 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1984196632] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 07:03:26,400 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 07:03:26,400 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-12-02 07:03:26,400 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1003342805] [2024-12-02 07:03:26,400 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 07:03:26,400 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 07:03:26,400 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 07:03:26,401 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 07:03:26,401 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 07:03:26,401 INFO L87 Difference]: Start difference. First operand 1028 states and 1242 transitions. Second operand has 3 states, 3 states have (on average 21.0) internal successors, (63), 3 states have internal predecessors, (63), 3 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2024-12-02 07:03:26,453 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 07:03:26,453 INFO L93 Difference]: Finished difference Result 1250 states and 1528 transitions. [2024-12-02 07:03:26,454 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 07:03:26,454 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 21.0) internal successors, (63), 3 states have internal predecessors, (63), 3 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) Word has length 96 [2024-12-02 07:03:26,454 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 07:03:26,456 INFO L225 Difference]: With dead ends: 1250 [2024-12-02 07:03:26,457 INFO L226 Difference]: Without dead ends: 0 [2024-12-02 07:03:26,459 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 07:03:26,460 INFO L435 NwaCegarLoop]: 111 mSDtfsCounter, 37 mSDsluCounter, 83 mSDsCounter, 0 mSdLazyCounter, 3 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 194 SdHoareTripleChecker+Invalid, 3 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 3 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 07:03:26,460 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 194 Invalid, 3 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 3 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 07:03:26,460 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-12-02 07:03:26,460 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-12-02 07:03:26,461 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-12-02 07:03:26,461 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-12-02 07:03:26,462 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 96 [2024-12-02 07:03:26,463 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 07:03:26,463 INFO L471 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-12-02 07:03:26,463 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 21.0) internal successors, (63), 3 states have internal predecessors, (63), 3 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (8), 2 states have call predecessors, (8), 2 states have call successors, (8) [2024-12-02 07:03:26,463 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-12-02 07:03:26,463 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-12-02 07:03:26,466 INFO L782 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-12-02 07:03:26,466 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2024-12-02 07:03:26,468 INFO L422 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 07:03:26,470 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-12-02 07:03:31,117 INFO L170 ceAbstractionStarter]: Computing trace abstraction results [2024-12-02 07:03:31,130 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 02.12 07:03:31 BoogieIcfgContainer [2024-12-02 07:03:31,130 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-12-02 07:03:31,130 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-12-02 07:03:31,130 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-12-02 07:03:31,130 INFO L274 PluginConnector]: Witness Printer initialized [2024-12-02 07:03:31,131 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 07:03:20" (3/4) ... [2024-12-02 07:03:31,132 INFO L146 WitnessPrinter]: Generating witness for correct program [2024-12-02 07:03:31,136 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2024-12-02 07:03:31,136 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2024-12-02 07:03:31,136 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2024-12-02 07:03:31,136 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2024-12-02 07:03:31,136 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2024-12-02 07:03:31,136 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2024-12-02 07:03:31,137 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2024-12-02 07:03:31,137 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2024-12-02 07:03:31,142 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 20 nodes and edges [2024-12-02 07:03:31,142 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2024-12-02 07:03:31,143 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2024-12-02 07:03:31,143 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-12-02 07:03:31,143 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-12-02 07:03:31,218 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/witness.graphml [2024-12-02 07:03:31,218 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/witness.yml [2024-12-02 07:03:31,218 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-12-02 07:03:31,219 INFO L158 Benchmark]: Toolchain (without parser) took 11903.11ms. Allocated memory was 142.6MB in the beginning and 343.9MB in the end (delta: 201.3MB). Free memory was 115.7MB in the beginning and 231.2MB in the end (delta: -115.5MB). Peak memory consumption was 83.1MB. Max. memory is 16.1GB. [2024-12-02 07:03:31,220 INFO L158 Benchmark]: CDTParser took 0.29ms. Allocated memory is still 142.6MB. Free memory is still 83.1MB. There was no memory consumed. Max. memory is 16.1GB. [2024-12-02 07:03:31,220 INFO L158 Benchmark]: CACSL2BoogieTranslator took 418.47ms. Allocated memory is still 142.6MB. Free memory was 115.5MB in the beginning and 96.6MB in the end (delta: 18.9MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-12-02 07:03:31,220 INFO L158 Benchmark]: Boogie Procedure Inliner took 39.38ms. Allocated memory is still 142.6MB. Free memory was 96.6MB in the beginning and 94.7MB in the end (delta: 1.9MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2024-12-02 07:03:31,220 INFO L158 Benchmark]: Boogie Preprocessor took 40.06ms. Allocated memory is still 142.6MB. Free memory was 94.7MB in the beginning and 92.9MB in the end (delta: 1.8MB). There was no memory consumed. Max. memory is 16.1GB. [2024-12-02 07:03:31,221 INFO L158 Benchmark]: RCFGBuilder took 343.70ms. Allocated memory is still 142.6MB. Free memory was 92.9MB in the beginning and 75.7MB in the end (delta: 17.1MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-12-02 07:03:31,221 INFO L158 Benchmark]: TraceAbstraction took 10967.20ms. Allocated memory was 142.6MB in the beginning and 343.9MB in the end (delta: 201.3MB). Free memory was 75.2MB in the beginning and 239.4MB in the end (delta: -164.2MB). Peak memory consumption was 164.5MB. Max. memory is 16.1GB. [2024-12-02 07:03:31,221 INFO L158 Benchmark]: Witness Printer took 88.19ms. Allocated memory is still 343.9MB. Free memory was 239.4MB in the beginning and 231.2MB in the end (delta: 8.1MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2024-12-02 07:03:31,223 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.29ms. Allocated memory is still 142.6MB. Free memory is still 83.1MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 418.47ms. Allocated memory is still 142.6MB. Free memory was 115.5MB in the beginning and 96.6MB in the end (delta: 18.9MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 39.38ms. Allocated memory is still 142.6MB. Free memory was 96.6MB in the beginning and 94.7MB in the end (delta: 1.9MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Preprocessor took 40.06ms. Allocated memory is still 142.6MB. Free memory was 94.7MB in the beginning and 92.9MB in the end (delta: 1.8MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 343.70ms. Allocated memory is still 142.6MB. Free memory was 92.9MB in the beginning and 75.7MB in the end (delta: 17.1MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 10967.20ms. Allocated memory was 142.6MB in the beginning and 343.9MB in the end (delta: 201.3MB). Free memory was 75.2MB in the beginning and 239.4MB in the end (delta: -164.2MB). Peak memory consumption was 164.5MB. Max. memory is 16.1GB. * Witness Printer took 88.19ms. Allocated memory is still 343.9MB. Free memory was 239.4MB in the beginning and 231.2MB in the end (delta: 8.1MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49] - GenericResultAtLocation [Line: 121]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [121] - GenericResultAtLocation [Line: 343]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification2_spec.i","") [343] - GenericResultAtLocation [Line: 383]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [383] - GenericResultAtLocation [Line: 421]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [421] - GenericResultAtLocation [Line: 525]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [525] - GenericResultAtLocation [Line: 622]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [622] - GenericResultAtLocation [Line: 631]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [631] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 627]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 93 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 6.2s, OverallIterations: 14, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.7s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 837 SdHoareTripleChecker+Valid, 0.5s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 832 mSDsluCounter, 4385 SdHoareTripleChecker+Invalid, 0.4s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2760 mSDsCounter, 61 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 362 IncrementalHoareTripleChecker+Invalid, 423 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 61 mSolverCounterUnsat, 1625 mSDtfsCounter, 362 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 516 GetRequests, 463 SyntacticMatches, 1 SemanticMatches, 52 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 21 ImplicationChecksByTransitivity, 0.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=2474occurred in iteration=12, InterpolantAutomatonStates: 61, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 1.0s AutomataMinimizationTime, 14 MinimizatonAttempts, 598 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 1.8s InterpolantComputationTime, 1179 NumberOfCodeBlocks, 1179 NumberOfCodeBlocksAsserted, 18 NumberOfCheckSat, 1247 ConstructedInterpolants, 0 QuantifiedInterpolants, 2152 SizeOfPredicates, 4 NumberOfNonLiveVariables, 1224 ConjunctsInSsa, 28 ConjunctsInUnsatCore, 19 InterpolantComputations, 14 PerfectInterpolantSequences, 317/334 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available, ConComCheckerStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 65]: Loop Invariant Derived loop invariant: ((((((1 <= pumpRunning) && (2 <= waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0)) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (1 <= waterLevel))) || (((((pumpRunning == 0) && (methAndRunningLastTime == 0)) && (splverifierCounter == 0)) && (1 <= waterLevel)) && (0 == systemActive))) - InvariantResult [Line: 537]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 64]: Location Invariant Derived location invariant: 0 RESULT: Ultimate proved your program to be correct! [2024-12-02 07:03:31,239 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_80a2aab2-f826-4e95-a703-3daa5b846d1e/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE