./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec5_product61.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version d790fecc Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/plugins/org.eclipse.equinox.launcher_1.6.800.v20240513-1750.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec5_product61.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1 --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 12ff1c3352fe657a44d5503b0c0550124efd9c84e66a259e2d68c9ba31095791 --- Real Ultimate output --- This is Ultimate 0.3.0-dev-d790fec [2024-12-02 10:25:22,725 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-12-02 10:25:22,783 INFO L114 SettingsManager]: Loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-12-02 10:25:22,788 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-12-02 10:25:22,788 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-12-02 10:25:22,808 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-12-02 10:25:22,809 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-12-02 10:25:22,809 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-12-02 10:25:22,809 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-12-02 10:25:22,809 INFO L153 SettingsManager]: * Use memory slicer=true [2024-12-02 10:25:22,809 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-12-02 10:25:22,809 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-12-02 10:25:22,810 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-12-02 10:25:22,810 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-12-02 10:25:22,810 INFO L153 SettingsManager]: * Use SBE=true [2024-12-02 10:25:22,810 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-12-02 10:25:22,810 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-12-02 10:25:22,810 INFO L153 SettingsManager]: * sizeof long=4 [2024-12-02 10:25:22,810 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-12-02 10:25:22,810 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-12-02 10:25:22,811 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-12-02 10:25:22,811 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-12-02 10:25:22,811 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-12-02 10:25:22,811 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-12-02 10:25:22,811 INFO L153 SettingsManager]: * sizeof long double=12 [2024-12-02 10:25:22,811 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-12-02 10:25:22,811 INFO L153 SettingsManager]: * Behaviour of calls to undefined functions=OVERAPPROXIMATE_BEHAVIOUR [2024-12-02 10:25:22,811 INFO L153 SettingsManager]: * Use constant arrays=true [2024-12-02 10:25:22,811 INFO L151 SettingsManager]: Preferences of IcfgBuilder differ from their defaults: [2024-12-02 10:25:22,811 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-12-02 10:25:22,811 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-12-02 10:25:22,812 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-12-02 10:25:22,812 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * Compute procedure contracts=false [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-12-02 10:25:22,812 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-12-02 10:25:22,813 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-12-02 10:25:22,813 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-12-02 10:25:22,813 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-12-02 10:25:22,813 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-12-02 10:25:22,813 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 12ff1c3352fe657a44d5503b0c0550124efd9c84e66a259e2d68c9ba31095791 [2024-12-02 10:25:23,053 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-12-02 10:25:23,061 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-12-02 10:25:23,064 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-12-02 10:25:23,065 INFO L270 PluginConnector]: Initializing CDTParser... [2024-12-02 10:25:23,065 INFO L274 PluginConnector]: CDTParser initialized [2024-12-02 10:25:23,066 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/../../sv-benchmarks/c/product-lines/minepump_spec5_product61.cil.c [2024-12-02 10:25:25,678 INFO L533 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/data/c0178837f/32241098f1a14b56901f90beb935e460/FLAG1e7c75264 [2024-12-02 10:25:25,939 INFO L384 CDTParser]: Found 1 translation units. [2024-12-02 10:25:25,940 INFO L180 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/sv-benchmarks/c/product-lines/minepump_spec5_product61.cil.c [2024-12-02 10:25:25,953 INFO L427 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/data/c0178837f/32241098f1a14b56901f90beb935e460/FLAG1e7c75264 [2024-12-02 10:25:25,966 INFO L435 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/data/c0178837f/32241098f1a14b56901f90beb935e460 [2024-12-02 10:25:25,968 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-12-02 10:25:25,970 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-12-02 10:25:25,971 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-12-02 10:25:25,971 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-12-02 10:25:25,974 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-12-02 10:25:25,974 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 02.12 10:25:25" (1/1) ... [2024-12-02 10:25:25,975 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6752e498 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:25, skipping insertion in model container [2024-12-02 10:25:25,975 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 02.12 10:25:25" (1/1) ... [2024-12-02 10:25:26,002 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-12-02 10:25:26,211 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/sv-benchmarks/c/product-lines/minepump_spec5_product61.cil.c[18376,18389] [2024-12-02 10:25:26,220 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-12-02 10:25:26,230 INFO L200 MainTranslator]: Completed pre-run [2024-12-02 10:25:26,238 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49] [2024-12-02 10:25:26,240 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [118] [2024-12-02 10:25:26,240 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [372] [2024-12-02 10:25:26,240 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [476] [2024-12-02 10:25:26,240 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [842] [2024-12-02 10:25:26,240 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [892] [2024-12-02 10:25:26,240 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [930] [2024-12-02 10:25:26,240 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [939] [2024-12-02 10:25:26,287 WARN L250 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/sv-benchmarks/c/product-lines/minepump_spec5_product61.cil.c[18376,18389] [2024-12-02 10:25:26,290 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-12-02 10:25:26,309 INFO L204 MainTranslator]: Completed translation [2024-12-02 10:25:26,309 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26 WrapperNode [2024-12-02 10:25:26,310 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-12-02 10:25:26,310 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-12-02 10:25:26,311 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-12-02 10:25:26,311 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-12-02 10:25:26,317 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,327 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,349 INFO L138 Inliner]: procedures = 59, calls = 107, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 240 [2024-12-02 10:25:26,349 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-12-02 10:25:26,350 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-12-02 10:25:26,350 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-12-02 10:25:26,350 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-12-02 10:25:26,359 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,359 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,361 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,375 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-12-02 10:25:26,375 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,375 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,380 INFO L184 PluginConnector]: Executing the observer ReplaceArrayAssignments from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,381 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,385 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,386 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,386 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,387 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-12-02 10:25:26,388 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-12-02 10:25:26,388 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-12-02 10:25:26,388 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-12-02 10:25:26,389 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (1/1) ... [2024-12-02 10:25:26,393 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-12-02 10:25:26,402 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 10:25:26,411 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-12-02 10:25:26,413 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-12-02 10:25:26,436 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-12-02 10:25:26,436 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2024-12-02 10:25:26,436 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2024-12-02 10:25:26,436 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2024-12-02 10:25:26,437 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2024-12-02 10:25:26,437 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2024-12-02 10:25:26,437 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2024-12-02 10:25:26,437 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2024-12-02 10:25:26,437 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2024-12-02 10:25:26,437 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2024-12-02 10:25:26,437 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2024-12-02 10:25:26,437 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2024-12-02 10:25:26,437 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2024-12-02 10:25:26,437 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2024-12-02 10:25:26,437 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2024-12-02 10:25:26,437 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2024-12-02 10:25:26,437 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2024-12-02 10:25:26,437 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2024-12-02 10:25:26,438 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2024-12-02 10:25:26,438 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-12-02 10:25:26,438 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2024-12-02 10:25:26,438 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2024-12-02 10:25:26,438 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-12-02 10:25:26,438 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-12-02 10:25:26,506 INFO L234 CfgBuilder]: Building ICFG [2024-12-02 10:25:26,508 INFO L260 CfgBuilder]: Building CFG for each procedure with an implementation [2024-12-02 10:25:26,742 INFO L? ?]: Removed 52 outVars from TransFormulas that were not future-live. [2024-12-02 10:25:26,742 INFO L283 CfgBuilder]: Performing block encoding [2024-12-02 10:25:26,753 INFO L307 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-12-02 10:25:26,753 INFO L312 CfgBuilder]: Removed 4 assume(true) statements. [2024-12-02 10:25:26,753 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 10:25:26 BoogieIcfgContainer [2024-12-02 10:25:26,753 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-12-02 10:25:26,755 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-12-02 10:25:26,755 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-12-02 10:25:26,759 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-12-02 10:25:26,759 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 02.12 10:25:25" (1/3) ... [2024-12-02 10:25:26,759 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@77ca85db and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 02.12 10:25:26, skipping insertion in model container [2024-12-02 10:25:26,760 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 02.12 10:25:26" (2/3) ... [2024-12-02 10:25:26,760 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@77ca85db and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 02.12 10:25:26, skipping insertion in model container [2024-12-02 10:25:26,760 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 10:25:26" (3/3) ... [2024-12-02 10:25:26,761 INFO L128 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product61.cil.c [2024-12-02 10:25:26,772 INFO L216 ceAbstractionStarter]: Automizer settings: Hoare:LoopHeads NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-12-02 10:25:26,773 INFO L151 ceAbstractionStarter]: Applying trace abstraction to ICFG minepump_spec5_product61.cil.c that has 11 procedures, 111 locations, 1 initial locations, 2 loop locations, and 1 error locations. [2024-12-02 10:25:26,818 INFO L332 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-12-02 10:25:26,827 INFO L333 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@73ed7559, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-12-02 10:25:26,828 INFO L334 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-12-02 10:25:26,831 INFO L276 IsEmpty]: Start isEmpty. Operand has 111 states, 81 states have (on average 1.3703703703703705) internal successors, (111), 91 states have internal predecessors, (111), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) [2024-12-02 10:25:26,838 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2024-12-02 10:25:26,838 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:26,838 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:26,839 INFO L396 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:26,842 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:26,843 INFO L85 PathProgramCache]: Analyzing trace with hash -1937164204, now seen corresponding path program 1 times [2024-12-02 10:25:26,848 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:26,848 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [593584370] [2024-12-02 10:25:26,848 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:26,849 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:26,930 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:27,003 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-12-02 10:25:27,003 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:27,004 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [593584370] [2024-12-02 10:25:27,004 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [593584370] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 10:25:27,004 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 10:25:27,004 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-12-02 10:25:27,005 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1330860010] [2024-12-02 10:25:27,006 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 10:25:27,008 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-12-02 10:25:27,008 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:27,026 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-12-02 10:25:27,026 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-12-02 10:25:27,028 INFO L87 Difference]: Start difference. First operand has 111 states, 81 states have (on average 1.3703703703703705) internal successors, (111), 91 states have internal predecessors, (111), 18 states have call successors, (18), 10 states have call predecessors, (18), 10 states have return successors, (18), 13 states have call predecessors, (18), 18 states have call successors, (18) Second operand has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-12-02 10:25:27,050 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:27,051 INFO L93 Difference]: Finished difference Result 213 states and 288 transitions. [2024-12-02 10:25:27,051 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-12-02 10:25:27,052 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 32 [2024-12-02 10:25:27,053 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:27,060 INFO L225 Difference]: With dead ends: 213 [2024-12-02 10:25:27,060 INFO L226 Difference]: Without dead ends: 102 [2024-12-02 10:25:27,063 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-12-02 10:25:27,065 INFO L435 NwaCegarLoop]: 141 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 141 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:27,066 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 141 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 10:25:27,078 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 102 states. [2024-12-02 10:25:27,094 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 102 to 102. [2024-12-02 10:25:27,095 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 102 states, 74 states have (on average 1.3108108108108107) internal successors, (97), 83 states have internal predecessors, (97), 18 states have call successors, (18), 10 states have call predecessors, (18), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) [2024-12-02 10:25:27,099 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 102 states to 102 states and 132 transitions. [2024-12-02 10:25:27,101 INFO L78 Accepts]: Start accepts. Automaton has 102 states and 132 transitions. Word has length 32 [2024-12-02 10:25:27,101 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:27,102 INFO L471 AbstractCegarLoop]: Abstraction has 102 states and 132 transitions. [2024-12-02 10:25:27,102 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2024-12-02 10:25:27,102 INFO L276 IsEmpty]: Start isEmpty. Operand 102 states and 132 transitions. [2024-12-02 10:25:27,104 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2024-12-02 10:25:27,104 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:27,104 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:27,104 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-12-02 10:25:27,104 INFO L396 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:27,105 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:27,105 INFO L85 PathProgramCache]: Analyzing trace with hash 1107867861, now seen corresponding path program 1 times [2024-12-02 10:25:27,105 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:27,105 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [62495697] [2024-12-02 10:25:27,105 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:27,106 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:27,133 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:27,282 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-12-02 10:25:27,283 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:27,283 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [62495697] [2024-12-02 10:25:27,283 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [62495697] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 10:25:27,283 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 10:25:27,283 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-12-02 10:25:27,283 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2000090945] [2024-12-02 10:25:27,283 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 10:25:27,284 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-12-02 10:25:27,284 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:27,285 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-12-02 10:25:27,285 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2024-12-02 10:25:27,286 INFO L87 Difference]: Start difference. First operand 102 states and 132 transitions. Second operand has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 6 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 10:25:27,458 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:27,458 INFO L93 Difference]: Finished difference Result 196 states and 259 transitions. [2024-12-02 10:25:27,458 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-12-02 10:25:27,459 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 6 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 36 [2024-12-02 10:25:27,459 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:27,460 INFO L225 Difference]: With dead ends: 196 [2024-12-02 10:25:27,461 INFO L226 Difference]: Without dead ends: 102 [2024-12-02 10:25:27,461 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=20, Invalid=36, Unknown=0, NotChecked=0, Total=56 [2024-12-02 10:25:27,462 INFO L435 NwaCegarLoop]: 128 mSDtfsCounter, 207 mSDsluCounter, 182 mSDsCounter, 0 mSdLazyCounter, 81 mSolverCounterSat, 33 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 207 SdHoareTripleChecker+Valid, 310 SdHoareTripleChecker+Invalid, 114 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 33 IncrementalHoareTripleChecker+Valid, 81 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:27,463 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [207 Valid, 310 Invalid, 114 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [33 Valid, 81 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-12-02 10:25:27,464 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 102 states. [2024-12-02 10:25:27,473 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 102 to 102. [2024-12-02 10:25:27,474 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 102 states, 74 states have (on average 1.2972972972972974) internal successors, (96), 83 states have internal predecessors, (96), 18 states have call successors, (18), 10 states have call predecessors, (18), 9 states have return successors, (17), 12 states have call predecessors, (17), 17 states have call successors, (17) [2024-12-02 10:25:27,475 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 102 states to 102 states and 131 transitions. [2024-12-02 10:25:27,476 INFO L78 Accepts]: Start accepts. Automaton has 102 states and 131 transitions. Word has length 36 [2024-12-02 10:25:27,477 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:27,477 INFO L471 AbstractCegarLoop]: Abstraction has 102 states and 131 transitions. [2024-12-02 10:25:27,477 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 6 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2024-12-02 10:25:27,477 INFO L276 IsEmpty]: Start isEmpty. Operand 102 states and 131 transitions. [2024-12-02 10:25:27,478 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2024-12-02 10:25:27,478 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:27,478 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:27,478 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-12-02 10:25:27,478 INFO L396 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:27,479 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:27,479 INFO L85 PathProgramCache]: Analyzing trace with hash 1881585033, now seen corresponding path program 1 times [2024-12-02 10:25:27,479 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:27,479 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1665540448] [2024-12-02 10:25:27,479 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:27,479 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:27,497 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:27,535 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-12-02 10:25:27,535 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:27,535 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1665540448] [2024-12-02 10:25:27,535 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1665540448] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 10:25:27,535 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 10:25:27,535 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-12-02 10:25:27,535 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1896896673] [2024-12-02 10:25:27,535 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 10:25:27,536 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 10:25:27,536 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:27,536 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 10:25:27,536 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 10:25:27,536 INFO L87 Difference]: Start difference. First operand 102 states and 131 transitions. Second operand has 3 states, 3 states have (on average 12.666666666666666) internal successors, (38), 3 states have internal predecessors, (38), 2 states have call successors, (5), 1 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-12-02 10:25:27,584 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:27,585 INFO L93 Difference]: Finished difference Result 259 states and 348 transitions. [2024-12-02 10:25:27,585 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 10:25:27,585 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 12.666666666666666) internal successors, (38), 3 states have internal predecessors, (38), 2 states have call successors, (5), 1 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 49 [2024-12-02 10:25:27,585 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:27,587 INFO L225 Difference]: With dead ends: 259 [2024-12-02 10:25:27,587 INFO L226 Difference]: Without dead ends: 165 [2024-12-02 10:25:27,588 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 10:25:27,589 INFO L435 NwaCegarLoop]: 135 mSDtfsCounter, 102 mSDsluCounter, 93 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 102 SdHoareTripleChecker+Valid, 228 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:27,589 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [102 Valid, 228 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 10:25:27,590 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 165 states. [2024-12-02 10:25:27,609 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 165 to 163. [2024-12-02 10:25:27,609 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 163 states, 119 states have (on average 1.26890756302521) internal successors, (151), 128 states have internal predecessors, (151), 26 states have call successors, (26), 19 states have call predecessors, (26), 17 states have return successors, (34), 22 states have call predecessors, (34), 24 states have call successors, (34) [2024-12-02 10:25:27,611 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 163 states to 163 states and 211 transitions. [2024-12-02 10:25:27,612 INFO L78 Accepts]: Start accepts. Automaton has 163 states and 211 transitions. Word has length 49 [2024-12-02 10:25:27,612 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:27,612 INFO L471 AbstractCegarLoop]: Abstraction has 163 states and 211 transitions. [2024-12-02 10:25:27,612 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 12.666666666666666) internal successors, (38), 3 states have internal predecessors, (38), 2 states have call successors, (5), 1 states have call predecessors, (5), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-12-02 10:25:27,612 INFO L276 IsEmpty]: Start isEmpty. Operand 163 states and 211 transitions. [2024-12-02 10:25:27,613 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2024-12-02 10:25:27,614 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:27,614 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:27,614 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2024-12-02 10:25:27,614 INFO L396 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:27,614 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:27,615 INFO L85 PathProgramCache]: Analyzing trace with hash -352129972, now seen corresponding path program 1 times [2024-12-02 10:25:27,615 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:27,615 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [54883221] [2024-12-02 10:25:27,615 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:27,615 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:27,629 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:27,677 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-12-02 10:25:27,677 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:27,677 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [54883221] [2024-12-02 10:25:27,677 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [54883221] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 10:25:27,677 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 10:25:27,677 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2024-12-02 10:25:27,677 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [531722447] [2024-12-02 10:25:27,677 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 10:25:27,678 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2024-12-02 10:25:27,678 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:27,678 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2024-12-02 10:25:27,678 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 10:25:27,679 INFO L87 Difference]: Start difference. First operand 163 states and 211 transitions. Second operand has 3 states, 3 states have (on average 13.0) internal successors, (39), 3 states have internal predecessors, (39), 2 states have call successors, (7), 2 states have call predecessors, (7), 1 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-12-02 10:25:27,694 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:27,694 INFO L93 Difference]: Finished difference Result 268 states and 338 transitions. [2024-12-02 10:25:27,694 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2024-12-02 10:25:27,695 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 13.0) internal successors, (39), 3 states have internal predecessors, (39), 2 states have call successors, (7), 2 states have call predecessors, (7), 1 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 53 [2024-12-02 10:25:27,695 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:27,696 INFO L225 Difference]: With dead ends: 268 [2024-12-02 10:25:27,696 INFO L226 Difference]: Without dead ends: 147 [2024-12-02 10:25:27,697 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2024-12-02 10:25:27,697 INFO L435 NwaCegarLoop]: 119 mSDtfsCounter, 12 mSDsluCounter, 104 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 223 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:27,698 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 223 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 10:25:27,698 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 147 states. [2024-12-02 10:25:27,713 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 147 to 147. [2024-12-02 10:25:27,714 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 109 states have (on average 1.275229357798165) internal successors, (139), 118 states have internal predecessors, (139), 20 states have call successors, (20), 17 states have call predecessors, (20), 17 states have return successors, (26), 18 states have call predecessors, (26), 20 states have call successors, (26) [2024-12-02 10:25:27,715 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 185 transitions. [2024-12-02 10:25:27,716 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 185 transitions. Word has length 53 [2024-12-02 10:25:27,716 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:27,716 INFO L471 AbstractCegarLoop]: Abstraction has 147 states and 185 transitions. [2024-12-02 10:25:27,716 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 13.0) internal successors, (39), 3 states have internal predecessors, (39), 2 states have call successors, (7), 2 states have call predecessors, (7), 1 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-12-02 10:25:27,716 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 185 transitions. [2024-12-02 10:25:27,717 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 58 [2024-12-02 10:25:27,718 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:27,718 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:27,718 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2024-12-02 10:25:27,718 INFO L396 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:27,718 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:27,719 INFO L85 PathProgramCache]: Analyzing trace with hash -237901979, now seen corresponding path program 1 times [2024-12-02 10:25:27,719 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:27,719 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [646240416] [2024-12-02 10:25:27,719 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:27,719 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:27,744 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:27,867 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-12-02 10:25:27,867 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:27,867 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [646240416] [2024-12-02 10:25:27,867 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [646240416] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 10:25:27,867 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 10:25:27,868 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2024-12-02 10:25:27,868 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1645418378] [2024-12-02 10:25:27,868 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 10:25:27,868 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2024-12-02 10:25:27,868 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:27,869 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2024-12-02 10:25:27,869 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2024-12-02 10:25:27,869 INFO L87 Difference]: Start difference. First operand 147 states and 185 transitions. Second operand has 7 states, 7 states have (on average 6.571428571428571) internal successors, (46), 6 states have internal predecessors, (46), 3 states have call successors, (6), 2 states have call predecessors, (6), 3 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) [2024-12-02 10:25:28,184 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:28,184 INFO L93 Difference]: Finished difference Result 314 states and 397 transitions. [2024-12-02 10:25:28,185 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-12-02 10:25:28,185 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.571428571428571) internal successors, (46), 6 states have internal predecessors, (46), 3 states have call successors, (6), 2 states have call predecessors, (6), 3 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) Word has length 57 [2024-12-02 10:25:28,185 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:28,187 INFO L225 Difference]: With dead ends: 314 [2024-12-02 10:25:28,187 INFO L226 Difference]: Without dead ends: 175 [2024-12-02 10:25:28,188 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 18 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=48, Invalid=134, Unknown=0, NotChecked=0, Total=182 [2024-12-02 10:25:28,188 INFO L435 NwaCegarLoop]: 92 mSDtfsCounter, 153 mSDsluCounter, 359 mSDsCounter, 0 mSdLazyCounter, 230 mSolverCounterSat, 43 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 160 SdHoareTripleChecker+Valid, 451 SdHoareTripleChecker+Invalid, 273 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 43 IncrementalHoareTripleChecker+Valid, 230 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:28,189 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [160 Valid, 451 Invalid, 273 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [43 Valid, 230 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-12-02 10:25:28,190 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 175 states. [2024-12-02 10:25:28,205 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 175 to 173. [2024-12-02 10:25:28,206 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 173 states, 128 states have (on average 1.25) internal successors, (160), 137 states have internal predecessors, (160), 22 states have call successors, (22), 17 states have call predecessors, (22), 22 states have return successors, (33), 24 states have call predecessors, (33), 22 states have call successors, (33) [2024-12-02 10:25:28,207 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 173 states to 173 states and 215 transitions. [2024-12-02 10:25:28,208 INFO L78 Accepts]: Start accepts. Automaton has 173 states and 215 transitions. Word has length 57 [2024-12-02 10:25:28,208 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:28,208 INFO L471 AbstractCegarLoop]: Abstraction has 173 states and 215 transitions. [2024-12-02 10:25:28,208 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.571428571428571) internal successors, (46), 6 states have internal predecessors, (46), 3 states have call successors, (6), 2 states have call predecessors, (6), 3 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) [2024-12-02 10:25:28,208 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 215 transitions. [2024-12-02 10:25:28,209 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-12-02 10:25:28,209 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:28,210 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:28,210 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2024-12-02 10:25:28,210 INFO L396 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:28,210 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:28,210 INFO L85 PathProgramCache]: Analyzing trace with hash 1129520432, now seen corresponding path program 1 times [2024-12-02 10:25:28,210 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:28,211 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1170819335] [2024-12-02 10:25:28,211 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:28,211 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:28,226 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:28,288 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-12-02 10:25:28,288 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:28,288 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1170819335] [2024-12-02 10:25:28,288 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1170819335] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 10:25:28,288 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 10:25:28,288 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-12-02 10:25:28,288 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [405208660] [2024-12-02 10:25:28,288 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 10:25:28,289 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-12-02 10:25:28,289 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:28,289 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-12-02 10:25:28,289 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-12-02 10:25:28,290 INFO L87 Difference]: Start difference. First operand 173 states and 215 transitions. Second operand has 5 states, 5 states have (on average 10.0) internal successors, (50), 5 states have internal predecessors, (50), 2 states have call successors, (6), 1 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-12-02 10:25:28,321 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:28,321 INFO L93 Difference]: Finished difference Result 341 states and 438 transitions. [2024-12-02 10:25:28,322 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-12-02 10:25:28,322 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 10.0) internal successors, (50), 5 states have internal predecessors, (50), 2 states have call successors, (6), 1 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 63 [2024-12-02 10:25:28,323 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:28,324 INFO L225 Difference]: With dead ends: 341 [2024-12-02 10:25:28,324 INFO L226 Difference]: Without dead ends: 176 [2024-12-02 10:25:28,325 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-12-02 10:25:28,326 INFO L435 NwaCegarLoop]: 117 mSDtfsCounter, 0 mSDsluCounter, 345 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 462 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:28,326 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 462 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 10:25:28,327 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 176 states. [2024-12-02 10:25:28,342 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 176 to 176. [2024-12-02 10:25:28,343 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 176 states, 131 states have (on average 1.2442748091603053) internal successors, (163), 140 states have internal predecessors, (163), 22 states have call successors, (22), 17 states have call predecessors, (22), 22 states have return successors, (33), 24 states have call predecessors, (33), 22 states have call successors, (33) [2024-12-02 10:25:28,344 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 176 states to 176 states and 218 transitions. [2024-12-02 10:25:28,345 INFO L78 Accepts]: Start accepts. Automaton has 176 states and 218 transitions. Word has length 63 [2024-12-02 10:25:28,345 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:28,345 INFO L471 AbstractCegarLoop]: Abstraction has 176 states and 218 transitions. [2024-12-02 10:25:28,345 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 10.0) internal successors, (50), 5 states have internal predecessors, (50), 2 states have call successors, (6), 1 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-12-02 10:25:28,345 INFO L276 IsEmpty]: Start isEmpty. Operand 176 states and 218 transitions. [2024-12-02 10:25:28,346 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-12-02 10:25:28,346 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:28,346 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:28,346 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2024-12-02 10:25:28,346 INFO L396 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:28,347 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:28,347 INFO L85 PathProgramCache]: Analyzing trace with hash -1779243470, now seen corresponding path program 1 times [2024-12-02 10:25:28,347 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:28,347 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [240028026] [2024-12-02 10:25:28,347 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:28,347 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:28,363 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:28,464 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-12-02 10:25:28,464 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:28,465 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [240028026] [2024-12-02 10:25:28,465 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [240028026] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 10:25:28,465 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 10:25:28,465 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-12-02 10:25:28,465 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1126687881] [2024-12-02 10:25:28,465 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 10:25:28,465 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-12-02 10:25:28,465 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:28,466 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-12-02 10:25:28,466 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-12-02 10:25:28,466 INFO L87 Difference]: Start difference. First operand 176 states and 218 transitions. Second operand has 6 states, 6 states have (on average 8.333333333333334) internal successors, (50), 6 states have internal predecessors, (50), 2 states have call successors, (6), 1 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-12-02 10:25:28,505 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:28,505 INFO L93 Difference]: Finished difference Result 346 states and 443 transitions. [2024-12-02 10:25:28,505 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-12-02 10:25:28,506 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 8.333333333333334) internal successors, (50), 6 states have internal predecessors, (50), 2 states have call successors, (6), 1 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 63 [2024-12-02 10:25:28,506 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:28,507 INFO L225 Difference]: With dead ends: 346 [2024-12-02 10:25:28,508 INFO L226 Difference]: Without dead ends: 178 [2024-12-02 10:25:28,508 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-12-02 10:25:28,509 INFO L435 NwaCegarLoop]: 116 mSDtfsCounter, 0 mSDsluCounter, 456 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 572 SdHoareTripleChecker+Invalid, 25 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:28,509 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 572 Invalid, 25 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-12-02 10:25:28,510 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 178 states. [2024-12-02 10:25:28,524 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 178 to 178. [2024-12-02 10:25:28,525 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 178 states, 133 states have (on average 1.2406015037593985) internal successors, (165), 142 states have internal predecessors, (165), 22 states have call successors, (22), 17 states have call predecessors, (22), 22 states have return successors, (33), 24 states have call predecessors, (33), 22 states have call successors, (33) [2024-12-02 10:25:28,527 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 178 states to 178 states and 220 transitions. [2024-12-02 10:25:28,527 INFO L78 Accepts]: Start accepts. Automaton has 178 states and 220 transitions. Word has length 63 [2024-12-02 10:25:28,527 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:28,527 INFO L471 AbstractCegarLoop]: Abstraction has 178 states and 220 transitions. [2024-12-02 10:25:28,528 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 8.333333333333334) internal successors, (50), 6 states have internal predecessors, (50), 2 states have call successors, (6), 1 states have call predecessors, (6), 2 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-12-02 10:25:28,528 INFO L276 IsEmpty]: Start isEmpty. Operand 178 states and 220 transitions. [2024-12-02 10:25:28,528 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2024-12-02 10:25:28,528 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:28,528 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:28,529 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2024-12-02 10:25:28,529 INFO L396 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:28,529 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:28,529 INFO L85 PathProgramCache]: Analyzing trace with hash -1077643596, now seen corresponding path program 1 times [2024-12-02 10:25:28,529 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:28,529 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [857947523] [2024-12-02 10:25:28,529 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:28,529 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:28,543 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:28,625 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-12-02 10:25:28,625 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:28,625 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [857947523] [2024-12-02 10:25:28,625 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [857947523] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 10:25:28,625 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 10:25:28,625 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2024-12-02 10:25:28,625 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1929071044] [2024-12-02 10:25:28,625 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 10:25:28,626 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-12-02 10:25:28,626 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:28,626 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-12-02 10:25:28,626 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-12-02 10:25:28,626 INFO L87 Difference]: Start difference. First operand 178 states and 220 transitions. Second operand has 4 states, 4 states have (on average 12.5) internal successors, (50), 4 states have internal predecessors, (50), 4 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2024-12-02 10:25:28,764 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:28,765 INFO L93 Difference]: Finished difference Result 542 states and 696 transitions. [2024-12-02 10:25:28,765 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-12-02 10:25:28,765 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 12.5) internal successors, (50), 4 states have internal predecessors, (50), 4 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) Word has length 63 [2024-12-02 10:25:28,765 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:28,768 INFO L225 Difference]: With dead ends: 542 [2024-12-02 10:25:28,768 INFO L226 Difference]: Without dead ends: 372 [2024-12-02 10:25:28,769 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-12-02 10:25:28,770 INFO L435 NwaCegarLoop]: 203 mSDtfsCounter, 146 mSDsluCounter, 191 mSDsCounter, 0 mSdLazyCounter, 76 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 146 SdHoareTripleChecker+Valid, 394 SdHoareTripleChecker+Invalid, 81 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 76 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:28,770 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [146 Valid, 394 Invalid, 81 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 76 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-12-02 10:25:28,771 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 372 states. [2024-12-02 10:25:28,805 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 372 to 365. [2024-12-02 10:25:28,805 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 365 states, 270 states have (on average 1.2259259259259259) internal successors, (331), 286 states have internal predecessors, (331), 48 states have call successors, (48), 38 states have call predecessors, (48), 46 states have return successors, (83), 51 states have call predecessors, (83), 48 states have call successors, (83) [2024-12-02 10:25:28,808 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 365 states to 365 states and 462 transitions. [2024-12-02 10:25:28,809 INFO L78 Accepts]: Start accepts. Automaton has 365 states and 462 transitions. Word has length 63 [2024-12-02 10:25:28,809 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:28,809 INFO L471 AbstractCegarLoop]: Abstraction has 365 states and 462 transitions. [2024-12-02 10:25:28,809 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 12.5) internal successors, (50), 4 states have internal predecessors, (50), 4 states have call successors, (6), 2 states have call predecessors, (6), 2 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2024-12-02 10:25:28,809 INFO L276 IsEmpty]: Start isEmpty. Operand 365 states and 462 transitions. [2024-12-02 10:25:28,810 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 68 [2024-12-02 10:25:28,811 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:28,811 INFO L218 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:28,811 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2024-12-02 10:25:28,811 INFO L396 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:28,811 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:28,811 INFO L85 PathProgramCache]: Analyzing trace with hash 1046331278, now seen corresponding path program 1 times [2024-12-02 10:25:28,812 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:28,812 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [601724069] [2024-12-02 10:25:28,812 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:28,812 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:28,831 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:29,012 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-12-02 10:25:29,013 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:29,013 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [601724069] [2024-12-02 10:25:29,013 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [601724069] provided 1 perfect and 0 imperfect interpolant sequences [2024-12-02 10:25:29,013 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-12-02 10:25:29,013 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-12-02 10:25:29,013 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1949799139] [2024-12-02 10:25:29,013 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-12-02 10:25:29,013 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-12-02 10:25:29,013 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:29,014 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-12-02 10:25:29,014 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2024-12-02 10:25:29,014 INFO L87 Difference]: Start difference. First operand 365 states and 462 transitions. Second operand has 8 states, 8 states have (on average 6.5) internal successors, (52), 7 states have internal predecessors, (52), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) [2024-12-02 10:25:29,542 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:29,542 INFO L93 Difference]: Finished difference Result 1024 states and 1350 transitions. [2024-12-02 10:25:29,543 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-12-02 10:25:29,543 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 6.5) internal successors, (52), 7 states have internal predecessors, (52), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) Word has length 67 [2024-12-02 10:25:29,543 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:29,548 INFO L225 Difference]: With dead ends: 1024 [2024-12-02 10:25:29,549 INFO L226 Difference]: Without dead ends: 721 [2024-12-02 10:25:29,550 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 16 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=47, Invalid=109, Unknown=0, NotChecked=0, Total=156 [2024-12-02 10:25:29,551 INFO L435 NwaCegarLoop]: 138 mSDtfsCounter, 356 mSDsluCounter, 416 mSDsCounter, 0 mSdLazyCounter, 396 mSolverCounterSat, 83 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 365 SdHoareTripleChecker+Valid, 554 SdHoareTripleChecker+Invalid, 479 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 83 IncrementalHoareTripleChecker+Valid, 396 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:29,551 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [365 Valid, 554 Invalid, 479 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [83 Valid, 396 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-12-02 10:25:29,552 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 721 states. [2024-12-02 10:25:29,639 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 721 to 648. [2024-12-02 10:25:29,641 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 648 states, 477 states have (on average 1.2138364779874213) internal successors, (579), 508 states have internal predecessors, (579), 86 states have call successors, (86), 66 states have call predecessors, (86), 84 states have return successors, (147), 91 states have call predecessors, (147), 86 states have call successors, (147) [2024-12-02 10:25:29,646 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 648 states to 648 states and 812 transitions. [2024-12-02 10:25:29,647 INFO L78 Accepts]: Start accepts. Automaton has 648 states and 812 transitions. Word has length 67 [2024-12-02 10:25:29,647 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:29,648 INFO L471 AbstractCegarLoop]: Abstraction has 648 states and 812 transitions. [2024-12-02 10:25:29,648 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 6.5) internal successors, (52), 7 states have internal predecessors, (52), 4 states have call successors, (7), 3 states have call predecessors, (7), 2 states have return successors, (6), 3 states have call predecessors, (6), 4 states have call successors, (6) [2024-12-02 10:25:29,648 INFO L276 IsEmpty]: Start isEmpty. Operand 648 states and 812 transitions. [2024-12-02 10:25:29,650 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 120 [2024-12-02 10:25:29,650 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:29,650 INFO L218 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:29,650 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2024-12-02 10:25:29,651 INFO L396 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:29,651 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:29,651 INFO L85 PathProgramCache]: Analyzing trace with hash 1883850489, now seen corresponding path program 1 times [2024-12-02 10:25:29,651 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:29,651 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2015428751] [2024-12-02 10:25:29,651 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:29,651 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:29,680 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:29,905 INFO L134 CoverageAnalysis]: Checked inductivity of 40 backedges. 17 proven. 10 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-12-02 10:25:29,905 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:29,905 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2015428751] [2024-12-02 10:25:29,905 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2015428751] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 10:25:29,905 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1903630120] [2024-12-02 10:25:29,905 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:29,906 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 10:25:29,906 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 10:25:29,908 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 10:25:29,909 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-12-02 10:25:30,026 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:30,029 INFO L256 TraceCheckSpWp]: Trace formula consists of 379 conjuncts, 8 conjuncts are in the unsatisfiable core [2024-12-02 10:25:30,038 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 10:25:30,245 INFO L134 CoverageAnalysis]: Checked inductivity of 40 backedges. 29 proven. 11 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-12-02 10:25:30,245 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2024-12-02 10:25:30,512 INFO L134 CoverageAnalysis]: Checked inductivity of 40 backedges. 17 proven. 10 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-12-02 10:25:30,512 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1903630120] provided 0 perfect and 2 imperfect interpolant sequences [2024-12-02 10:25:30,512 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-12-02 10:25:30,512 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 14 [2024-12-02 10:25:30,513 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2087939214] [2024-12-02 10:25:30,513 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-12-02 10:25:30,513 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-12-02 10:25:30,514 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:30,514 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-12-02 10:25:30,514 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=34, Invalid=148, Unknown=0, NotChecked=0, Total=182 [2024-12-02 10:25:30,515 INFO L87 Difference]: Start difference. First operand 648 states and 812 transitions. Second operand has 14 states, 14 states have (on average 10.428571428571429) internal successors, (146), 12 states have internal predecessors, (146), 5 states have call successors, (24), 4 states have call predecessors, (24), 7 states have return successors, (25), 8 states have call predecessors, (25), 5 states have call successors, (25) [2024-12-02 10:25:30,970 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:30,970 INFO L93 Difference]: Finished difference Result 1414 states and 1842 transitions. [2024-12-02 10:25:30,971 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-12-02 10:25:30,971 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 10.428571428571429) internal successors, (146), 12 states have internal predecessors, (146), 5 states have call successors, (24), 4 states have call predecessors, (24), 7 states have return successors, (25), 8 states have call predecessors, (25), 5 states have call successors, (25) Word has length 119 [2024-12-02 10:25:30,972 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:30,977 INFO L225 Difference]: With dead ends: 1414 [2024-12-02 10:25:30,977 INFO L226 Difference]: Without dead ends: 826 [2024-12-02 10:25:30,981 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 261 GetRequests, 233 SyntacticMatches, 4 SemanticMatches, 24 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 115 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=133, Invalid=517, Unknown=0, NotChecked=0, Total=650 [2024-12-02 10:25:30,981 INFO L435 NwaCegarLoop]: 238 mSDtfsCounter, 245 mSDsluCounter, 1367 mSDsCounter, 0 mSdLazyCounter, 203 mSolverCounterSat, 67 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 252 SdHoareTripleChecker+Valid, 1605 SdHoareTripleChecker+Invalid, 270 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 67 IncrementalHoareTripleChecker+Valid, 203 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:30,982 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [252 Valid, 1605 Invalid, 270 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [67 Valid, 203 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-12-02 10:25:30,983 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 826 states. [2024-12-02 10:25:31,077 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 826 to 730. [2024-12-02 10:25:31,079 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 730 states, 532 states have (on average 1.2067669172932332) internal successors, (642), 572 states have internal predecessors, (642), 99 states have call successors, (99), 84 states have call predecessors, (99), 98 states have return successors, (143), 100 states have call predecessors, (143), 99 states have call successors, (143) [2024-12-02 10:25:31,084 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 730 states to 730 states and 884 transitions. [2024-12-02 10:25:31,086 INFO L78 Accepts]: Start accepts. Automaton has 730 states and 884 transitions. Word has length 119 [2024-12-02 10:25:31,086 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:31,086 INFO L471 AbstractCegarLoop]: Abstraction has 730 states and 884 transitions. [2024-12-02 10:25:31,086 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 10.428571428571429) internal successors, (146), 12 states have internal predecessors, (146), 5 states have call successors, (24), 4 states have call predecessors, (24), 7 states have return successors, (25), 8 states have call predecessors, (25), 5 states have call successors, (25) [2024-12-02 10:25:31,087 INFO L276 IsEmpty]: Start isEmpty. Operand 730 states and 884 transitions. [2024-12-02 10:25:31,092 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 208 [2024-12-02 10:25:31,092 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:31,092 INFO L218 NwaCegarLoop]: trace histogram [5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:31,102 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-12-02 10:25:31,293 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 10:25:31,293 INFO L396 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:31,293 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:31,293 INFO L85 PathProgramCache]: Analyzing trace with hash -2090507581, now seen corresponding path program 1 times [2024-12-02 10:25:31,294 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:31,294 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2139405253] [2024-12-02 10:25:31,294 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:31,294 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:31,323 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:31,571 INFO L134 CoverageAnalysis]: Checked inductivity of 219 backedges. 86 proven. 35 refuted. 0 times theorem prover too weak. 98 trivial. 0 not checked. [2024-12-02 10:25:31,571 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:31,571 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2139405253] [2024-12-02 10:25:31,571 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2139405253] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 10:25:31,571 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1631314027] [2024-12-02 10:25:31,571 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:31,571 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 10:25:31,571 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 10:25:31,573 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 10:25:31,575 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-12-02 10:25:31,704 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:31,706 INFO L256 TraceCheckSpWp]: Trace formula consists of 599 conjuncts, 13 conjuncts are in the unsatisfiable core [2024-12-02 10:25:31,712 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 10:25:31,935 INFO L134 CoverageAnalysis]: Checked inductivity of 219 backedges. 159 proven. 3 refuted. 0 times theorem prover too weak. 57 trivial. 0 not checked. [2024-12-02 10:25:31,935 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2024-12-02 10:25:32,470 INFO L134 CoverageAnalysis]: Checked inductivity of 219 backedges. 73 proven. 38 refuted. 0 times theorem prover too weak. 108 trivial. 0 not checked. [2024-12-02 10:25:32,470 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1631314027] provided 0 perfect and 2 imperfect interpolant sequences [2024-12-02 10:25:32,470 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-12-02 10:25:32,471 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10, 11] total 25 [2024-12-02 10:25:32,471 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [330031024] [2024-12-02 10:25:32,471 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-12-02 10:25:32,471 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 25 states [2024-12-02 10:25:32,472 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:32,472 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 25 interpolants. [2024-12-02 10:25:32,472 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=102, Invalid=498, Unknown=0, NotChecked=0, Total=600 [2024-12-02 10:25:32,473 INFO L87 Difference]: Start difference. First operand 730 states and 884 transitions. Second operand has 25 states, 25 states have (on average 8.88) internal successors, (222), 22 states have internal predecessors, (222), 10 states have call successors, (37), 5 states have call predecessors, (37), 11 states have return successors, (43), 11 states have call predecessors, (43), 10 states have call successors, (43) [2024-12-02 10:25:34,250 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:34,250 INFO L93 Difference]: Finished difference Result 2169 states and 2793 transitions. [2024-12-02 10:25:34,251 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 44 states. [2024-12-02 10:25:34,251 INFO L78 Accepts]: Start accepts. Automaton has has 25 states, 25 states have (on average 8.88) internal successors, (222), 22 states have internal predecessors, (222), 10 states have call successors, (37), 5 states have call predecessors, (37), 11 states have return successors, (43), 11 states have call predecessors, (43), 10 states have call successors, (43) Word has length 207 [2024-12-02 10:25:34,252 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:34,257 INFO L225 Difference]: With dead ends: 2169 [2024-12-02 10:25:34,257 INFO L226 Difference]: Without dead ends: 1414 [2024-12-02 10:25:34,261 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 476 GetRequests, 408 SyntacticMatches, 3 SemanticMatches, 65 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 982 ImplicationChecksByTransitivity, 0.8s TimeCoverageRelationStatistics Valid=758, Invalid=3664, Unknown=0, NotChecked=0, Total=4422 [2024-12-02 10:25:34,261 INFO L435 NwaCegarLoop]: 100 mSDtfsCounter, 931 mSDsluCounter, 996 mSDsCounter, 0 mSdLazyCounter, 2169 mSolverCounterSat, 434 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 931 SdHoareTripleChecker+Valid, 1096 SdHoareTripleChecker+Invalid, 2603 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 434 IncrementalHoareTripleChecker+Valid, 2169 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:34,261 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [931 Valid, 1096 Invalid, 2603 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [434 Valid, 2169 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2024-12-02 10:25:34,263 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1414 states. [2024-12-02 10:25:34,326 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1414 to 1311. [2024-12-02 10:25:34,327 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1311 states, 969 states have (on average 1.1444788441692466) internal successors, (1109), 1015 states have internal predecessors, (1109), 181 states have call successors, (181), 161 states have call predecessors, (181), 160 states have return successors, (225), 164 states have call predecessors, (225), 181 states have call successors, (225) [2024-12-02 10:25:34,331 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1311 states to 1311 states and 1515 transitions. [2024-12-02 10:25:34,332 INFO L78 Accepts]: Start accepts. Automaton has 1311 states and 1515 transitions. Word has length 207 [2024-12-02 10:25:34,333 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:34,333 INFO L471 AbstractCegarLoop]: Abstraction has 1311 states and 1515 transitions. [2024-12-02 10:25:34,333 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 25 states, 25 states have (on average 8.88) internal successors, (222), 22 states have internal predecessors, (222), 10 states have call successors, (37), 5 states have call predecessors, (37), 11 states have return successors, (43), 11 states have call predecessors, (43), 10 states have call successors, (43) [2024-12-02 10:25:34,333 INFO L276 IsEmpty]: Start isEmpty. Operand 1311 states and 1515 transitions. [2024-12-02 10:25:34,336 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 232 [2024-12-02 10:25:34,337 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:34,337 INFO L218 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:34,343 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-12-02 10:25:34,537 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 10:25:34,537 INFO L396 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:34,538 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:34,538 INFO L85 PathProgramCache]: Analyzing trace with hash -1829247351, now seen corresponding path program 1 times [2024-12-02 10:25:34,538 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:34,538 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1959445195] [2024-12-02 10:25:34,538 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:34,538 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:34,567 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:34,915 INFO L134 CoverageAnalysis]: Checked inductivity of 269 backedges. 96 proven. 62 refuted. 0 times theorem prover too weak. 111 trivial. 0 not checked. [2024-12-02 10:25:34,916 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:34,916 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1959445195] [2024-12-02 10:25:34,916 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1959445195] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 10:25:34,916 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1555332444] [2024-12-02 10:25:34,916 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:34,916 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 10:25:34,916 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 10:25:34,918 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 10:25:34,920 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-12-02 10:25:35,049 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:35,051 INFO L256 TraceCheckSpWp]: Trace formula consists of 657 conjuncts, 12 conjuncts are in the unsatisfiable core [2024-12-02 10:25:35,057 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 10:25:35,221 INFO L134 CoverageAnalysis]: Checked inductivity of 269 backedges. 201 proven. 11 refuted. 0 times theorem prover too weak. 57 trivial. 0 not checked. [2024-12-02 10:25:35,221 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2024-12-02 10:25:35,737 INFO L134 CoverageAnalysis]: Checked inductivity of 269 backedges. 96 proven. 62 refuted. 0 times theorem prover too weak. 111 trivial. 0 not checked. [2024-12-02 10:25:35,737 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1555332444] provided 0 perfect and 2 imperfect interpolant sequences [2024-12-02 10:25:35,737 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-12-02 10:25:35,737 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 8, 8] total 22 [2024-12-02 10:25:35,738 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [286621458] [2024-12-02 10:25:35,738 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-12-02 10:25:35,739 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-12-02 10:25:35,739 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:35,739 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-12-02 10:25:35,740 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=73, Invalid=389, Unknown=0, NotChecked=0, Total=462 [2024-12-02 10:25:35,740 INFO L87 Difference]: Start difference. First operand 1311 states and 1515 transitions. Second operand has 22 states, 22 states have (on average 11.590909090909092) internal successors, (255), 19 states have internal predecessors, (255), 7 states have call successors, (46), 5 states have call predecessors, (46), 13 states have return successors, (50), 11 states have call predecessors, (50), 7 states have call successors, (50) [2024-12-02 10:25:36,450 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:36,450 INFO L93 Difference]: Finished difference Result 2570 states and 2998 transitions. [2024-12-02 10:25:36,451 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2024-12-02 10:25:36,451 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 22 states have (on average 11.590909090909092) internal successors, (255), 19 states have internal predecessors, (255), 7 states have call successors, (46), 5 states have call predecessors, (46), 13 states have return successors, (50), 11 states have call predecessors, (50), 7 states have call successors, (50) Word has length 231 [2024-12-02 10:25:36,451 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:36,458 INFO L225 Difference]: With dead ends: 2570 [2024-12-02 10:25:36,458 INFO L226 Difference]: Without dead ends: 1371 [2024-12-02 10:25:36,461 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 493 GetRequests, 458 SyntacticMatches, 1 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 169 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=225, Invalid=1035, Unknown=0, NotChecked=0, Total=1260 [2024-12-02 10:25:36,462 INFO L435 NwaCegarLoop]: 127 mSDtfsCounter, 236 mSDsluCounter, 1081 mSDsCounter, 0 mSdLazyCounter, 933 mSolverCounterSat, 94 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 240 SdHoareTripleChecker+Valid, 1208 SdHoareTripleChecker+Invalid, 1027 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 94 IncrementalHoareTripleChecker+Valid, 933 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:36,462 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [240 Valid, 1208 Invalid, 1027 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [94 Valid, 933 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-12-02 10:25:36,464 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1371 states. [2024-12-02 10:25:36,579 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1371 to 1341. [2024-12-02 10:25:36,582 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1341 states, 989 states have (on average 1.1375126390293226) internal successors, (1125), 1035 states have internal predecessors, (1125), 181 states have call successors, (181), 171 states have call predecessors, (181), 170 states have return successors, (225), 164 states have call predecessors, (225), 181 states have call successors, (225) [2024-12-02 10:25:36,587 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1341 states to 1341 states and 1531 transitions. [2024-12-02 10:25:36,589 INFO L78 Accepts]: Start accepts. Automaton has 1341 states and 1531 transitions. Word has length 231 [2024-12-02 10:25:36,589 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:36,589 INFO L471 AbstractCegarLoop]: Abstraction has 1341 states and 1531 transitions. [2024-12-02 10:25:36,590 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 22 states have (on average 11.590909090909092) internal successors, (255), 19 states have internal predecessors, (255), 7 states have call successors, (46), 5 states have call predecessors, (46), 13 states have return successors, (50), 11 states have call predecessors, (50), 7 states have call successors, (50) [2024-12-02 10:25:36,590 INFO L276 IsEmpty]: Start isEmpty. Operand 1341 states and 1531 transitions. [2024-12-02 10:25:36,594 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 233 [2024-12-02 10:25:36,594 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:36,595 INFO L218 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:36,603 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2024-12-02 10:25:36,795 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 10:25:36,795 INFO L396 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:36,795 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:36,796 INFO L85 PathProgramCache]: Analyzing trace with hash 1089420142, now seen corresponding path program 1 times [2024-12-02 10:25:36,796 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:36,796 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1026042953] [2024-12-02 10:25:36,796 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:36,796 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:36,822 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:37,323 INFO L134 CoverageAnalysis]: Checked inductivity of 270 backedges. 94 proven. 56 refuted. 0 times theorem prover too weak. 120 trivial. 0 not checked. [2024-12-02 10:25:37,323 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:37,323 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1026042953] [2024-12-02 10:25:37,323 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1026042953] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 10:25:37,323 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2120804117] [2024-12-02 10:25:37,323 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:37,324 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 10:25:37,324 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 10:25:37,325 INFO L229 MonitoredProcess]: Starting monitored process 5 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 10:25:37,326 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-12-02 10:25:37,466 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:37,468 INFO L256 TraceCheckSpWp]: Trace formula consists of 657 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-12-02 10:25:37,472 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 10:25:37,667 INFO L134 CoverageAnalysis]: Checked inductivity of 270 backedges. 143 proven. 25 refuted. 0 times theorem prover too weak. 102 trivial. 0 not checked. [2024-12-02 10:25:37,667 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2024-12-02 10:25:38,236 INFO L134 CoverageAnalysis]: Checked inductivity of 270 backedges. 99 proven. 44 refuted. 0 times theorem prover too weak. 127 trivial. 0 not checked. [2024-12-02 10:25:38,236 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2120804117] provided 0 perfect and 2 imperfect interpolant sequences [2024-12-02 10:25:38,236 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-12-02 10:25:38,236 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 8, 13] total 21 [2024-12-02 10:25:38,237 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1841716250] [2024-12-02 10:25:38,237 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-12-02 10:25:38,237 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-12-02 10:25:38,238 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:38,238 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-12-02 10:25:38,238 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=108, Invalid=312, Unknown=0, NotChecked=0, Total=420 [2024-12-02 10:25:38,239 INFO L87 Difference]: Start difference. First operand 1341 states and 1531 transitions. Second operand has 21 states, 21 states have (on average 11.952380952380953) internal successors, (251), 20 states have internal predecessors, (251), 15 states have call successors, (50), 8 states have call predecessors, (50), 14 states have return successors, (50), 15 states have call predecessors, (50), 15 states have call successors, (50) [2024-12-02 10:25:39,096 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:39,096 INFO L93 Difference]: Finished difference Result 2595 states and 3026 transitions. [2024-12-02 10:25:39,097 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2024-12-02 10:25:39,097 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 11.952380952380953) internal successors, (251), 20 states have internal predecessors, (251), 15 states have call successors, (50), 8 states have call predecessors, (50), 14 states have return successors, (50), 15 states have call predecessors, (50), 15 states have call successors, (50) Word has length 232 [2024-12-02 10:25:39,098 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:39,105 INFO L225 Difference]: With dead ends: 2595 [2024-12-02 10:25:39,105 INFO L226 Difference]: Without dead ends: 1823 [2024-12-02 10:25:39,107 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 501 GetRequests, 458 SyntacticMatches, 8 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 289 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=389, Invalid=943, Unknown=0, NotChecked=0, Total=1332 [2024-12-02 10:25:39,108 INFO L435 NwaCegarLoop]: 152 mSDtfsCounter, 539 mSDsluCounter, 557 mSDsCounter, 0 mSdLazyCounter, 960 mSolverCounterSat, 237 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 542 SdHoareTripleChecker+Valid, 709 SdHoareTripleChecker+Invalid, 1197 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 237 IncrementalHoareTripleChecker+Valid, 960 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:39,108 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [542 Valid, 709 Invalid, 1197 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [237 Valid, 960 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-12-02 10:25:39,110 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1823 states. [2024-12-02 10:25:39,205 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1823 to 1667. [2024-12-02 10:25:39,207 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1667 states, 1231 states have (on average 1.1348497156783104) internal successors, (1397), 1281 states have internal predecessors, (1397), 227 states have call successors, (227), 214 states have call predecessors, (227), 208 states have return successors, (265), 207 states have call predecessors, (265), 227 states have call successors, (265) [2024-12-02 10:25:39,211 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1667 states to 1667 states and 1889 transitions. [2024-12-02 10:25:39,214 INFO L78 Accepts]: Start accepts. Automaton has 1667 states and 1889 transitions. Word has length 232 [2024-12-02 10:25:39,215 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:39,215 INFO L471 AbstractCegarLoop]: Abstraction has 1667 states and 1889 transitions. [2024-12-02 10:25:39,215 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 11.952380952380953) internal successors, (251), 20 states have internal predecessors, (251), 15 states have call successors, (50), 8 states have call predecessors, (50), 14 states have return successors, (50), 15 states have call predecessors, (50), 15 states have call successors, (50) [2024-12-02 10:25:39,215 INFO L276 IsEmpty]: Start isEmpty. Operand 1667 states and 1889 transitions. [2024-12-02 10:25:39,219 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 287 [2024-12-02 10:25:39,220 INFO L210 NwaCegarLoop]: Found error trace [2024-12-02 10:25:39,220 INFO L218 NwaCegarLoop]: trace histogram [9, 9, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:39,226 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-12-02 10:25:39,420 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 5 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2024-12-02 10:25:39,420 INFO L396 AbstractCegarLoop]: === Iteration 14 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-12-02 10:25:39,421 INFO L157 PredicateUnifier]: Initialized classic predicate unifier [2024-12-02 10:25:39,421 INFO L85 PathProgramCache]: Analyzing trace with hash -957987684, now seen corresponding path program 1 times [2024-12-02 10:25:39,421 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-12-02 10:25:39,421 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1630918113] [2024-12-02 10:25:39,421 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:39,421 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-12-02 10:25:39,457 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:39,750 INFO L134 CoverageAnalysis]: Checked inductivity of 459 backedges. 121 proven. 91 refuted. 0 times theorem prover too weak. 247 trivial. 0 not checked. [2024-12-02 10:25:39,750 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-12-02 10:25:39,750 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1630918113] [2024-12-02 10:25:39,751 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1630918113] provided 0 perfect and 1 imperfect interpolant sequences [2024-12-02 10:25:39,751 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1498759799] [2024-12-02 10:25:39,751 INFO L97 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-12-02 10:25:39,751 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 10:25:39,751 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 [2024-12-02 10:25:39,753 INFO L229 MonitoredProcess]: Starting monitored process 6 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-12-02 10:25:39,754 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-12-02 10:25:39,909 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-12-02 10:25:39,912 INFO L256 TraceCheckSpWp]: Trace formula consists of 788 conjuncts, 30 conjuncts are in the unsatisfiable core [2024-12-02 10:25:39,918 INFO L279 TraceCheckSpWp]: Computing forward predicates... [2024-12-02 10:25:40,213 INFO L134 CoverageAnalysis]: Checked inductivity of 459 backedges. 164 proven. 87 refuted. 0 times theorem prover too weak. 208 trivial. 0 not checked. [2024-12-02 10:25:40,213 INFO L312 TraceCheckSpWp]: Computing backward predicates... [2024-12-02 10:25:40,864 INFO L134 CoverageAnalysis]: Checked inductivity of 459 backedges. 97 proven. 134 refuted. 0 times theorem prover too weak. 228 trivial. 0 not checked. [2024-12-02 10:25:40,864 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1498759799] provided 0 perfect and 2 imperfect interpolant sequences [2024-12-02 10:25:40,864 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-12-02 10:25:40,864 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 11, 16] total 24 [2024-12-02 10:25:40,864 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1242935279] [2024-12-02 10:25:40,864 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-12-02 10:25:40,865 INFO L548 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-12-02 10:25:40,865 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-12-02 10:25:40,866 INFO L144 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-12-02 10:25:40,866 INFO L146 InterpolantAutomaton]: CoverageRelationStatistics Valid=130, Invalid=422, Unknown=0, NotChecked=0, Total=552 [2024-12-02 10:25:40,867 INFO L87 Difference]: Start difference. First operand 1667 states and 1889 transitions. Second operand has 24 states, 24 states have (on average 12.75) internal successors, (306), 23 states have internal predecessors, (306), 16 states have call successors, (62), 10 states have call predecessors, (62), 17 states have return successors, (66), 16 states have call predecessors, (66), 16 states have call successors, (66) [2024-12-02 10:25:41,760 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-12-02 10:25:41,760 INFO L93 Difference]: Finished difference Result 3979 states and 4571 transitions. [2024-12-02 10:25:41,761 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-12-02 10:25:41,761 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 24 states have (on average 12.75) internal successors, (306), 23 states have internal predecessors, (306), 16 states have call successors, (62), 10 states have call predecessors, (62), 17 states have return successors, (66), 16 states have call predecessors, (66), 16 states have call successors, (66) Word has length 286 [2024-12-02 10:25:41,761 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-12-02 10:25:41,763 INFO L225 Difference]: With dead ends: 3979 [2024-12-02 10:25:41,763 INFO L226 Difference]: Without dead ends: 0 [2024-12-02 10:25:41,767 INFO L434 NwaCegarLoop]: 0 DeclaredPredicates, 595 GetRequests, 552 SyntacticMatches, 10 SemanticMatches, 33 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 316 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=307, Invalid=883, Unknown=0, NotChecked=0, Total=1190 [2024-12-02 10:25:41,767 INFO L435 NwaCegarLoop]: 148 mSDtfsCounter, 678 mSDsluCounter, 879 mSDsCounter, 0 mSdLazyCounter, 1445 mSolverCounterSat, 321 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 683 SdHoareTripleChecker+Valid, 1027 SdHoareTripleChecker+Invalid, 1766 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 321 IncrementalHoareTripleChecker+Valid, 1445 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2024-12-02 10:25:41,767 INFO L436 NwaCegarLoop]: SdHoareTripleChecker [683 Valid, 1027 Invalid, 1766 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [321 Valid, 1445 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2024-12-02 10:25:41,768 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2024-12-02 10:25:41,768 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2024-12-02 10:25:41,768 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2024-12-02 10:25:41,768 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2024-12-02 10:25:41,769 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 286 [2024-12-02 10:25:41,769 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-12-02 10:25:41,769 INFO L471 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2024-12-02 10:25:41,769 INFO L472 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 24 states have (on average 12.75) internal successors, (306), 23 states have internal predecessors, (306), 16 states have call successors, (62), 10 states have call predecessors, (62), 17 states have return successors, (66), 16 states have call predecessors, (66), 16 states have call successors, (66) [2024-12-02 10:25:41,769 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2024-12-02 10:25:41,770 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2024-12-02 10:25:41,771 INFO L782 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2024-12-02 10:25:41,781 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-12-02 10:25:41,972 WARN L453 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13,6 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-12-02 10:25:41,974 INFO L422 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-12-02 10:25:41,975 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2024-12-02 10:26:00,374 INFO L170 ceAbstractionStarter]: Computing trace abstraction results [2024-12-02 10:26:00,385 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 02.12 10:26:00 BoogieIcfgContainer [2024-12-02 10:26:00,385 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2024-12-02 10:26:00,386 INFO L112 PluginConnector]: ------------------------Witness Printer---------------------------- [2024-12-02 10:26:00,386 INFO L270 PluginConnector]: Initializing Witness Printer... [2024-12-02 10:26:00,386 INFO L274 PluginConnector]: Witness Printer initialized [2024-12-02 10:26:00,386 INFO L184 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 02.12 10:25:26" (3/4) ... [2024-12-02 10:26:00,388 INFO L146 WitnessPrinter]: Generating witness for correct program [2024-12-02 10:26:00,393 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2024-12-02 10:26:00,394 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2024-12-02 10:26:00,394 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2024-12-02 10:26:00,394 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2024-12-02 10:26:00,394 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2024-12-02 10:26:00,394 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2024-12-02 10:26:00,394 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2024-12-02 10:26:00,394 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2024-12-02 10:26:00,394 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2024-12-02 10:26:00,394 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2024-12-02 10:26:00,400 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2024-12-02 10:26:00,401 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 7 nodes and edges [2024-12-02 10:26:00,401 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2024-12-02 10:26:00,401 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-12-02 10:26:00,401 INFO L919 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2024-12-02 10:26:00,484 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/witness.graphml [2024-12-02 10:26:00,485 INFO L149 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/witness.yml [2024-12-02 10:26:00,485 INFO L131 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2024-12-02 10:26:00,486 INFO L158 Benchmark]: Toolchain (without parser) took 34515.90ms. Allocated memory was 142.6MB in the beginning and 629.1MB in the end (delta: 486.5MB). Free memory was 118.3MB in the beginning and 490.3MB in the end (delta: -372.0MB). Peak memory consumption was 113.5MB. Max. memory is 16.1GB. [2024-12-02 10:26:00,486 INFO L158 Benchmark]: CDTParser took 0.28ms. Allocated memory is still 142.6MB. Free memory is still 83.0MB. There was no memory consumed. Max. memory is 16.1GB. [2024-12-02 10:26:00,486 INFO L158 Benchmark]: CACSL2BoogieTranslator took 339.33ms. Allocated memory is still 142.6MB. Free memory was 118.3MB in the beginning and 99.2MB in the end (delta: 19.2MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-12-02 10:26:00,486 INFO L158 Benchmark]: Boogie Procedure Inliner took 38.61ms. Allocated memory is still 142.6MB. Free memory was 99.2MB in the beginning and 97.1MB in the end (delta: 2.1MB). There was no memory consumed. Max. memory is 16.1GB. [2024-12-02 10:26:00,487 INFO L158 Benchmark]: Boogie Preprocessor took 37.97ms. Allocated memory is still 142.6MB. Free memory was 97.1MB in the beginning and 95.2MB in the end (delta: 1.9MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2024-12-02 10:26:00,487 INFO L158 Benchmark]: RCFGBuilder took 365.38ms. Allocated memory is still 142.6MB. Free memory was 95.2MB in the beginning and 76.6MB in the end (delta: 18.5MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2024-12-02 10:26:00,487 INFO L158 Benchmark]: TraceAbstraction took 33629.81ms. Allocated memory was 142.6MB in the beginning and 629.1MB in the end (delta: 486.5MB). Free memory was 76.0MB in the beginning and 498.5MB in the end (delta: -422.6MB). Peak memory consumption was 351.1MB. Max. memory is 16.1GB. [2024-12-02 10:26:00,487 INFO L158 Benchmark]: Witness Printer took 99.26ms. Allocated memory is still 629.1MB. Free memory was 498.5MB in the beginning and 490.3MB in the end (delta: 8.2MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2024-12-02 10:26:00,489 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.28ms. Allocated memory is still 142.6MB. Free memory is still 83.0MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 339.33ms. Allocated memory is still 142.6MB. Free memory was 118.3MB in the beginning and 99.2MB in the end (delta: 19.2MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 38.61ms. Allocated memory is still 142.6MB. Free memory was 99.2MB in the beginning and 97.1MB in the end (delta: 2.1MB). There was no memory consumed. Max. memory is 16.1GB. * Boogie Preprocessor took 37.97ms. Allocated memory is still 142.6MB. Free memory was 97.1MB in the beginning and 95.2MB in the end (delta: 1.9MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * RCFGBuilder took 365.38ms. Allocated memory is still 142.6MB. Free memory was 95.2MB in the beginning and 76.6MB in the end (delta: 18.5MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 33629.81ms. Allocated memory was 142.6MB in the beginning and 629.1MB in the end (delta: 486.5MB). Free memory was 76.0MB in the beginning and 498.5MB in the end (delta: -422.6MB). Peak memory consumption was 351.1MB. Max. memory is 16.1GB. * Witness Printer took 99.26ms. Allocated memory is still 629.1MB. Free memory was 498.5MB in the beginning and 490.3MB in the end (delta: 8.2MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [49] - GenericResultAtLocation [Line: 118]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [118] - GenericResultAtLocation [Line: 372]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [372] - GenericResultAtLocation [Line: 476]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [476] - GenericResultAtLocation [Line: 842]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [842] - GenericResultAtLocation [Line: 892]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [892] - GenericResultAtLocation [Line: 930]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [930] - GenericResultAtLocation [Line: 939]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [939] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 935]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 11 procedures, 111 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 15.2s, OverallIterations: 14, TraceHistogramMax: 9, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 6.2s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 3643 SdHoareTripleChecker+Valid, 3.7s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 3605 mSDsluCounter, 8980 SdHoareTripleChecker+Invalid, 3.0s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 7026 mSDsCounter, 1325 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 6547 IncrementalHoareTripleChecker+Invalid, 7872 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 1325 mSolverCounterUnsat, 1954 mSDtfsCounter, 6547 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 2395 GetRequests, 2138 SyntacticMatches, 26 SemanticMatches, 231 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1906 ImplicationChecksByTransitivity, 2.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1667occurred in iteration=13, InterpolantAutomatonStates: 171, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.7s AutomataMinimizationTime, 14 MinimizatonAttempts, 469 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TRACE_CHECK: 0.2s SsaConstructionTime, 0.5s SatisfiabilityAnalysisTime, 6.1s InterpolantComputationTime, 2633 NumberOfCodeBlocks, 2633 NumberOfCodeBlocksAsserted, 19 NumberOfCheckSat, 3684 ConstructedInterpolants, 0 QuantifiedInterpolants, 7961 SizeOfPredicates, 5 NumberOfNonLiveVariables, 3080 ConjunctsInSsa, 81 ConjunctsInUnsatCore, 24 InterpolantComputations, 9 PerfectInterpolantSequences, 3119/3798 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available, ConComCheckerStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 63]: Location Invariant Derived location invariant: 0 - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: (((((((((2 == waterLevel) && (methaneLevelCritical == 0)) && (1 == systemActive)) && (splverifierCounter == 0)) && (pumpRunning == 1)) || ((((pumpRunning == 0) && (2 == waterLevel)) && (1 == systemActive)) && (splverifierCounter == 0))) || ((((((methaneLevelCritical == 0) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel == 1)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || ((((((methaneLevelCritical == 0) && (1 == systemActive)) && (splverifierCounter == 0)) && (waterLevel <= 0)) && (1 <= switchedOnBeforeTS)) && (pumpRunning == 1))) || ((((pumpRunning == 0) && (waterLevel <= 1)) && (1 == systemActive)) && (splverifierCounter == 0))) - InvariantResult [Line: 951]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2024-12-02 10:26:00,508 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_d7808fa7-f7f2-42fc-b968-1494060d2880/bin/uautomizer-verify-84ZbGMXZE1/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE