/usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Xmx8000000000 -Xss4m -jar ./plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata ./data -s ../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.use.bitabs.translation true -tc ../../../trunk/examples/toolchains/AutomizerCInline.xml -i ../../../trunk/examples/svcomp/product-lines/minepump_spec5_product44.cil.c -------------------------------------------------------------------------------- This is Ultimate 0.2.4-tmp.fs.bitabs-eval-d9c3e40-m [2023-12-15 22:57:30,018 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-12-15 22:57:30,085 INFO L114 SettingsManager]: Loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf [2023-12-15 22:57:30,090 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-12-15 22:57:30,090 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-12-15 22:57:30,112 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-12-15 22:57:30,113 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-12-15 22:57:30,113 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-12-15 22:57:30,114 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-12-15 22:57:30,116 INFO L153 SettingsManager]: * Use memory slicer=true [2023-12-15 22:57:30,117 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-12-15 22:57:30,117 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-12-15 22:57:30,118 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-12-15 22:57:30,118 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-12-15 22:57:30,119 INFO L153 SettingsManager]: * Use SBE=true [2023-12-15 22:57:30,119 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-12-15 22:57:30,119 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-12-15 22:57:30,119 INFO L153 SettingsManager]: * sizeof long=4 [2023-12-15 22:57:30,119 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-12-15 22:57:30,120 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-12-15 22:57:30,120 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-12-15 22:57:30,121 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-12-15 22:57:30,121 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-12-15 22:57:30,121 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-12-15 22:57:30,121 INFO L153 SettingsManager]: * Allow undefined functions=false [2023-12-15 22:57:30,121 INFO L153 SettingsManager]: * sizeof long double=12 [2023-12-15 22:57:30,121 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-12-15 22:57:30,121 INFO L153 SettingsManager]: * Use constant arrays=true [2023-12-15 22:57:30,122 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-12-15 22:57:30,122 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-12-15 22:57:30,123 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-12-15 22:57:30,123 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-12-15 22:57:30,123 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-12-15 22:57:30,123 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-12-15 22:57:30,123 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-12-15 22:57:30,123 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-12-15 22:57:30,123 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-12-15 22:57:30,124 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-12-15 22:57:30,124 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-12-15 22:57:30,124 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-12-15 22:57:30,124 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-12-15 22:57:30,124 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-12-15 22:57:30,124 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-12-15 22:57:30,124 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Use bitabs translation -> true [2023-12-15 22:57:30,302 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-12-15 22:57:30,321 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-12-15 22:57:30,323 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-12-15 22:57:30,324 INFO L270 PluginConnector]: Initializing CDTParser... [2023-12-15 22:57:30,324 INFO L274 PluginConnector]: CDTParser initialized [2023-12-15 22:57:30,325 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/svcomp/product-lines/minepump_spec5_product44.cil.c [2023-12-15 22:57:31,394 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-12-15 22:57:31,608 INFO L384 CDTParser]: Found 1 translation units. [2023-12-15 22:57:31,608 INFO L180 CDTParser]: Scanning /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product44.cil.c [2023-12-15 22:57:31,620 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b602765a8/af7ec56e216943b0a2db078007f8222c/FLAG774c1f30f [2023-12-15 22:57:31,636 INFO L435 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b602765a8/af7ec56e216943b0a2db078007f8222c [2023-12-15 22:57:31,638 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-12-15 22:57:31,639 INFO L133 ToolchainWalker]: Walking toolchain with 5 elements. [2023-12-15 22:57:31,640 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-12-15 22:57:31,641 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-12-15 22:57:31,644 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-12-15 22:57:31,644 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:31,645 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@20e10b19 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31, skipping insertion in model container [2023-12-15 22:57:31,645 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:31,685 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-12-15 22:57:31,873 WARN L239 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product44.cil.c[18005,18018] [2023-12-15 22:57:31,877 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-12-15 22:57:31,884 INFO L202 MainTranslator]: Completed pre-run [2023-12-15 22:57:31,890 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [49] [2023-12-15 22:57:31,891 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [150] [2023-12-15 22:57:31,891 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [516] [2023-12-15 22:57:31,892 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [721] [2023-12-15 22:57:31,892 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [791] [2023-12-15 22:57:31,892 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [829] [2023-12-15 22:57:31,892 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [927] [2023-12-15 22:57:31,892 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [936] [2023-12-15 22:57:31,931 WARN L239 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product44.cil.c[18005,18018] [2023-12-15 22:57:31,933 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-12-15 22:57:31,945 INFO L206 MainTranslator]: Completed translation [2023-12-15 22:57:31,945 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31 WrapperNode [2023-12-15 22:57:31,945 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-12-15 22:57:31,946 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-12-15 22:57:31,946 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-12-15 22:57:31,946 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-12-15 22:57:31,951 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:31,960 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:31,977 INFO L138 Inliner]: procedures = 57, calls = 101, calls flagged for inlining = 27, calls inlined = 24, statements flattened = 208 [2023-12-15 22:57:31,977 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-12-15 22:57:31,977 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-12-15 22:57:31,977 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-12-15 22:57:31,978 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-12-15 22:57:31,985 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:31,985 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:31,986 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:31,995 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-12-15 22:57:31,995 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:31,995 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:31,999 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:32,002 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:32,010 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:32,011 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:32,012 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-12-15 22:57:32,013 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-12-15 22:57:32,013 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-12-15 22:57:32,013 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-12-15 22:57:32,014 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (1/1) ... [2023-12-15 22:57:32,017 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-12-15 22:57:32,029 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-15 22:57:32,043 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-12-15 22:57:32,076 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-12-15 22:57:32,082 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-12-15 22:57:32,082 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-12-15 22:57:32,083 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-12-15 22:57:32,083 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-12-15 22:57:32,083 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-12-15 22:57:32,083 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-12-15 22:57:32,083 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-12-15 22:57:32,083 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-12-15 22:57:32,083 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-12-15 22:57:32,083 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2023-12-15 22:57:32,083 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2023-12-15 22:57:32,083 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-12-15 22:57:32,083 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-12-15 22:57:32,084 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-12-15 22:57:32,084 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-12-15 22:57:32,084 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-12-15 22:57:32,161 INFO L241 CfgBuilder]: Building ICFG [2023-12-15 22:57:32,164 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-12-15 22:57:32,339 INFO L282 CfgBuilder]: Performing block encoding [2023-12-15 22:57:32,399 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-12-15 22:57:32,399 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-12-15 22:57:32,399 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 15.12 10:57:32 BoogieIcfgContainer [2023-12-15 22:57:32,400 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-12-15 22:57:32,401 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-12-15 22:57:32,401 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-12-15 22:57:32,403 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-12-15 22:57:32,403 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 15.12 10:57:31" (1/3) ... [2023-12-15 22:57:32,404 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4bd4581d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 15.12 10:57:32, skipping insertion in model container [2023-12-15 22:57:32,404 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:31" (2/3) ... [2023-12-15 22:57:32,404 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4bd4581d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 15.12 10:57:32, skipping insertion in model container [2023-12-15 22:57:32,404 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 15.12 10:57:32" (3/3) ... [2023-12-15 22:57:32,405 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product44.cil.c [2023-12-15 22:57:32,416 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-12-15 22:57:32,416 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-12-15 22:57:32,453 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-12-15 22:57:32,458 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@2d83d745, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-12-15 22:57:32,458 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-12-15 22:57:32,461 INFO L276 IsEmpty]: Start isEmpty. Operand has 66 states, 48 states have (on average 1.5416666666666667) internal successors, (74), 54 states have internal predecessors, (74), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 9 states have call predecessors, (10), 10 states have call successors, (10) [2023-12-15 22:57:32,474 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2023-12-15 22:57:32,474 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:32,475 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:32,475 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:32,478 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:32,478 INFO L85 PathProgramCache]: Analyzing trace with hash 156571843, now seen corresponding path program 1 times [2023-12-15 22:57:32,484 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:32,484 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1218927235] [2023-12-15 22:57:32,485 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:32,485 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:32,556 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:32,626 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-12-15 22:57:32,635 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:32,639 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-12-15 22:57:32,640 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:32,642 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:32,643 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:32,643 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1218927235] [2023-12-15 22:57:32,643 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1218927235] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:32,643 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:32,644 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-12-15 22:57:32,645 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [242812319] [2023-12-15 22:57:32,645 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:32,648 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-12-15 22:57:32,656 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:32,689 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-12-15 22:57:32,689 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-12-15 22:57:32,691 INFO L87 Difference]: Start difference. First operand has 66 states, 48 states have (on average 1.5416666666666667) internal successors, (74), 54 states have internal predecessors, (74), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 9 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:32,750 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:32,750 INFO L93 Difference]: Finished difference Result 130 states and 189 transitions. [2023-12-15 22:57:32,752 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-12-15 22:57:32,753 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 22 [2023-12-15 22:57:32,753 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:32,759 INFO L225 Difference]: With dead ends: 130 [2023-12-15 22:57:32,759 INFO L226 Difference]: Without dead ends: 61 [2023-12-15 22:57:32,762 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-12-15 22:57:32,764 INFO L413 NwaCegarLoop]: 73 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 16 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 73 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 16 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:32,764 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 73 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 16 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-15 22:57:32,776 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 61 states. [2023-12-15 22:57:32,795 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 61 to 61. [2023-12-15 22:57:32,797 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 61 states, 45 states have (on average 1.4222222222222223) internal successors, (64), 50 states have internal predecessors, (64), 10 states have call successors, (10), 6 states have call predecessors, (10), 5 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) [2023-12-15 22:57:32,798 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 61 states to 61 states and 83 transitions. [2023-12-15 22:57:32,799 INFO L78 Accepts]: Start accepts. Automaton has 61 states and 83 transitions. Word has length 22 [2023-12-15 22:57:32,800 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:32,800 INFO L495 AbstractCegarLoop]: Abstraction has 61 states and 83 transitions. [2023-12-15 22:57:32,800 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:32,800 INFO L276 IsEmpty]: Start isEmpty. Operand 61 states and 83 transitions. [2023-12-15 22:57:32,802 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-12-15 22:57:32,802 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:32,802 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:32,802 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-12-15 22:57:32,802 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:32,803 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:32,803 INFO L85 PathProgramCache]: Analyzing trace with hash 647013142, now seen corresponding path program 1 times [2023-12-15 22:57:32,803 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:32,803 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1601160693] [2023-12-15 22:57:32,803 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:32,804 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:32,818 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:32,870 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-12-15 22:57:32,872 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:32,873 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-12-15 22:57:32,874 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:32,875 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:32,876 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:32,876 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1601160693] [2023-12-15 22:57:32,876 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1601160693] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:32,876 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:32,876 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-15 22:57:32,876 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1882890056] [2023-12-15 22:57:32,877 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:32,877 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-15 22:57:32,877 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:32,878 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-15 22:57:32,878 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-15 22:57:32,878 INFO L87 Difference]: Start difference. First operand 61 states and 83 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:32,901 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:32,901 INFO L93 Difference]: Finished difference Result 93 states and 126 transitions. [2023-12-15 22:57:32,901 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-15 22:57:32,902 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 23 [2023-12-15 22:57:32,902 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:32,902 INFO L225 Difference]: With dead ends: 93 [2023-12-15 22:57:32,902 INFO L226 Difference]: Without dead ends: 53 [2023-12-15 22:57:32,903 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-15 22:57:32,904 INFO L413 NwaCegarLoop]: 59 mSDtfsCounter, 14 mSDsluCounter, 45 mSDsCounter, 0 mSdLazyCounter, 21 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 17 SdHoareTripleChecker+Valid, 104 SdHoareTripleChecker+Invalid, 21 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 21 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:32,904 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [17 Valid, 104 Invalid, 21 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 21 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-15 22:57:32,905 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2023-12-15 22:57:32,908 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2023-12-15 22:57:32,908 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 40 states have (on average 1.45) internal successors, (58), 45 states have internal predecessors, (58), 7 states have call successors, (7), 5 states have call predecessors, (7), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2023-12-15 22:57:32,909 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 72 transitions. [2023-12-15 22:57:32,909 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 72 transitions. Word has length 23 [2023-12-15 22:57:32,909 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:32,909 INFO L495 AbstractCegarLoop]: Abstraction has 53 states and 72 transitions. [2023-12-15 22:57:32,910 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:32,910 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 72 transitions. [2023-12-15 22:57:32,910 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-12-15 22:57:32,910 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:32,911 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:32,911 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-12-15 22:57:32,911 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:32,911 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:32,911 INFO L85 PathProgramCache]: Analyzing trace with hash -551260707, now seen corresponding path program 1 times [2023-12-15 22:57:32,911 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:32,912 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1253954097] [2023-12-15 22:57:32,912 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:32,912 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:32,923 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:32,973 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-15 22:57:32,975 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:32,977 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-12-15 22:57:32,979 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:32,981 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:32,982 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:32,983 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1253954097] [2023-12-15 22:57:32,983 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1253954097] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:32,983 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:32,983 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-15 22:57:32,983 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2025325307] [2023-12-15 22:57:32,984 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:32,984 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-15 22:57:32,984 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:32,985 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-15 22:57:32,987 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-15 22:57:32,987 INFO L87 Difference]: Start difference. First operand 53 states and 72 transitions. Second operand has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:33,025 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:33,025 INFO L93 Difference]: Finished difference Result 155 states and 213 transitions. [2023-12-15 22:57:33,025 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-15 22:57:33,025 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 26 [2023-12-15 22:57:33,026 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:33,026 INFO L225 Difference]: With dead ends: 155 [2023-12-15 22:57:33,027 INFO L226 Difference]: Without dead ends: 104 [2023-12-15 22:57:33,027 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-15 22:57:33,028 INFO L413 NwaCegarLoop]: 69 mSDtfsCounter, 63 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 28 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 63 SdHoareTripleChecker+Valid, 126 SdHoareTripleChecker+Invalid, 29 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 28 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:33,028 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [63 Valid, 126 Invalid, 29 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 28 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-15 22:57:33,029 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2023-12-15 22:57:33,039 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 100. [2023-12-15 22:57:33,039 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 100 states, 75 states have (on average 1.4533333333333334) internal successors, (109), 84 states have internal predecessors, (109), 14 states have call successors, (14), 10 states have call predecessors, (14), 10 states have return successors, (14), 12 states have call predecessors, (14), 14 states have call successors, (14) [2023-12-15 22:57:33,067 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 100 states to 100 states and 137 transitions. [2023-12-15 22:57:33,067 INFO L78 Accepts]: Start accepts. Automaton has 100 states and 137 transitions. Word has length 26 [2023-12-15 22:57:33,068 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:33,068 INFO L495 AbstractCegarLoop]: Abstraction has 100 states and 137 transitions. [2023-12-15 22:57:33,068 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:33,068 INFO L276 IsEmpty]: Start isEmpty. Operand 100 states and 137 transitions. [2023-12-15 22:57:33,069 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-12-15 22:57:33,069 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:33,069 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:33,069 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-12-15 22:57:33,069 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:33,070 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:33,070 INFO L85 PathProgramCache]: Analyzing trace with hash -1291148094, now seen corresponding path program 1 times [2023-12-15 22:57:33,070 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:33,070 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1915276924] [2023-12-15 22:57:33,070 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:33,070 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:33,085 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,105 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-12-15 22:57:33,107 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,108 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-12-15 22:57:33,108 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,110 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:33,110 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:33,110 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1915276924] [2023-12-15 22:57:33,110 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1915276924] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:33,110 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:33,110 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-15 22:57:33,110 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1849010299] [2023-12-15 22:57:33,110 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:33,111 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-15 22:57:33,111 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:33,111 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-15 22:57:33,111 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-15 22:57:33,111 INFO L87 Difference]: Start difference. First operand 100 states and 137 transitions. Second operand has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 3 states have internal predecessors, (23), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:33,150 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:33,150 INFO L93 Difference]: Finished difference Result 275 states and 380 transitions. [2023-12-15 22:57:33,150 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-15 22:57:33,150 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 3 states have internal predecessors, (23), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 29 [2023-12-15 22:57:33,150 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:33,152 INFO L225 Difference]: With dead ends: 275 [2023-12-15 22:57:33,152 INFO L226 Difference]: Without dead ends: 177 [2023-12-15 22:57:33,152 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-15 22:57:33,153 INFO L413 NwaCegarLoop]: 65 mSDtfsCounter, 54 mSDsluCounter, 45 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 54 SdHoareTripleChecker+Valid, 110 SdHoareTripleChecker+Invalid, 31 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:33,153 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [54 Valid, 110 Invalid, 31 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-15 22:57:33,154 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 177 states. [2023-12-15 22:57:33,168 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 177 to 175. [2023-12-15 22:57:33,169 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 175 states, 130 states have (on average 1.4076923076923078) internal successors, (183), 143 states have internal predecessors, (183), 24 states have call successors, (24), 20 states have call predecessors, (24), 20 states have return successors, (28), 24 states have call predecessors, (28), 24 states have call successors, (28) [2023-12-15 22:57:33,170 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 175 states to 175 states and 235 transitions. [2023-12-15 22:57:33,170 INFO L78 Accepts]: Start accepts. Automaton has 175 states and 235 transitions. Word has length 29 [2023-12-15 22:57:33,171 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:33,171 INFO L495 AbstractCegarLoop]: Abstraction has 175 states and 235 transitions. [2023-12-15 22:57:33,171 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 3 states have internal predecessors, (23), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:33,171 INFO L276 IsEmpty]: Start isEmpty. Operand 175 states and 235 transitions. [2023-12-15 22:57:33,172 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-12-15 22:57:33,172 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:33,172 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:33,172 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-12-15 22:57:33,172 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:33,173 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:33,173 INFO L85 PathProgramCache]: Analyzing trace with hash -618715526, now seen corresponding path program 1 times [2023-12-15 22:57:33,173 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:33,173 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1255322851] [2023-12-15 22:57:33,173 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:33,173 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:33,182 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,226 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-12-15 22:57:33,227 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,228 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-12-15 22:57:33,229 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,238 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-12-15 22:57:33,238 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:33,238 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1255322851] [2023-12-15 22:57:33,238 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1255322851] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:33,238 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:33,239 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-12-15 22:57:33,239 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [273044845] [2023-12-15 22:57:33,239 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:33,239 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-12-15 22:57:33,239 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:33,239 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-12-15 22:57:33,240 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-12-15 22:57:33,240 INFO L87 Difference]: Start difference. First operand 175 states and 235 transitions. Second operand has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:33,360 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:33,360 INFO L93 Difference]: Finished difference Result 350 states and 472 transitions. [2023-12-15 22:57:33,361 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-12-15 22:57:33,361 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 29 [2023-12-15 22:57:33,362 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:33,366 INFO L225 Difference]: With dead ends: 350 [2023-12-15 22:57:33,366 INFO L226 Difference]: Without dead ends: 177 [2023-12-15 22:57:33,370 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2023-12-15 22:57:33,370 INFO L413 NwaCegarLoop]: 59 mSDtfsCounter, 53 mSDsluCounter, 199 mSDsCounter, 0 mSdLazyCounter, 108 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 55 SdHoareTripleChecker+Valid, 258 SdHoareTripleChecker+Invalid, 113 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 108 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:33,371 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [55 Valid, 258 Invalid, 113 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 108 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-15 22:57:33,371 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 177 states. [2023-12-15 22:57:33,389 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 177 to 173. [2023-12-15 22:57:33,390 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 173 states, 128 states have (on average 1.3828125) internal successors, (177), 141 states have internal predecessors, (177), 24 states have call successors, (24), 20 states have call predecessors, (24), 20 states have return successors, (28), 24 states have call predecessors, (28), 24 states have call successors, (28) [2023-12-15 22:57:33,390 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 173 states to 173 states and 229 transitions. [2023-12-15 22:57:33,391 INFO L78 Accepts]: Start accepts. Automaton has 173 states and 229 transitions. Word has length 29 [2023-12-15 22:57:33,391 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:33,391 INFO L495 AbstractCegarLoop]: Abstraction has 173 states and 229 transitions. [2023-12-15 22:57:33,391 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:33,391 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 229 transitions. [2023-12-15 22:57:33,392 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2023-12-15 22:57:33,392 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:33,392 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:33,392 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-12-15 22:57:33,393 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:33,393 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:33,393 INFO L85 PathProgramCache]: Analyzing trace with hash 243757737, now seen corresponding path program 1 times [2023-12-15 22:57:33,393 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:33,393 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1205775266] [2023-12-15 22:57:33,393 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:33,393 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:33,402 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,448 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-15 22:57:33,449 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,450 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2023-12-15 22:57:33,451 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,452 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:33,452 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:33,452 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1205775266] [2023-12-15 22:57:33,452 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1205775266] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:33,452 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:33,452 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-12-15 22:57:33,452 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1379624491] [2023-12-15 22:57:33,452 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:33,453 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-12-15 22:57:33,453 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:33,453 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-12-15 22:57:33,453 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-15 22:57:33,453 INFO L87 Difference]: Start difference. First operand 173 states and 229 transitions. Second operand has 4 states, 4 states have (on average 7.25) internal successors, (29), 4 states have internal predecessors, (29), 2 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:33,500 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:33,501 INFO L93 Difference]: Finished difference Result 350 states and 472 transitions. [2023-12-15 22:57:33,501 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-12-15 22:57:33,501 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 7.25) internal successors, (29), 4 states have internal predecessors, (29), 2 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 35 [2023-12-15 22:57:33,501 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:33,504 INFO L225 Difference]: With dead ends: 350 [2023-12-15 22:57:33,504 INFO L226 Difference]: Without dead ends: 179 [2023-12-15 22:57:33,505 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-15 22:57:33,509 INFO L413 NwaCegarLoop]: 59 mSDtfsCounter, 1 mSDsluCounter, 111 mSDsCounter, 0 mSdLazyCounter, 46 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 2 SdHoareTripleChecker+Valid, 170 SdHoareTripleChecker+Invalid, 47 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 46 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:33,512 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [2 Valid, 170 Invalid, 47 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 46 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-15 22:57:33,515 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 179 states. [2023-12-15 22:57:33,530 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 179 to 177. [2023-12-15 22:57:33,531 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 177 states, 132 states have (on average 1.371212121212121) internal successors, (181), 145 states have internal predecessors, (181), 24 states have call successors, (24), 20 states have call predecessors, (24), 20 states have return successors, (28), 24 states have call predecessors, (28), 24 states have call successors, (28) [2023-12-15 22:57:33,532 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 177 states to 177 states and 233 transitions. [2023-12-15 22:57:33,536 INFO L78 Accepts]: Start accepts. Automaton has 177 states and 233 transitions. Word has length 35 [2023-12-15 22:57:33,536 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:33,537 INFO L495 AbstractCegarLoop]: Abstraction has 177 states and 233 transitions. [2023-12-15 22:57:33,537 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 7.25) internal successors, (29), 4 states have internal predecessors, (29), 2 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:33,537 INFO L276 IsEmpty]: Start isEmpty. Operand 177 states and 233 transitions. [2023-12-15 22:57:33,541 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2023-12-15 22:57:33,541 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:33,541 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:33,541 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-12-15 22:57:33,542 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:33,542 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:33,542 INFO L85 PathProgramCache]: Analyzing trace with hash -1036105941, now seen corresponding path program 1 times [2023-12-15 22:57:33,542 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:33,542 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [130042284] [2023-12-15 22:57:33,542 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:33,542 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:33,560 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,622 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-15 22:57:33,623 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,625 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2023-12-15 22:57:33,626 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,630 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:33,630 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:33,630 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [130042284] [2023-12-15 22:57:33,630 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [130042284] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:33,631 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:33,631 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-12-15 22:57:33,631 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1002669817] [2023-12-15 22:57:33,631 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:33,631 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-12-15 22:57:33,631 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:33,631 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-12-15 22:57:33,632 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-12-15 22:57:33,632 INFO L87 Difference]: Start difference. First operand 177 states and 233 transitions. Second operand has 5 states, 5 states have (on average 5.8) internal successors, (29), 5 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:33,716 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:33,716 INFO L93 Difference]: Finished difference Result 383 states and 513 transitions. [2023-12-15 22:57:33,716 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2023-12-15 22:57:33,716 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.8) internal successors, (29), 5 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 35 [2023-12-15 22:57:33,718 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:33,721 INFO L225 Difference]: With dead ends: 383 [2023-12-15 22:57:33,721 INFO L226 Difference]: Without dead ends: 208 [2023-12-15 22:57:33,722 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2023-12-15 22:57:33,723 INFO L413 NwaCegarLoop]: 69 mSDtfsCounter, 91 mSDsluCounter, 190 mSDsCounter, 0 mSdLazyCounter, 80 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 93 SdHoareTripleChecker+Valid, 259 SdHoareTripleChecker+Invalid, 85 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 80 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:33,723 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [93 Valid, 259 Invalid, 85 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 80 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-15 22:57:33,725 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 208 states. [2023-12-15 22:57:33,746 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 208 to 181. [2023-12-15 22:57:33,746 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 181 states, 136 states have (on average 1.3602941176470589) internal successors, (185), 149 states have internal predecessors, (185), 24 states have call successors, (24), 20 states have call predecessors, (24), 20 states have return successors, (28), 24 states have call predecessors, (28), 24 states have call successors, (28) [2023-12-15 22:57:33,747 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 181 states to 181 states and 237 transitions. [2023-12-15 22:57:33,747 INFO L78 Accepts]: Start accepts. Automaton has 181 states and 237 transitions. Word has length 35 [2023-12-15 22:57:33,747 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:33,747 INFO L495 AbstractCegarLoop]: Abstraction has 181 states and 237 transitions. [2023-12-15 22:57:33,747 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.8) internal successors, (29), 5 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:33,748 INFO L276 IsEmpty]: Start isEmpty. Operand 181 states and 237 transitions. [2023-12-15 22:57:33,748 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2023-12-15 22:57:33,748 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:33,748 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:33,748 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-12-15 22:57:33,748 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:33,749 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:33,749 INFO L85 PathProgramCache]: Analyzing trace with hash 1670513453, now seen corresponding path program 1 times [2023-12-15 22:57:33,749 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:33,749 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2043957119] [2023-12-15 22:57:33,749 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:33,749 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:33,780 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,822 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-15 22:57:33,823 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,824 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2023-12-15 22:57:33,825 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:33,826 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:33,826 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:33,826 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2043957119] [2023-12-15 22:57:33,826 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2043957119] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:33,826 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:33,826 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-15 22:57:33,826 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [343642410] [2023-12-15 22:57:33,826 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:33,827 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-15 22:57:33,827 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:33,827 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-15 22:57:33,827 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-15 22:57:33,827 INFO L87 Difference]: Start difference. First operand 181 states and 237 transitions. Second operand has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 3 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:33,871 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:33,871 INFO L93 Difference]: Finished difference Result 513 states and 699 transitions. [2023-12-15 22:57:33,871 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-15 22:57:33,871 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 3 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 35 [2023-12-15 22:57:33,872 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:33,873 INFO L225 Difference]: With dead ends: 513 [2023-12-15 22:57:33,873 INFO L226 Difference]: Without dead ends: 334 [2023-12-15 22:57:33,874 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-15 22:57:33,874 INFO L413 NwaCegarLoop]: 69 mSDtfsCounter, 45 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 33 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 45 SdHoareTripleChecker+Valid, 122 SdHoareTripleChecker+Invalid, 37 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 33 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:33,874 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [45 Valid, 122 Invalid, 37 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 33 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-15 22:57:33,875 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 334 states. [2023-12-15 22:57:33,894 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 334 to 332. [2023-12-15 22:57:33,894 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 332 states, 247 states have (on average 1.3481781376518218) internal successors, (333), 264 states have internal predecessors, (333), 48 states have call successors, (48), 40 states have call predecessors, (48), 36 states have return successors, (60), 44 states have call predecessors, (60), 48 states have call successors, (60) [2023-12-15 22:57:33,896 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 332 states to 332 states and 441 transitions. [2023-12-15 22:57:33,897 INFO L78 Accepts]: Start accepts. Automaton has 332 states and 441 transitions. Word has length 35 [2023-12-15 22:57:33,897 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:33,897 INFO L495 AbstractCegarLoop]: Abstraction has 332 states and 441 transitions. [2023-12-15 22:57:33,897 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 3 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:33,897 INFO L276 IsEmpty]: Start isEmpty. Operand 332 states and 441 transitions. [2023-12-15 22:57:33,899 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2023-12-15 22:57:33,899 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:33,899 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:33,899 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-12-15 22:57:33,899 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:33,900 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:33,900 INFO L85 PathProgramCache]: Analyzing trace with hash -2099950073, now seen corresponding path program 1 times [2023-12-15 22:57:33,900 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:33,900 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1565062302] [2023-12-15 22:57:33,900 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:33,900 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:33,911 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,019 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-15 22:57:34,021 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,024 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-12-15 22:57:34,025 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,026 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 32 [2023-12-15 22:57:34,027 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,048 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:34,048 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:34,048 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1565062302] [2023-12-15 22:57:34,048 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1565062302] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:34,048 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:34,048 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-12-15 22:57:34,048 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [631639405] [2023-12-15 22:57:34,049 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:34,049 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-12-15 22:57:34,049 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:34,049 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-12-15 22:57:34,049 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2023-12-15 22:57:34,049 INFO L87 Difference]: Start difference. First operand 332 states and 441 transitions. Second operand has 6 states, 6 states have (on average 5.166666666666667) internal successors, (31), 5 states have internal predecessors, (31), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-12-15 22:57:34,225 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:34,225 INFO L93 Difference]: Finished difference Result 880 states and 1209 transitions. [2023-12-15 22:57:34,225 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2023-12-15 22:57:34,225 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.166666666666667) internal successors, (31), 5 states have internal predecessors, (31), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 39 [2023-12-15 22:57:34,225 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:34,227 INFO L225 Difference]: With dead ends: 880 [2023-12-15 22:57:34,227 INFO L226 Difference]: Without dead ends: 550 [2023-12-15 22:57:34,228 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=48, Invalid=84, Unknown=0, NotChecked=0, Total=132 [2023-12-15 22:57:34,229 INFO L413 NwaCegarLoop]: 80 mSDtfsCounter, 149 mSDsluCounter, 165 mSDsCounter, 0 mSdLazyCounter, 178 mSolverCounterSat, 32 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 155 SdHoareTripleChecker+Valid, 245 SdHoareTripleChecker+Invalid, 210 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 32 IncrementalHoareTripleChecker+Valid, 178 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:34,229 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [155 Valid, 245 Invalid, 210 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [32 Valid, 178 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-15 22:57:34,230 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 550 states. [2023-12-15 22:57:34,266 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 550 to 537. [2023-12-15 22:57:34,267 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 537 states, 405 states have (on average 1.3111111111111111) internal successors, (531), 437 states have internal predecessors, (531), 72 states have call successors, (72), 55 states have call predecessors, (72), 59 states have return successors, (113), 68 states have call predecessors, (113), 72 states have call successors, (113) [2023-12-15 22:57:34,282 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 537 states to 537 states and 716 transitions. [2023-12-15 22:57:34,282 INFO L78 Accepts]: Start accepts. Automaton has 537 states and 716 transitions. Word has length 39 [2023-12-15 22:57:34,283 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:34,283 INFO L495 AbstractCegarLoop]: Abstraction has 537 states and 716 transitions. [2023-12-15 22:57:34,283 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.166666666666667) internal successors, (31), 5 states have internal predecessors, (31), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-12-15 22:57:34,283 INFO L276 IsEmpty]: Start isEmpty. Operand 537 states and 716 transitions. [2023-12-15 22:57:34,284 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2023-12-15 22:57:34,284 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:34,285 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:34,285 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-12-15 22:57:34,285 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:34,285 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:34,285 INFO L85 PathProgramCache]: Analyzing trace with hash 1877758216, now seen corresponding path program 1 times [2023-12-15 22:57:34,285 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:34,285 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [885455008] [2023-12-15 22:57:34,285 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:34,285 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:34,294 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,398 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-15 22:57:34,399 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,409 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-15 22:57:34,412 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,427 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-15 22:57:34,428 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,430 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2023-12-15 22:57:34,431 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,440 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 52 [2023-12-15 22:57:34,441 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,443 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2023-12-15 22:57:34,443 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,445 INFO L134 CoverageAnalysis]: Checked inductivity of 23 backedges. 13 proven. 6 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-12-15 22:57:34,445 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:34,445 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [885455008] [2023-12-15 22:57:34,445 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [885455008] provided 0 perfect and 1 imperfect interpolant sequences [2023-12-15 22:57:34,446 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2121572147] [2023-12-15 22:57:34,446 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:34,446 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-12-15 22:57:34,446 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-15 22:57:34,448 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-12-15 22:57:34,494 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-12-15 22:57:34,538 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:34,540 INFO L262 TraceCheckSpWp]: Trace formula consists of 277 conjuncts, 8 conjunts are in the unsatisfiable core [2023-12-15 22:57:34,545 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-12-15 22:57:34,660 INFO L134 CoverageAnalysis]: Checked inductivity of 23 backedges. 18 proven. 5 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-12-15 22:57:34,660 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-12-15 22:57:34,812 INFO L134 CoverageAnalysis]: Checked inductivity of 23 backedges. 15 proven. 4 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-12-15 22:57:34,812 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2121572147] provided 0 perfect and 2 imperfect interpolant sequences [2023-12-15 22:57:34,812 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-12-15 22:57:34,812 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 6, 6] total 14 [2023-12-15 22:57:34,813 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1451496002] [2023-12-15 22:57:34,813 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-12-15 22:57:34,814 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2023-12-15 22:57:34,814 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:34,815 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2023-12-15 22:57:34,815 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=33, Invalid=149, Unknown=0, NotChecked=0, Total=182 [2023-12-15 22:57:34,815 INFO L87 Difference]: Start difference. First operand 537 states and 716 transitions. Second operand has 14 states, 10 states have (on average 7.8) internal successors, (78), 10 states have internal predecessors, (78), 6 states have call successors, (16), 6 states have call predecessors, (16), 6 states have return successors, (13), 7 states have call predecessors, (13), 6 states have call successors, (13) [2023-12-15 22:57:35,545 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:35,545 INFO L93 Difference]: Finished difference Result 1092 states and 1492 transitions. [2023-12-15 22:57:35,546 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 37 states. [2023-12-15 22:57:35,546 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 10 states have (on average 7.8) internal successors, (78), 10 states have internal predecessors, (78), 6 states have call successors, (16), 6 states have call predecessors, (16), 6 states have return successors, (13), 7 states have call predecessors, (13), 6 states have call successors, (13) Word has length 65 [2023-12-15 22:57:35,547 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:35,547 INFO L225 Difference]: With dead ends: 1092 [2023-12-15 22:57:35,547 INFO L226 Difference]: Without dead ends: 0 [2023-12-15 22:57:35,550 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 191 GetRequests, 145 SyntacticMatches, 4 SemanticMatches, 42 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 480 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=390, Invalid=1502, Unknown=0, NotChecked=0, Total=1892 [2023-12-15 22:57:35,550 INFO L413 NwaCegarLoop]: 120 mSDtfsCounter, 336 mSDsluCounter, 712 mSDsCounter, 0 mSdLazyCounter, 805 mSolverCounterSat, 102 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 343 SdHoareTripleChecker+Valid, 832 SdHoareTripleChecker+Invalid, 907 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 102 IncrementalHoareTripleChecker+Valid, 805 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:35,551 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [343 Valid, 832 Invalid, 907 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [102 Valid, 805 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-12-15 22:57:35,551 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-12-15 22:57:35,552 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-12-15 22:57:35,552 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-15 22:57:35,552 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-12-15 22:57:35,553 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 65 [2023-12-15 22:57:35,553 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:35,553 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-12-15 22:57:35,553 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 10 states have (on average 7.8) internal successors, (78), 10 states have internal predecessors, (78), 6 states have call successors, (16), 6 states have call predecessors, (16), 6 states have return successors, (13), 7 states have call predecessors, (13), 6 states have call successors, (13) [2023-12-15 22:57:35,553 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-12-15 22:57:35,554 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-12-15 22:57:35,555 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-12-15 22:57:35,571 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-12-15 22:57:35,761 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-12-15 22:57:35,763 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-12-15 22:57:36,819 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 556 562) no Hoare annotation was computed. [2023-12-15 22:57:36,819 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 556 562) the Hoare annotation is: true [2023-12-15 22:57:36,819 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 83 94) the Hoare annotation is: true [2023-12-15 22:57:36,819 INFO L899 garLoopResultBuilder]: For program point L87-1(lines 83 94) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 83 94) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 831 860) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L856(lines 831 860) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L852(line 852) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L845(lines 845 849) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L902 garLoopResultBuilder]: At program point L845-1(lines 845 849) the Hoare annotation is: true [2023-12-15 22:57:36,820 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 831 860) the Hoare annotation is: true [2023-12-15 22:57:36,820 INFO L902 garLoopResultBuilder]: At program point L841-2(lines 841 855) the Hoare annotation is: true [2023-12-15 22:57:36,820 INFO L902 garLoopResultBuilder]: At program point L837(line 837) the Hoare annotation is: true [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L837-1(line 837) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L543-1(lines 543 549) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L605(lines 605 611) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L572(lines 572 580) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L605-2(lines 598 614) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L568(lines 568 585) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L688(lines 688 692) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L688-2(lines 688 692) no Hoare annotation was computed. [2023-12-15 22:57:36,820 INFO L899 garLoopResultBuilder]: For program point L969(lines 969 975) no Hoare annotation was computed. [2023-12-15 22:57:36,821 INFO L899 garLoopResultBuilder]: For program point L932(line 932) no Hoare annotation was computed. [2023-12-15 22:57:36,821 INFO L899 garLoopResultBuilder]: For program point isHighWaterSensorDry_returnLabel#1(lines 136 149) no Hoare annotation was computed. [2023-12-15 22:57:36,821 INFO L899 garLoopResultBuilder]: For program point L536(lines 536 542) no Hoare annotation was computed. [2023-12-15 22:57:36,821 INFO L899 garLoopResultBuilder]: For program point L536-2(lines 532 554) no Hoare annotation was computed. [2023-12-15 22:57:36,821 INFO L899 garLoopResultBuilder]: For program point L140(lines 140 146) no Hoare annotation was computed. [2023-12-15 22:57:36,821 INFO L895 garLoopResultBuilder]: At program point L966(line 966) the Hoare annotation is: (let ((.cse0 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse4 (<= ~waterLevel~0 1)) (.cse3 (< 2 |old(~waterLevel~0)|)) (.cse1 (< |old(~pumpRunning~0)| 1)) (.cse2 (and (<= 1 ~pumpRunning~0) (<= ~waterLevel~0 2) (<= 1 ~switchedOnBeforeTS~0)))) (and (or .cse0 .cse1 .cse2 .cse3) (or (< 1 |old(~waterLevel~0)|) .cse0 .cse4 .cse1) (or (and (= ~pumpRunning~0 0) .cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0)) .cse3) (or (not (= |old(~waterLevel~0)| 2)) .cse1 .cse2))) [2023-12-15 22:57:36,821 INFO L899 garLoopResultBuilder]: For program point L966-1(line 966) no Hoare annotation was computed. [2023-12-15 22:57:36,821 INFO L895 garLoopResultBuilder]: At program point L578(line 578) the Hoare annotation is: (let ((.cse0 (< |old(~pumpRunning~0)| 1)) (.cse1 (< 2 |old(~waterLevel~0)|))) (and (or (< |old(~switchedOnBeforeTS~0)| 1) .cse0 .cse1) (or (not (= |old(~waterLevel~0)| 2)) .cse0) (or (not (= |old(~pumpRunning~0)| 0)) .cse1 (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0) (= |timeShift_processEnvironment_~tmp~3#1| 0))))) [2023-12-15 22:57:36,821 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 529 555) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse0 (< |old(~pumpRunning~0)| 1)) (.cse2 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse4 (< 2 |old(~waterLevel~0)|))) (and (or (< |old(~switchedOnBeforeTS~0)| 1) .cse0 (and .cse1 .cse2 .cse3) .cse4) (or (and .cse1 (= 2 ~waterLevel~0) .cse2) (not (= |old(~waterLevel~0)| 2)) .cse0) (or (and (= ~pumpRunning~0 0) .cse2 .cse3) (not (= |old(~pumpRunning~0)| 0)) .cse4))) [2023-12-15 22:57:36,822 INFO L895 garLoopResultBuilder]: At program point L583(line 583) the Hoare annotation is: (let ((.cse0 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse3 (< 2 |old(~waterLevel~0)|)) (.cse1 (< |old(~pumpRunning~0)| 1)) (.cse2 (and (<= 1 ~pumpRunning~0) (<= ~waterLevel~0 2) (<= 1 ~switchedOnBeforeTS~0)))) (and (or .cse0 .cse1 .cse2 .cse3) (or (< 1 |old(~waterLevel~0)|) .cse0 (<= ~waterLevel~0 1) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse3) (or (not (= |old(~waterLevel~0)| 2)) .cse1 .cse2))) [2023-12-15 22:57:36,822 INFO L899 garLoopResultBuilder]: For program point L583-1(lines 564 588) no Hoare annotation was computed. [2023-12-15 22:57:36,822 INFO L899 garLoopResultBuilder]: For program point L63(lines 63 67) no Hoare annotation was computed. [2023-12-15 22:57:36,822 INFO L899 garLoopResultBuilder]: For program point L63-2(lines 59 70) no Hoare annotation was computed. [2023-12-15 22:57:36,822 INFO L895 garLoopResultBuilder]: At program point L951(line 951) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse0 (< |old(~pumpRunning~0)| 1)) (.cse2 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse4 (< 2 |old(~waterLevel~0)|))) (and (or (< |old(~switchedOnBeforeTS~0)| 1) .cse0 (and .cse1 .cse2 .cse3) .cse4) (or (and .cse1 (= 2 ~waterLevel~0) .cse2) (not (= |old(~waterLevel~0)| 2)) .cse0) (or (and (= ~pumpRunning~0 0) .cse2 .cse3) (not (= |old(~pumpRunning~0)| 0)) .cse4))) [2023-12-15 22:57:36,822 INFO L899 garLoopResultBuilder]: For program point L951-1(line 951) no Hoare annotation was computed. [2023-12-15 22:57:36,822 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 529 555) no Hoare annotation was computed. [2023-12-15 22:57:36,822 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 932) no Hoare annotation was computed. [2023-12-15 22:57:36,822 INFO L899 garLoopResultBuilder]: For program point L968(lines 968 978) no Hoare annotation was computed. [2023-12-15 22:57:36,822 INFO L899 garLoopResultBuilder]: For program point L964(lines 964 981) no Hoare annotation was computed. [2023-12-15 22:57:36,822 INFO L899 garLoopResultBuilder]: For program point L964-1(lines 956 984) no Hoare annotation was computed. [2023-12-15 22:57:36,822 INFO L895 garLoopResultBuilder]: At program point L783(lines 732 784) the Hoare annotation is: false [2023-12-15 22:57:36,822 INFO L899 garLoopResultBuilder]: For program point L771(lines 771 777) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L895 garLoopResultBuilder]: At program point L771-2(lines 763 778) the Hoare annotation is: (let ((.cse1 (= 2 ~waterLevel~0)) (.cse3 (<= 1 ~pumpRunning~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse4 (<= ~waterLevel~0 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2) (and .cse3 .cse1 .cse2) (and .cse3 .cse4 .cse2 (<= 1 ~switchedOnBeforeTS~0)) (and .cse0 .cse4 .cse2))) [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point L734(lines 733 782) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point L763(lines 763 778) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L895 garLoopResultBuilder]: At program point L755(line 755) the Hoare annotation is: (let ((.cse1 (= 2 ~waterLevel~0)) (.cse3 (<= 1 ~pumpRunning~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse4 (<= ~waterLevel~0 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2) (and .cse3 .cse1 .cse2) (and .cse3 .cse4 .cse2 (<= 1 ~switchedOnBeforeTS~0)) (and .cse0 .cse4 .cse2))) [2023-12-15 22:57:36,823 INFO L895 garLoopResultBuilder]: At program point L780(lines 733 782) the Hoare annotation is: (let ((.cse1 (= 2 ~waterLevel~0)) (.cse3 (<= 1 ~pumpRunning~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse4 (<= ~waterLevel~0 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2) (and .cse3 .cse1 .cse2) (and .cse3 .cse4 .cse2 (<= 1 ~switchedOnBeforeTS~0)) (and .cse0 .cse4 .cse2))) [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point L743(lines 743 749) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point L743-1(lines 743 749) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point L702(lines 702 708) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point L702-2(lines 702 708) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point L914(lines 914 921) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point L786(lines 723 790) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point L753(lines 753 759) no Hoare annotation was computed. [2023-12-15 22:57:36,823 INFO L899 garLoopResultBuilder]: For program point L753-1(lines 753 759) no Hoare annotation was computed. [2023-12-15 22:57:36,824 INFO L899 garLoopResultBuilder]: For program point L914-2(lines 914 921) no Hoare annotation was computed. [2023-12-15 22:57:36,824 INFO L895 garLoopResultBuilder]: At program point L745(line 745) the Hoare annotation is: (let ((.cse1 (= 2 ~waterLevel~0)) (.cse3 (<= 1 ~pumpRunning~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse4 (<= ~waterLevel~0 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2) (and .cse3 .cse1 .cse2) (and .cse3 .cse4 .cse2 (<= 1 ~switchedOnBeforeTS~0)) (and .cse0 .cse4 .cse2))) [2023-12-15 22:57:36,824 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 71 82) no Hoare annotation was computed. [2023-12-15 22:57:36,824 INFO L899 garLoopResultBuilder]: For program point L75-1(lines 71 82) no Hoare annotation was computed. [2023-12-15 22:57:36,824 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 71 82) the Hoare annotation is: (let ((.cse3 (< ~pumpRunning~0 1)) (.cse1 (= 2 ~waterLevel~0)) (.cse2 (not (= |old(~waterLevel~0)| 2))) (.cse0 (not (= ~pumpRunning~0 0))) (.cse4 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or .cse0 .cse1 .cse2) (or .cse3 (< ~switchedOnBeforeTS~0 1) .cse4 (< 2 |old(~waterLevel~0)|)) (or .cse3 .cse1 .cse2) (or (< 1 |old(~waterLevel~0)|) .cse0 .cse4))) [2023-12-15 22:57:36,824 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 634 642) no Hoare annotation was computed. [2023-12-15 22:57:36,824 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 634 642) the Hoare annotation is: true [2023-12-15 22:57:36,826 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:36,827 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2023-12-15 22:57:36,839 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 15.12 10:57:36 BoogieIcfgContainer [2023-12-15 22:57:36,839 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-12-15 22:57:36,840 INFO L158 Benchmark]: Toolchain (without parser) took 5200.92ms. Allocated memory is still 318.8MB. Free memory was 265.1MB in the beginning and 120.8MB in the end (delta: 144.2MB). Peak memory consumption was 145.3MB. Max. memory is 8.0GB. [2023-12-15 22:57:36,840 INFO L158 Benchmark]: CDTParser took 0.45ms. Allocated memory is still 219.2MB. Free memory was 169.1MB in the beginning and 169.0MB in the end (delta: 146.8kB). There was no memory consumed. Max. memory is 8.0GB. [2023-12-15 22:57:36,840 INFO L158 Benchmark]: CACSL2BoogieTranslator took 305.09ms. Allocated memory is still 318.8MB. Free memory was 265.1MB in the beginning and 245.1MB in the end (delta: 19.9MB). Peak memory consumption was 19.9MB. Max. memory is 8.0GB. [2023-12-15 22:57:36,840 INFO L158 Benchmark]: Boogie Procedure Inliner took 30.92ms. Allocated memory is still 318.8MB. Free memory was 245.1MB in the beginning and 243.1MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. [2023-12-15 22:57:36,840 INFO L158 Benchmark]: Boogie Preprocessor took 35.07ms. Allocated memory is still 318.8MB. Free memory was 243.1MB in the beginning and 241.0MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. [2023-12-15 22:57:36,840 INFO L158 Benchmark]: RCFGBuilder took 386.65ms. Allocated memory is still 318.8MB. Free memory was 240.4MB in the beginning and 218.4MB in the end (delta: 22.0MB). Peak memory consumption was 22.0MB. Max. memory is 8.0GB. [2023-12-15 22:57:36,841 INFO L158 Benchmark]: TraceAbstraction took 4438.28ms. Allocated memory is still 318.8MB. Free memory was 217.9MB in the beginning and 120.8MB in the end (delta: 97.1MB). Peak memory consumption was 98.1MB. Max. memory is 8.0GB. [2023-12-15 22:57:36,842 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.45ms. Allocated memory is still 219.2MB. Free memory was 169.1MB in the beginning and 169.0MB in the end (delta: 146.8kB). There was no memory consumed. Max. memory is 8.0GB. * CACSL2BoogieTranslator took 305.09ms. Allocated memory is still 318.8MB. Free memory was 265.1MB in the beginning and 245.1MB in the end (delta: 19.9MB). Peak memory consumption was 19.9MB. Max. memory is 8.0GB. * Boogie Procedure Inliner took 30.92ms. Allocated memory is still 318.8MB. Free memory was 245.1MB in the beginning and 243.1MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. * Boogie Preprocessor took 35.07ms. Allocated memory is still 318.8MB. Free memory was 243.1MB in the beginning and 241.0MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. * RCFGBuilder took 386.65ms. Allocated memory is still 318.8MB. Free memory was 240.4MB in the beginning and 218.4MB in the end (delta: 22.0MB). Peak memory consumption was 22.0MB. Max. memory is 8.0GB. * TraceAbstraction took 4438.28ms. Allocated memory is still 318.8MB. Free memory was 217.9MB in the beginning and 120.8MB in the end (delta: 97.1MB). Peak memory consumption was 98.1MB. Max. memory is 8.0GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [49] - GenericResultAtLocation [Line: 150]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [150] - GenericResultAtLocation [Line: 516]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [516] - GenericResultAtLocation [Line: 721]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [721] - GenericResultAtLocation [Line: 791]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [791] - GenericResultAtLocation [Line: 829]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [829] - GenericResultAtLocation [Line: 927]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [927] - GenericResultAtLocation [Line: 936]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [936] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 932]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 66 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 4.4s, OverallIterations: 10, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.5s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 1.1s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 827 SdHoareTripleChecker+Valid, 0.7s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 806 mSDsluCounter, 2299 SdHoareTripleChecker+Invalid, 0.6s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1577 mSDsCounter, 156 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1340 IncrementalHoareTripleChecker+Invalid, 1496 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 156 mSolverCounterUnsat, 722 mSDtfsCounter, 1340 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 278 GetRequests, 202 SyntacticMatches, 4 SemanticMatches, 72 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 500 ImplicationChecksByTransitivity, 0.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=537occurred in iteration=9, InterpolantAutomatonStates: 82, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 10 MinimizatonAttempts, 54 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 18 LocationsWithAnnotation, 615 PreInvPairs, 733 NumberOfFragments, 513 HoareAnnotationTreeSize, 615 FormulaSimplifications, 887 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 18 FormulaSimplificationsInter, 3761 FormulaSimplificationTreeSizeReductionInter, 0.9s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 1.0s InterpolantComputationTime, 403 NumberOfCodeBlocks, 403 NumberOfCodeBlocksAsserted, 11 NumberOfCheckSat, 456 ConstructedInterpolants, 0 QuantifiedInterpolants, 849 SizeOfPredicates, 3 NumberOfNonLiveVariables, 277 ConjunctsInSsa, 8 ConjunctsInUnsatCore, 12 InterpolantComputations, 9 PerfectInterpolantSequences, 72/87 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 733]: Loop Invariant Derived loop invariant: ((((((pumpRunning == 0) && (2 == waterLevel)) && (splverifierCounter == 0)) || (((1 <= pumpRunning) && (2 == waterLevel)) && (splverifierCounter == 0))) || ((((1 <= pumpRunning) && (waterLevel <= 1)) && (splverifierCounter == 0)) && (1 <= switchedOnBeforeTS))) || (((pumpRunning == 0) && (waterLevel <= 1)) && (splverifierCounter == 0))) - InvariantResult [Line: 732]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 841]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2023-12-15 22:57:36,864 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Ended with exit code 0 Received shutdown request...