/usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Xmx8000000000 -Xss4m -jar ./plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata ./data -s ../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.use.bitabs.translation true -tc ../../../trunk/examples/toolchains/AutomizerCInline.xml -i ../../../trunk/examples/svcomp/product-lines/minepump_spec5_product51.cil.c -------------------------------------------------------------------------------- This is Ultimate 0.2.4-tmp.fs.bitabs-eval-d9c3e40-m [2023-12-15 22:57:36,841 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-12-15 22:57:36,884 INFO L114 SettingsManager]: Loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf [2023-12-15 22:57:36,887 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-12-15 22:57:36,888 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-12-15 22:57:36,902 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-12-15 22:57:36,903 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-12-15 22:57:36,903 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-12-15 22:57:36,903 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-12-15 22:57:36,903 INFO L153 SettingsManager]: * Use memory slicer=true [2023-12-15 22:57:36,904 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-12-15 22:57:36,904 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-12-15 22:57:36,904 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-12-15 22:57:36,905 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-12-15 22:57:36,905 INFO L153 SettingsManager]: * Use SBE=true [2023-12-15 22:57:36,905 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-12-15 22:57:36,905 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-12-15 22:57:36,906 INFO L153 SettingsManager]: * sizeof long=4 [2023-12-15 22:57:36,906 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-12-15 22:57:36,906 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-12-15 22:57:36,906 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-12-15 22:57:36,909 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-12-15 22:57:36,909 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-12-15 22:57:36,909 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-12-15 22:57:36,909 INFO L153 SettingsManager]: * Allow undefined functions=false [2023-12-15 22:57:36,910 INFO L153 SettingsManager]: * sizeof long double=12 [2023-12-15 22:57:36,910 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-12-15 22:57:36,910 INFO L153 SettingsManager]: * Use constant arrays=true [2023-12-15 22:57:36,910 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-12-15 22:57:36,910 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-12-15 22:57:36,911 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-12-15 22:57:36,911 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-12-15 22:57:36,911 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-12-15 22:57:36,911 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-12-15 22:57:36,911 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-12-15 22:57:36,912 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-12-15 22:57:36,912 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-12-15 22:57:36,912 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-12-15 22:57:36,912 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-12-15 22:57:36,912 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-12-15 22:57:36,912 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-12-15 22:57:36,915 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-12-15 22:57:36,915 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-12-15 22:57:36,915 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Use bitabs translation -> true [2023-12-15 22:57:37,100 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-12-15 22:57:37,113 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-12-15 22:57:37,115 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-12-15 22:57:37,116 INFO L270 PluginConnector]: Initializing CDTParser... [2023-12-15 22:57:37,119 INFO L274 PluginConnector]: CDTParser initialized [2023-12-15 22:57:37,120 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/svcomp/product-lines/minepump_spec5_product51.cil.c [2023-12-15 22:57:38,098 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-12-15 22:57:38,293 INFO L384 CDTParser]: Found 1 translation units. [2023-12-15 22:57:38,293 INFO L180 CDTParser]: Scanning /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product51.cil.c [2023-12-15 22:57:38,305 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/75d54d921/83d3f700f18f4c1ca3d619077877fba3/FLAGaa6f6b9b4 [2023-12-15 22:57:38,316 INFO L435 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/75d54d921/83d3f700f18f4c1ca3d619077877fba3 [2023-12-15 22:57:38,318 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-12-15 22:57:38,319 INFO L133 ToolchainWalker]: Walking toolchain with 5 elements. [2023-12-15 22:57:38,320 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-12-15 22:57:38,320 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-12-15 22:57:38,323 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-12-15 22:57:38,323 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,324 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@4102d66a and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38, skipping insertion in model container [2023-12-15 22:57:38,324 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,353 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-12-15 22:57:38,541 WARN L239 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product51.cil.c[18485,18498] [2023-12-15 22:57:38,545 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-12-15 22:57:38,556 INFO L202 MainTranslator]: Completed pre-run [2023-12-15 22:57:38,564 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [49] [2023-12-15 22:57:38,565 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [277] [2023-12-15 22:57:38,565 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [381] [2023-12-15 22:57:38,565 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [448] [2023-12-15 22:57:38,566 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [483] [2023-12-15 22:57:38,566 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [849] [2023-12-15 22:57:38,566 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [953] [2023-12-15 22:57:38,566 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [962] [2023-12-15 22:57:38,620 WARN L239 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product51.cil.c[18485,18498] [2023-12-15 22:57:38,621 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-12-15 22:57:38,633 INFO L206 MainTranslator]: Completed translation [2023-12-15 22:57:38,633 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38 WrapperNode [2023-12-15 22:57:38,634 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-12-15 22:57:38,634 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-12-15 22:57:38,634 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-12-15 22:57:38,635 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-12-15 22:57:38,639 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,658 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,677 INFO L138 Inliner]: procedures = 58, calls = 103, calls flagged for inlining = 25, calls inlined = 21, statements flattened = 212 [2023-12-15 22:57:38,677 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-12-15 22:57:38,678 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-12-15 22:57:38,678 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-12-15 22:57:38,678 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-12-15 22:57:38,685 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,685 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,687 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,695 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-12-15 22:57:38,695 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,696 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,699 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,702 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,703 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,704 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,705 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-12-15 22:57:38,706 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-12-15 22:57:38,706 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-12-15 22:57:38,706 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-12-15 22:57:38,706 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (1/1) ... [2023-12-15 22:57:38,710 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-12-15 22:57:38,719 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-15 22:57:38,741 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-12-15 22:57:38,746 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-12-15 22:57:38,763 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-12-15 22:57:38,763 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-12-15 22:57:38,763 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-12-15 22:57:38,764 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-12-15 22:57:38,764 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-12-15 22:57:38,764 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-12-15 22:57:38,764 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-12-15 22:57:38,764 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-12-15 22:57:38,764 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-12-15 22:57:38,764 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-12-15 22:57:38,764 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-12-15 22:57:38,764 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2023-12-15 22:57:38,764 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2023-12-15 22:57:38,764 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-12-15 22:57:38,764 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-12-15 22:57:38,765 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-12-15 22:57:38,765 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-12-15 22:57:38,765 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-12-15 22:57:38,765 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-12-15 22:57:38,765 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-12-15 22:57:38,816 INFO L241 CfgBuilder]: Building ICFG [2023-12-15 22:57:38,817 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-12-15 22:57:39,035 INFO L282 CfgBuilder]: Performing block encoding [2023-12-15 22:57:39,084 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-12-15 22:57:39,084 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-12-15 22:57:39,084 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 15.12 10:57:39 BoogieIcfgContainer [2023-12-15 22:57:39,084 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-12-15 22:57:39,086 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-12-15 22:57:39,086 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-12-15 22:57:39,088 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-12-15 22:57:39,088 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 15.12 10:57:38" (1/3) ... [2023-12-15 22:57:39,089 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@2dae601e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 15.12 10:57:39, skipping insertion in model container [2023-12-15 22:57:39,089 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.12 10:57:38" (2/3) ... [2023-12-15 22:57:39,089 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@2dae601e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 15.12 10:57:39, skipping insertion in model container [2023-12-15 22:57:39,089 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 15.12 10:57:39" (3/3) ... [2023-12-15 22:57:39,090 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product51.cil.c [2023-12-15 22:57:39,104 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-12-15 22:57:39,105 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-12-15 22:57:39,135 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-12-15 22:57:39,139 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@17d6edb6, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-12-15 22:57:39,139 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-12-15 22:57:39,142 INFO L276 IsEmpty]: Start isEmpty. Operand has 77 states, 53 states have (on average 1.528301886792453) internal successors, (81), 62 states have internal predecessors, (81), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) [2023-12-15 22:57:39,148 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2023-12-15 22:57:39,148 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:39,149 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:39,149 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:39,153 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:39,153 INFO L85 PathProgramCache]: Analyzing trace with hash 81616940, now seen corresponding path program 1 times [2023-12-15 22:57:39,159 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:39,159 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1976523292] [2023-12-15 22:57:39,159 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:39,159 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:39,244 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,283 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-12-15 22:57:39,286 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,289 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-12-15 22:57:39,290 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,292 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:39,293 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:39,293 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1976523292] [2023-12-15 22:57:39,293 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1976523292] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:39,294 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:39,294 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-12-15 22:57:39,296 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1684078494] [2023-12-15 22:57:39,296 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:39,299 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-12-15 22:57:39,299 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:39,317 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-12-15 22:57:39,317 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-12-15 22:57:39,319 INFO L87 Difference]: Start difference. First operand has 77 states, 53 states have (on average 1.528301886792453) internal successors, (81), 62 states have internal predecessors, (81), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:39,367 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:39,367 INFO L93 Difference]: Finished difference Result 152 states and 219 transitions. [2023-12-15 22:57:39,370 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-12-15 22:57:39,371 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 22 [2023-12-15 22:57:39,371 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:39,377 INFO L225 Difference]: With dead ends: 152 [2023-12-15 22:57:39,377 INFO L226 Difference]: Without dead ends: 72 [2023-12-15 22:57:39,379 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-12-15 22:57:39,382 INFO L413 NwaCegarLoop]: 88 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 16 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 88 SdHoareTripleChecker+Invalid, 16 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 16 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:39,382 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 88 Invalid, 16 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 16 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-15 22:57:39,393 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 72 states. [2023-12-15 22:57:39,406 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 72 to 72. [2023-12-15 22:57:39,407 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 72 states, 50 states have (on average 1.42) internal successors, (71), 58 states have internal predecessors, (71), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2023-12-15 22:57:39,408 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 72 states to 72 states and 98 transitions. [2023-12-15 22:57:39,409 INFO L78 Accepts]: Start accepts. Automaton has 72 states and 98 transitions. Word has length 22 [2023-12-15 22:57:39,409 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:39,409 INFO L495 AbstractCegarLoop]: Abstraction has 72 states and 98 transitions. [2023-12-15 22:57:39,409 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:39,410 INFO L276 IsEmpty]: Start isEmpty. Operand 72 states and 98 transitions. [2023-12-15 22:57:39,411 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-12-15 22:57:39,411 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:39,411 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:39,411 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-12-15 22:57:39,412 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:39,412 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:39,412 INFO L85 PathProgramCache]: Analyzing trace with hash 464519658, now seen corresponding path program 1 times [2023-12-15 22:57:39,412 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:39,413 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [174773289] [2023-12-15 22:57:39,413 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:39,413 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:39,424 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,477 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-12-15 22:57:39,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,483 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-12-15 22:57:39,484 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,485 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:39,486 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:39,486 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [174773289] [2023-12-15 22:57:39,486 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [174773289] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:39,486 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:39,486 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-15 22:57:39,486 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1608808347] [2023-12-15 22:57:39,486 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:39,487 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-15 22:57:39,487 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:39,488 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-15 22:57:39,488 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-15 22:57:39,488 INFO L87 Difference]: Start difference. First operand 72 states and 98 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:39,525 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:39,525 INFO L93 Difference]: Finished difference Result 114 states and 154 transitions. [2023-12-15 22:57:39,525 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-15 22:57:39,526 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 23 [2023-12-15 22:57:39,526 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:39,526 INFO L225 Difference]: With dead ends: 114 [2023-12-15 22:57:39,527 INFO L226 Difference]: Without dead ends: 64 [2023-12-15 22:57:39,529 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-15 22:57:39,530 INFO L413 NwaCegarLoop]: 74 mSDtfsCounter, 14 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 23 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 131 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 23 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:39,530 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 131 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 23 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-15 22:57:39,531 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 64 states. [2023-12-15 22:57:39,535 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 64 to 64. [2023-12-15 22:57:39,535 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 64 states, 45 states have (on average 1.4444444444444444) internal successors, (65), 53 states have internal predecessors, (65), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 8 states have call predecessors, (11), 11 states have call successors, (11) [2023-12-15 22:57:39,536 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 64 states to 64 states and 87 transitions. [2023-12-15 22:57:39,537 INFO L78 Accepts]: Start accepts. Automaton has 64 states and 87 transitions. Word has length 23 [2023-12-15 22:57:39,537 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:39,537 INFO L495 AbstractCegarLoop]: Abstraction has 64 states and 87 transitions. [2023-12-15 22:57:39,537 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:39,537 INFO L276 IsEmpty]: Start isEmpty. Operand 64 states and 87 transitions. [2023-12-15 22:57:39,538 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-12-15 22:57:39,538 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:39,538 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:39,538 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-12-15 22:57:39,538 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:39,539 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:39,539 INFO L85 PathProgramCache]: Analyzing trace with hash 1412987531, now seen corresponding path program 1 times [2023-12-15 22:57:39,539 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:39,539 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1621192136] [2023-12-15 22:57:39,539 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:39,539 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:39,565 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,648 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-15 22:57:39,650 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,653 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-12-15 22:57:39,654 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,655 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:39,655 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:39,655 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1621192136] [2023-12-15 22:57:39,655 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1621192136] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:39,655 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:39,655 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-12-15 22:57:39,656 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2147216900] [2023-12-15 22:57:39,656 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:39,656 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-12-15 22:57:39,656 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:39,656 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-12-15 22:57:39,657 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-15 22:57:39,657 INFO L87 Difference]: Start difference. First operand 64 states and 87 transitions. Second operand has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:39,776 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:39,776 INFO L93 Difference]: Finished difference Result 181 states and 252 transitions. [2023-12-15 22:57:39,777 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-12-15 22:57:39,777 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 26 [2023-12-15 22:57:39,777 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:39,781 INFO L225 Difference]: With dead ends: 181 [2023-12-15 22:57:39,781 INFO L226 Difference]: Without dead ends: 119 [2023-12-15 22:57:39,782 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-12-15 22:57:39,783 INFO L413 NwaCegarLoop]: 80 mSDtfsCounter, 97 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 67 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 97 SdHoareTripleChecker+Valid, 202 SdHoareTripleChecker+Invalid, 76 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 67 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:39,783 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [97 Valid, 202 Invalid, 76 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 67 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-15 22:57:39,784 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 119 states. [2023-12-15 22:57:39,795 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 119 to 102. [2023-12-15 22:57:39,796 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 102 states, 72 states have (on average 1.4444444444444444) internal successors, (104), 83 states have internal predecessors, (104), 17 states have call successors, (17), 12 states have call predecessors, (17), 12 states have return successors, (18), 13 states have call predecessors, (18), 17 states have call successors, (18) [2023-12-15 22:57:39,797 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 102 states to 102 states and 139 transitions. [2023-12-15 22:57:39,797 INFO L78 Accepts]: Start accepts. Automaton has 102 states and 139 transitions. Word has length 26 [2023-12-15 22:57:39,797 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:39,797 INFO L495 AbstractCegarLoop]: Abstraction has 102 states and 139 transitions. [2023-12-15 22:57:39,797 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-15 22:57:39,797 INFO L276 IsEmpty]: Start isEmpty. Operand 102 states and 139 transitions. [2023-12-15 22:57:39,798 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-12-15 22:57:39,798 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:39,798 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:39,798 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-12-15 22:57:39,799 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:39,799 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:39,799 INFO L85 PathProgramCache]: Analyzing trace with hash 411865522, now seen corresponding path program 1 times [2023-12-15 22:57:39,799 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:39,799 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2020802219] [2023-12-15 22:57:39,799 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:39,799 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:39,810 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,895 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-12-15 22:57:39,900 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,904 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-12-15 22:57:39,905 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:39,914 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-12-15 22:57:39,914 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:39,914 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2020802219] [2023-12-15 22:57:39,914 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2020802219] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:39,915 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:39,915 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-12-15 22:57:39,915 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [368441205] [2023-12-15 22:57:39,915 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:39,915 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-12-15 22:57:39,915 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:39,916 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-12-15 22:57:39,916 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-12-15 22:57:39,916 INFO L87 Difference]: Start difference. First operand 102 states and 139 transitions. Second operand has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:40,023 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:40,024 INFO L93 Difference]: Finished difference Result 239 states and 332 transitions. [2023-12-15 22:57:40,024 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-12-15 22:57:40,025 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 29 [2023-12-15 22:57:40,025 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:40,026 INFO L225 Difference]: With dead ends: 239 [2023-12-15 22:57:40,026 INFO L226 Difference]: Without dead ends: 139 [2023-12-15 22:57:40,031 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2023-12-15 22:57:40,036 INFO L413 NwaCegarLoop]: 75 mSDtfsCounter, 44 mSDsluCounter, 251 mSDsCounter, 0 mSdLazyCounter, 120 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 45 SdHoareTripleChecker+Valid, 326 SdHoareTripleChecker+Invalid, 130 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 120 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:40,037 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [45 Valid, 326 Invalid, 130 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 120 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-15 22:57:40,039 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 139 states. [2023-12-15 22:57:40,052 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 139 to 135. [2023-12-15 22:57:40,053 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 135 states, 96 states have (on average 1.3541666666666667) internal successors, (130), 106 states have internal predecessors, (130), 21 states have call successors, (21), 17 states have call predecessors, (21), 17 states have return successors, (27), 20 states have call predecessors, (27), 21 states have call successors, (27) [2023-12-15 22:57:40,054 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 135 states to 135 states and 178 transitions. [2023-12-15 22:57:40,054 INFO L78 Accepts]: Start accepts. Automaton has 135 states and 178 transitions. Word has length 29 [2023-12-15 22:57:40,054 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:40,054 INFO L495 AbstractCegarLoop]: Abstraction has 135 states and 178 transitions. [2023-12-15 22:57:40,054 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-15 22:57:40,054 INFO L276 IsEmpty]: Start isEmpty. Operand 135 states and 178 transitions. [2023-12-15 22:57:40,059 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2023-12-15 22:57:40,059 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:40,059 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:40,059 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-12-15 22:57:40,060 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:40,060 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:40,060 INFO L85 PathProgramCache]: Analyzing trace with hash 1169056170, now seen corresponding path program 1 times [2023-12-15 22:57:40,060 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:40,060 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [174612836] [2023-12-15 22:57:40,060 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:40,060 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:40,074 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,143 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-15 22:57:40,144 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,154 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-12-15 22:57:40,160 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,195 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2023-12-15 22:57:40,196 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,199 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:40,199 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:40,200 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [174612836] [2023-12-15 22:57:40,200 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [174612836] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:40,200 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:40,200 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-12-15 22:57:40,200 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1312458342] [2023-12-15 22:57:40,200 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:40,201 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-12-15 22:57:40,201 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:40,201 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-12-15 22:57:40,201 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-12-15 22:57:40,202 INFO L87 Difference]: Start difference. First operand 135 states and 178 transitions. Second operand has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-15 22:57:40,313 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:40,313 INFO L93 Difference]: Finished difference Result 291 states and 388 transitions. [2023-12-15 22:57:40,313 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-12-15 22:57:40,314 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 38 [2023-12-15 22:57:40,314 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:40,317 INFO L225 Difference]: With dead ends: 291 [2023-12-15 22:57:40,317 INFO L226 Difference]: Without dead ends: 158 [2023-12-15 22:57:40,317 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2023-12-15 22:57:40,320 INFO L413 NwaCegarLoop]: 65 mSDtfsCounter, 51 mSDsluCounter, 143 mSDsCounter, 0 mSdLazyCounter, 122 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 54 SdHoareTripleChecker+Valid, 208 SdHoareTripleChecker+Invalid, 138 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 122 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:40,321 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [54 Valid, 208 Invalid, 138 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 122 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-15 22:57:40,324 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 158 states. [2023-12-15 22:57:40,365 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 158 to 156. [2023-12-15 22:57:40,366 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 156 states, 112 states have (on average 1.3392857142857142) internal successors, (150), 122 states have internal predecessors, (150), 23 states have call successors, (23), 17 states have call predecessors, (23), 20 states have return successors, (32), 24 states have call predecessors, (32), 23 states have call successors, (32) [2023-12-15 22:57:40,366 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 156 states to 156 states and 205 transitions. [2023-12-15 22:57:40,367 INFO L78 Accepts]: Start accepts. Automaton has 156 states and 205 transitions. Word has length 38 [2023-12-15 22:57:40,367 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:40,367 INFO L495 AbstractCegarLoop]: Abstraction has 156 states and 205 transitions. [2023-12-15 22:57:40,367 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-15 22:57:40,367 INFO L276 IsEmpty]: Start isEmpty. Operand 156 states and 205 transitions. [2023-12-15 22:57:40,368 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2023-12-15 22:57:40,368 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:40,368 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:40,368 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-12-15 22:57:40,368 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:40,369 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:40,369 INFO L85 PathProgramCache]: Analyzing trace with hash -110807508, now seen corresponding path program 1 times [2023-12-15 22:57:40,369 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:40,369 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [51088613] [2023-12-15 22:57:40,369 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:40,369 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:40,381 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,438 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-15 22:57:40,439 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,442 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-12-15 22:57:40,446 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,466 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2023-12-15 22:57:40,467 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,469 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:40,469 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:40,469 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [51088613] [2023-12-15 22:57:40,469 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [51088613] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:40,469 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:40,470 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-12-15 22:57:40,470 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [38168866] [2023-12-15 22:57:40,470 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:40,470 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-12-15 22:57:40,470 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:40,471 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-12-15 22:57:40,471 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-12-15 22:57:40,471 INFO L87 Difference]: Start difference. First operand 156 states and 205 transitions. Second operand has 6 states, 6 states have (on average 5.0) internal successors, (30), 5 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-15 22:57:40,594 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:40,594 INFO L93 Difference]: Finished difference Result 319 states and 429 transitions. [2023-12-15 22:57:40,595 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-12-15 22:57:40,595 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 5.0) internal successors, (30), 5 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 38 [2023-12-15 22:57:40,595 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:40,597 INFO L225 Difference]: With dead ends: 319 [2023-12-15 22:57:40,597 INFO L226 Difference]: Without dead ends: 165 [2023-12-15 22:57:40,598 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=24, Invalid=48, Unknown=0, NotChecked=0, Total=72 [2023-12-15 22:57:40,599 INFO L413 NwaCegarLoop]: 65 mSDtfsCounter, 73 mSDsluCounter, 190 mSDsCounter, 0 mSdLazyCounter, 163 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 82 SdHoareTripleChecker+Valid, 255 SdHoareTripleChecker+Invalid, 179 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 163 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:40,599 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [82 Valid, 255 Invalid, 179 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 163 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-15 22:57:40,600 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 165 states. [2023-12-15 22:57:40,615 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 165 to 158. [2023-12-15 22:57:40,616 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 158 states, 114 states have (on average 1.3333333333333333) internal successors, (152), 124 states have internal predecessors, (152), 23 states have call successors, (23), 17 states have call predecessors, (23), 20 states have return successors, (32), 24 states have call predecessors, (32), 23 states have call successors, (32) [2023-12-15 22:57:40,616 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 158 states to 158 states and 207 transitions. [2023-12-15 22:57:40,616 INFO L78 Accepts]: Start accepts. Automaton has 158 states and 207 transitions. Word has length 38 [2023-12-15 22:57:40,617 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:40,617 INFO L495 AbstractCegarLoop]: Abstraction has 158 states and 207 transitions. [2023-12-15 22:57:40,617 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 5.0) internal successors, (30), 5 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-15 22:57:40,617 INFO L276 IsEmpty]: Start isEmpty. Operand 158 states and 207 transitions. [2023-12-15 22:57:40,620 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2023-12-15 22:57:40,620 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:40,620 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:40,620 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-12-15 22:57:40,620 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:40,621 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:40,621 INFO L85 PathProgramCache]: Analyzing trace with hash -1667725611, now seen corresponding path program 1 times [2023-12-15 22:57:40,622 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:40,622 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1590038514] [2023-12-15 22:57:40,622 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:40,622 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:40,636 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,649 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-12-15 22:57:40,651 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,655 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-12-15 22:57:40,657 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,659 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-12-15 22:57:40,660 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,661 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:40,661 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:40,662 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1590038514] [2023-12-15 22:57:40,662 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1590038514] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:40,662 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:40,662 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-12-15 22:57:40,662 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1013251364] [2023-12-15 22:57:40,662 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:40,662 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-12-15 22:57:40,663 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:40,663 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-12-15 22:57:40,663 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-15 22:57:40,664 INFO L87 Difference]: Start difference. First operand 158 states and 207 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-15 22:57:40,751 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:40,751 INFO L93 Difference]: Finished difference Result 318 states and 415 transitions. [2023-12-15 22:57:40,751 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-12-15 22:57:40,751 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 41 [2023-12-15 22:57:40,751 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:40,752 INFO L225 Difference]: With dead ends: 318 [2023-12-15 22:57:40,752 INFO L226 Difference]: Without dead ends: 125 [2023-12-15 22:57:40,753 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-12-15 22:57:40,754 INFO L413 NwaCegarLoop]: 84 mSDtfsCounter, 81 mSDsluCounter, 98 mSDsCounter, 0 mSdLazyCounter, 102 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 88 SdHoareTripleChecker+Valid, 182 SdHoareTripleChecker+Invalid, 120 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 102 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:40,754 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [88 Valid, 182 Invalid, 120 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 102 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-15 22:57:40,754 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 125 states. [2023-12-15 22:57:40,762 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 125 to 123. [2023-12-15 22:57:40,762 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 123 states, 89 states have (on average 1.303370786516854) internal successors, (116), 96 states have internal predecessors, (116), 17 states have call successors, (17), 13 states have call predecessors, (17), 16 states have return successors, (24), 18 states have call predecessors, (24), 17 states have call successors, (24) [2023-12-15 22:57:40,763 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 123 states to 123 states and 157 transitions. [2023-12-15 22:57:40,763 INFO L78 Accepts]: Start accepts. Automaton has 123 states and 157 transitions. Word has length 41 [2023-12-15 22:57:40,763 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:40,763 INFO L495 AbstractCegarLoop]: Abstraction has 123 states and 157 transitions. [2023-12-15 22:57:40,764 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-15 22:57:40,764 INFO L276 IsEmpty]: Start isEmpty. Operand 123 states and 157 transitions. [2023-12-15 22:57:40,765 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2023-12-15 22:57:40,765 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:40,765 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:40,765 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-12-15 22:57:40,765 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:40,765 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:40,766 INFO L85 PathProgramCache]: Analyzing trace with hash -1699155410, now seen corresponding path program 1 times [2023-12-15 22:57:40,766 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:40,766 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2047260102] [2023-12-15 22:57:40,766 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:40,766 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:40,776 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,804 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-15 22:57:40,806 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,809 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-12-15 22:57:40,811 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,820 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2023-12-15 22:57:40,822 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:40,824 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:40,824 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:40,824 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2047260102] [2023-12-15 22:57:40,827 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2047260102] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:40,827 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:40,827 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-12-15 22:57:40,827 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1623314609] [2023-12-15 22:57:40,827 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:40,828 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-12-15 22:57:40,828 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:40,828 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-12-15 22:57:40,828 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-12-15 22:57:40,828 INFO L87 Difference]: Start difference. First operand 123 states and 157 transitions. Second operand has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-15 22:57:40,968 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:40,968 INFO L93 Difference]: Finished difference Result 358 states and 475 transitions. [2023-12-15 22:57:40,968 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-12-15 22:57:40,968 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 38 [2023-12-15 22:57:40,969 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:40,970 INFO L225 Difference]: With dead ends: 358 [2023-12-15 22:57:40,970 INFO L226 Difference]: Without dead ends: 237 [2023-12-15 22:57:40,970 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2023-12-15 22:57:40,970 INFO L413 NwaCegarLoop]: 93 mSDtfsCounter, 174 mSDsluCounter, 114 mSDsCounter, 0 mSdLazyCounter, 164 mSolverCounterSat, 56 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 181 SdHoareTripleChecker+Valid, 207 SdHoareTripleChecker+Invalid, 220 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 56 IncrementalHoareTripleChecker+Valid, 164 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:40,971 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [181 Valid, 207 Invalid, 220 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [56 Valid, 164 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-15 22:57:40,971 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 237 states. [2023-12-15 22:57:40,981 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 237 to 235. [2023-12-15 22:57:40,982 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 235 states, 169 states have (on average 1.2485207100591715) internal successors, (211), 180 states have internal predecessors, (211), 35 states have call successors, (35), 29 states have call predecessors, (35), 30 states have return successors, (54), 35 states have call predecessors, (54), 35 states have call successors, (54) [2023-12-15 22:57:40,983 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 235 states to 235 states and 300 transitions. [2023-12-15 22:57:40,983 INFO L78 Accepts]: Start accepts. Automaton has 235 states and 300 transitions. Word has length 38 [2023-12-15 22:57:40,983 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:40,983 INFO L495 AbstractCegarLoop]: Abstraction has 235 states and 300 transitions. [2023-12-15 22:57:40,983 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-15 22:57:40,983 INFO L276 IsEmpty]: Start isEmpty. Operand 235 states and 300 transitions. [2023-12-15 22:57:40,983 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2023-12-15 22:57:40,984 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:40,984 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:40,984 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-12-15 22:57:40,984 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:40,984 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:40,984 INFO L85 PathProgramCache]: Analyzing trace with hash -773742700, now seen corresponding path program 1 times [2023-12-15 22:57:40,984 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:40,984 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [200621440] [2023-12-15 22:57:40,984 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:40,985 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:40,991 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,061 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-15 22:57:41,062 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,118 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-12-15 22:57:41,119 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,125 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-12-15 22:57:41,127 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,129 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2023-12-15 22:57:41,130 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,131 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-15 22:57:41,131 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:41,131 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [200621440] [2023-12-15 22:57:41,131 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [200621440] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-15 22:57:41,131 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-15 22:57:41,131 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2023-12-15 22:57:41,131 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1008191412] [2023-12-15 22:57:41,131 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-15 22:57:41,132 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-12-15 22:57:41,132 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:41,132 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-12-15 22:57:41,132 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2023-12-15 22:57:41,132 INFO L87 Difference]: Start difference. First operand 235 states and 300 transitions. Second operand has 8 states, 8 states have (on average 4.0) internal successors, (32), 6 states have internal predecessors, (32), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) [2023-12-15 22:57:41,485 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:41,485 INFO L93 Difference]: Finished difference Result 728 states and 969 transitions. [2023-12-15 22:57:41,485 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 23 states. [2023-12-15 22:57:41,486 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.0) internal successors, (32), 6 states have internal predecessors, (32), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) Word has length 42 [2023-12-15 22:57:41,486 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:41,488 INFO L225 Difference]: With dead ends: 728 [2023-12-15 22:57:41,488 INFO L226 Difference]: Without dead ends: 539 [2023-12-15 22:57:41,489 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 33 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 22 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 117 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=126, Invalid=426, Unknown=0, NotChecked=0, Total=552 [2023-12-15 22:57:41,490 INFO L413 NwaCegarLoop]: 71 mSDtfsCounter, 319 mSDsluCounter, 278 mSDsCounter, 0 mSdLazyCounter, 427 mSolverCounterSat, 116 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 324 SdHoareTripleChecker+Valid, 349 SdHoareTripleChecker+Invalid, 543 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 116 IncrementalHoareTripleChecker+Valid, 427 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:41,490 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [324 Valid, 349 Invalid, 543 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [116 Valid, 427 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-12-15 22:57:41,491 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 539 states. [2023-12-15 22:57:41,518 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 539 to 456. [2023-12-15 22:57:41,519 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 456 states, 328 states have (on average 1.25) internal successors, (410), 352 states have internal predecessors, (410), 68 states have call successors, (68), 51 states have call predecessors, (68), 59 states have return successors, (107), 68 states have call predecessors, (107), 68 states have call successors, (107) [2023-12-15 22:57:41,521 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 456 states to 456 states and 585 transitions. [2023-12-15 22:57:41,522 INFO L78 Accepts]: Start accepts. Automaton has 456 states and 585 transitions. Word has length 42 [2023-12-15 22:57:41,522 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:41,522 INFO L495 AbstractCegarLoop]: Abstraction has 456 states and 585 transitions. [2023-12-15 22:57:41,522 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.0) internal successors, (32), 6 states have internal predecessors, (32), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) [2023-12-15 22:57:41,522 INFO L276 IsEmpty]: Start isEmpty. Operand 456 states and 585 transitions. [2023-12-15 22:57:41,523 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 77 [2023-12-15 22:57:41,523 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:41,523 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:41,523 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-12-15 22:57:41,523 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:41,524 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:41,524 INFO L85 PathProgramCache]: Analyzing trace with hash 1417958015, now seen corresponding path program 1 times [2023-12-15 22:57:41,524 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:41,524 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [518874296] [2023-12-15 22:57:41,524 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:41,524 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:41,539 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,630 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-15 22:57:41,631 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,640 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-15 22:57:41,645 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,656 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-15 22:57:41,657 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,668 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-12-15 22:57:41,670 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,675 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2023-12-15 22:57:41,676 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,684 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2023-12-15 22:57:41,685 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,687 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-12-15 22:57:41,687 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,688 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 69 [2023-12-15 22:57:41,689 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,690 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 14 proven. 7 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2023-12-15 22:57:41,690 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:41,690 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [518874296] [2023-12-15 22:57:41,690 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [518874296] provided 0 perfect and 1 imperfect interpolant sequences [2023-12-15 22:57:41,690 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1086415639] [2023-12-15 22:57:41,690 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:41,690 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-12-15 22:57:41,690 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-15 22:57:41,693 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-12-15 22:57:41,724 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-12-15 22:57:41,760 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:41,775 INFO L262 TraceCheckSpWp]: Trace formula consists of 296 conjuncts, 8 conjunts are in the unsatisfiable core [2023-12-15 22:57:41,779 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-12-15 22:57:41,902 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 20 proven. 7 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-12-15 22:57:41,902 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-12-15 22:57:42,050 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 15 proven. 6 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2023-12-15 22:57:42,051 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1086415639] provided 0 perfect and 2 imperfect interpolant sequences [2023-12-15 22:57:42,051 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-12-15 22:57:42,052 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 6, 6] total 15 [2023-12-15 22:57:42,052 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [563290432] [2023-12-15 22:57:42,052 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-12-15 22:57:42,054 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2023-12-15 22:57:42,054 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:42,054 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2023-12-15 22:57:42,054 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=36, Invalid=174, Unknown=0, NotChecked=0, Total=210 [2023-12-15 22:57:42,055 INFO L87 Difference]: Start difference. First operand 456 states and 585 transitions. Second operand has 15 states, 12 states have (on average 7.666666666666667) internal successors, (92), 10 states have internal predecessors, (92), 5 states have call successors, (20), 7 states have call predecessors, (20), 6 states have return successors, (16), 7 states have call predecessors, (16), 5 states have call successors, (16) [2023-12-15 22:57:42,872 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:42,872 INFO L93 Difference]: Finished difference Result 993 states and 1303 transitions. [2023-12-15 22:57:42,872 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2023-12-15 22:57:42,873 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 12 states have (on average 7.666666666666667) internal successors, (92), 10 states have internal predecessors, (92), 5 states have call successors, (20), 7 states have call predecessors, (20), 6 states have return successors, (16), 7 states have call predecessors, (16), 5 states have call successors, (16) Word has length 76 [2023-12-15 22:57:42,874 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:42,876 INFO L225 Difference]: With dead ends: 993 [2023-12-15 22:57:42,876 INFO L226 Difference]: Without dead ends: 581 [2023-12-15 22:57:42,877 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 216 GetRequests, 172 SyntacticMatches, 4 SemanticMatches, 40 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 410 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=332, Invalid=1390, Unknown=0, NotChecked=0, Total=1722 [2023-12-15 22:57:42,878 INFO L413 NwaCegarLoop]: 127 mSDtfsCounter, 293 mSDsluCounter, 887 mSDsCounter, 0 mSdLazyCounter, 1075 mSolverCounterSat, 103 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 299 SdHoareTripleChecker+Valid, 1014 SdHoareTripleChecker+Invalid, 1178 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 103 IncrementalHoareTripleChecker+Valid, 1075 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:42,878 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [299 Valid, 1014 Invalid, 1178 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [103 Valid, 1075 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2023-12-15 22:57:42,879 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 581 states. [2023-12-15 22:57:42,904 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 581 to 514. [2023-12-15 22:57:42,905 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 514 states, 365 states have (on average 1.2246575342465753) internal successors, (447), 397 states have internal predecessors, (447), 78 states have call successors, (78), 65 states have call predecessors, (78), 70 states have return successors, (103), 73 states have call predecessors, (103), 78 states have call successors, (103) [2023-12-15 22:57:42,919 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 514 states to 514 states and 628 transitions. [2023-12-15 22:57:42,919 INFO L78 Accepts]: Start accepts. Automaton has 514 states and 628 transitions. Word has length 76 [2023-12-15 22:57:42,919 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:42,919 INFO L495 AbstractCegarLoop]: Abstraction has 514 states and 628 transitions. [2023-12-15 22:57:42,920 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 12 states have (on average 7.666666666666667) internal successors, (92), 10 states have internal predecessors, (92), 5 states have call successors, (20), 7 states have call predecessors, (20), 6 states have return successors, (16), 7 states have call predecessors, (16), 5 states have call successors, (16) [2023-12-15 22:57:42,920 INFO L276 IsEmpty]: Start isEmpty. Operand 514 states and 628 transitions. [2023-12-15 22:57:42,921 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 137 [2023-12-15 22:57:42,921 INFO L187 NwaCegarLoop]: Found error trace [2023-12-15 22:57:42,921 INFO L195 NwaCegarLoop]: trace histogram [5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:42,929 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-12-15 22:57:43,126 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-12-15 22:57:43,126 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-15 22:57:43,127 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-15 22:57:43,127 INFO L85 PathProgramCache]: Analyzing trace with hash -131461171, now seen corresponding path program 1 times [2023-12-15 22:57:43,127 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-15 22:57:43,127 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1301760388] [2023-12-15 22:57:43,127 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:43,127 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-15 22:57:43,139 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,230 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-15 22:57:43,231 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,236 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-15 22:57:43,240 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,251 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-15 22:57:43,253 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,257 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-12-15 22:57:43,258 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,260 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2023-12-15 22:57:43,264 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,315 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-15 22:57:43,316 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,317 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-15 22:57:43,317 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,318 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-12-15 22:57:43,319 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,319 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 78 [2023-12-15 22:57:43,321 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,323 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-15 22:57:43,323 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,324 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-15 22:57:43,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,325 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 109 [2023-12-15 22:57:43,325 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,326 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 116 [2023-12-15 22:57:43,327 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,328 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 129 [2023-12-15 22:57:43,328 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,329 INFO L134 CoverageAnalysis]: Checked inductivity of 151 backedges. 75 proven. 21 refuted. 0 times theorem prover too weak. 55 trivial. 0 not checked. [2023-12-15 22:57:43,329 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-15 22:57:43,329 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1301760388] [2023-12-15 22:57:43,329 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1301760388] provided 0 perfect and 1 imperfect interpolant sequences [2023-12-15 22:57:43,329 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [811315957] [2023-12-15 22:57:43,329 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-15 22:57:43,329 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-12-15 22:57:43,330 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-15 22:57:43,332 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-12-15 22:57:43,352 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-12-15 22:57:43,423 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-15 22:57:43,425 INFO L262 TraceCheckSpWp]: Trace formula consists of 466 conjuncts, 12 conjunts are in the unsatisfiable core [2023-12-15 22:57:43,429 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-12-15 22:57:43,544 INFO L134 CoverageAnalysis]: Checked inductivity of 151 backedges. 110 proven. 3 refuted. 0 times theorem prover too weak. 38 trivial. 0 not checked. [2023-12-15 22:57:43,545 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-12-15 22:57:43,791 INFO L134 CoverageAnalysis]: Checked inductivity of 151 backedges. 66 proven. 31 refuted. 0 times theorem prover too weak. 54 trivial. 0 not checked. [2023-12-15 22:57:43,791 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [811315957] provided 0 perfect and 2 imperfect interpolant sequences [2023-12-15 22:57:43,791 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-12-15 22:57:43,791 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9, 10] total 21 [2023-12-15 22:57:43,791 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [917207608] [2023-12-15 22:57:43,791 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-12-15 22:57:43,792 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2023-12-15 22:57:43,792 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-15 22:57:43,792 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2023-12-15 22:57:43,793 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=101, Invalid=319, Unknown=0, NotChecked=0, Total=420 [2023-12-15 22:57:43,793 INFO L87 Difference]: Start difference. First operand 514 states and 628 transitions. Second operand has 21 states, 21 states have (on average 7.333333333333333) internal successors, (154), 18 states have internal predecessors, (154), 10 states have call successors, (31), 8 states have call predecessors, (31), 9 states have return successors, (29), 9 states have call predecessors, (29), 10 states have call successors, (29) [2023-12-15 22:57:44,375 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-15 22:57:44,375 INFO L93 Difference]: Finished difference Result 1071 states and 1354 transitions. [2023-12-15 22:57:44,375 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2023-12-15 22:57:44,376 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 7.333333333333333) internal successors, (154), 18 states have internal predecessors, (154), 10 states have call successors, (31), 8 states have call predecessors, (31), 9 states have return successors, (29), 9 states have call predecessors, (29), 10 states have call successors, (29) Word has length 136 [2023-12-15 22:57:44,376 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-15 22:57:44,376 INFO L225 Difference]: With dead ends: 1071 [2023-12-15 22:57:44,376 INFO L226 Difference]: Without dead ends: 0 [2023-12-15 22:57:44,378 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 332 GetRequests, 292 SyntacticMatches, 4 SemanticMatches, 36 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 265 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=340, Invalid=1066, Unknown=0, NotChecked=0, Total=1406 [2023-12-15 22:57:44,379 INFO L413 NwaCegarLoop]: 67 mSDtfsCounter, 343 mSDsluCounter, 399 mSDsCounter, 0 mSdLazyCounter, 919 mSolverCounterSat, 138 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 346 SdHoareTripleChecker+Valid, 466 SdHoareTripleChecker+Invalid, 1057 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 138 IncrementalHoareTripleChecker+Valid, 919 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-12-15 22:57:44,379 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [346 Valid, 466 Invalid, 1057 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [138 Valid, 919 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-12-15 22:57:44,379 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-12-15 22:57:44,379 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-12-15 22:57:44,379 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-15 22:57:44,379 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-12-15 22:57:44,379 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 136 [2023-12-15 22:57:44,379 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-15 22:57:44,380 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-12-15 22:57:44,380 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 7.333333333333333) internal successors, (154), 18 states have internal predecessors, (154), 10 states have call successors, (31), 8 states have call predecessors, (31), 9 states have return successors, (29), 9 states have call predecessors, (29), 10 states have call successors, (29) [2023-12-15 22:57:44,380 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-12-15 22:57:44,380 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-12-15 22:57:44,382 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-12-15 22:57:44,388 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-12-15 22:57:44,586 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2023-12-15 22:57:44,588 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-12-15 22:57:46,604 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 160 167) no Hoare annotation was computed. [2023-12-15 22:57:46,604 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 160 167) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= 0 ~systemActive~0)) [2023-12-15 22:57:46,604 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 93 99) no Hoare annotation was computed. [2023-12-15 22:57:46,605 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 93 99) the Hoare annotation is: true [2023-12-15 22:57:46,605 INFO L899 garLoopResultBuilder]: For program point L881-1(lines 877 888) no Hoare annotation was computed. [2023-12-15 22:57:46,605 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 877 888) the Hoare annotation is: true [2023-12-15 22:57:46,605 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 877 888) no Hoare annotation was computed. [2023-12-15 22:57:46,605 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 279 308) no Hoare annotation was computed. [2023-12-15 22:57:46,605 INFO L902 garLoopResultBuilder]: At program point L289-2(lines 289 303) the Hoare annotation is: true [2023-12-15 22:57:46,605 INFO L902 garLoopResultBuilder]: At program point L285(line 285) the Hoare annotation is: true [2023-12-15 22:57:46,605 INFO L899 garLoopResultBuilder]: For program point L285-1(line 285) no Hoare annotation was computed. [2023-12-15 22:57:46,605 INFO L899 garLoopResultBuilder]: For program point L304(lines 279 308) no Hoare annotation was computed. [2023-12-15 22:57:46,605 INFO L899 garLoopResultBuilder]: For program point L300(line 300) no Hoare annotation was computed. [2023-12-15 22:57:46,605 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 279 308) the Hoare annotation is: true [2023-12-15 22:57:46,605 INFO L899 garLoopResultBuilder]: For program point L293(lines 293 297) no Hoare annotation was computed. [2023-12-15 22:57:46,605 INFO L902 garLoopResultBuilder]: At program point L293-1(lines 293 297) the Hoare annotation is: true [2023-12-15 22:57:46,605 INFO L899 garLoopResultBuilder]: For program point L857(lines 857 861) no Hoare annotation was computed. [2023-12-15 22:57:46,605 INFO L899 garLoopResultBuilder]: For program point L857-2(lines 853 864) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L895 garLoopResultBuilder]: At program point L977(line 977) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse8 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse3 (= 2 ~waterLevel~0)) (.cse4 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse5 (not (= |old(~waterLevel~0)| 2))) (.cse7 (< |old(~pumpRunning~0)| 1)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not .cse2)) (or .cse0 (and .cse1 .cse3 .cse4) .cse5 .cse2) (or (< 1 |old(~waterLevel~0)|) (and .cse1 .cse4 .cse6) .cse0 .cse2) (or (< |old(~switchedOnBeforeTS~0)| 1) .cse7 .cse2 (and .cse8 .cse4 .cse6) (< 2 |old(~waterLevel~0)|)) (or (and .cse8 .cse3 .cse4) .cse5 .cse7 .cse2))) [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L977-1(line 977) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L73(lines 73 79) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L73-2(lines 69 91) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L135(lines 135 143) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L131(lines 131 148) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L994(lines 994 1004) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L990(lines 990 1007) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L990-1(lines 982 1010) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L995(lines 995 1001) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L958(line 958) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L252(lines 252 256) no Hoare annotation was computed. [2023-12-15 22:57:46,606 INFO L899 garLoopResultBuilder]: For program point L252-2(lines 252 256) no Hoare annotation was computed. [2023-12-15 22:57:46,607 INFO L895 garLoopResultBuilder]: At program point L141(line 141) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (<= 1 ~switchedOnBeforeTS~0))) (let ((.cse2 (not (= |old(~waterLevel~0)| 2))) (.cse6 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse7 (and .cse0 (<= ~waterLevel~0 1) (<= (+ ~waterLevel~0 1) |old(~waterLevel~0)|) .cse1)) (.cse3 (< |old(~pumpRunning~0)| 1)) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (= 0 ~systemActive~0))) (and (or (and .cse0 (= ~waterLevel~0 1) .cse1) .cse2 .cse3 .cse4) (or .cse5 .cse2) (or (< 1 |old(~waterLevel~0)|) .cse5) (or (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1) .cse6 .cse7 .cse3 .cse4 (< 2 |old(~waterLevel~0)|)) (or (not (= |old(~waterLevel~0)| 1)) .cse6 .cse7 .cse3 .cse4) (or .cse5 (not .cse4))))) [2023-12-15 22:57:46,607 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 66 92) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse8 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse3 (= 2 ~waterLevel~0)) (.cse4 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse5 (not (= |old(~waterLevel~0)| 2))) (.cse7 (< |old(~pumpRunning~0)| 1)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not .cse2)) (or .cse0 (and .cse1 .cse3 .cse4) .cse5 .cse2) (or (< 1 |old(~waterLevel~0)|) (and .cse1 .cse4 .cse6) .cse0 .cse2) (or (< |old(~switchedOnBeforeTS~0)| 1) .cse7 .cse2 (and .cse8 .cse4 .cse6) (< 2 |old(~waterLevel~0)|)) (or (and .cse8 .cse3 .cse4) .cse5 .cse7 .cse2))) [2023-12-15 22:57:46,607 INFO L895 garLoopResultBuilder]: At program point L137(line 137) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (<= 1 ~switchedOnBeforeTS~0))) (let ((.cse2 (not (= |old(~waterLevel~0)| 2))) (.cse6 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse7 (and .cse0 (<= ~waterLevel~0 1) (<= (+ ~waterLevel~0 1) |old(~waterLevel~0)|) .cse1)) (.cse3 (< |old(~pumpRunning~0)| 1)) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (= 0 ~systemActive~0))) (and (or (and .cse0 (= ~waterLevel~0 1) .cse1) .cse2 .cse3 .cse4) (or .cse5 .cse2) (or (< 1 |old(~waterLevel~0)|) .cse5) (or (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1) .cse6 .cse7 .cse3 .cse4 (< 2 |old(~waterLevel~0)|)) (or (not (= |old(~waterLevel~0)| 1)) .cse6 .cse7 .cse3 .cse4) (or .cse5 (not .cse4))))) [2023-12-15 22:57:46,607 INFO L895 garLoopResultBuilder]: At program point L992(line 992) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0))) (let ((.cse0 (= ~pumpRunning~0 0)) (.cse8 (not .cse6)) (.cse4 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse14 (<= ~waterLevel~0 1)) (.cse15 (<= (+ ~waterLevel~0 1) |old(~waterLevel~0)|)) (.cse1 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| ~waterLevel~0)) (.cse3 (<= 1 ~switchedOnBeforeTS~0))) (let ((.cse7 (not (= |old(~pumpRunning~0)| 0))) (.cse10 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse13 (< 2 |old(~waterLevel~0)|)) (.cse9 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse11 (and .cse4 .cse14 .cse15 .cse1 .cse3)) (.cse12 (and .cse0 .cse14 .cse15 .cse1 .cse3 .cse8)) (.cse5 (< |old(~pumpRunning~0)| 1))) (and (let ((.cse2 (= ~waterLevel~0 1))) (or (and .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse2 .cse3 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| 1)) (not (= |old(~waterLevel~0)| 2)) .cse5 .cse6)) (or .cse7 .cse0 .cse8) (or .cse9 (and .cse4 .cse1 .cse10 .cse3) .cse11 .cse12 (and .cse0 .cse1 .cse10 .cse3) .cse5 .cse6 .cse13) (or .cse7 (and .cse0 .cse14 .cse1 .cse10) .cse6 .cse13) (or (not (= |old(~waterLevel~0)| 1)) .cse9 .cse11 .cse12 .cse5 .cse6))))) [2023-12-15 22:57:46,607 INFO L899 garLoopResultBuilder]: For program point L992-1(line 992) no Hoare annotation was computed. [2023-12-15 22:57:46,608 INFO L895 garLoopResultBuilder]: At program point L146(line 146) the Hoare annotation is: (let ((.cse0 (< |old(~pumpRunning~0)| 1)) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~waterLevel~0)| 2)) .cse0 .cse1) (or .cse2 (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0)) (< 2 |old(~waterLevel~0)|)) (or (< 1 |old(~waterLevel~0)|) (< |old(~switchedOnBeforeTS~0)| 1) .cse0 .cse1) (or .cse2 (not .cse1)))) [2023-12-15 22:57:46,608 INFO L899 garLoopResultBuilder]: For program point L146-1(lines 127 151) no Hoare annotation was computed. [2023-12-15 22:57:46,608 INFO L899 garLoopResultBuilder]: For program point L80-1(lines 80 86) no Hoare annotation was computed. [2023-12-15 22:57:46,608 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 66 92) no Hoare annotation was computed. [2023-12-15 22:57:46,608 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 958) no Hoare annotation was computed. [2023-12-15 22:57:46,608 INFO L895 garLoopResultBuilder]: At program point L440(lines 391 441) the Hoare annotation is: false [2023-12-15 22:57:46,608 INFO L899 garLoopResultBuilder]: For program point L428(lines 428 434) no Hoare annotation was computed. [2023-12-15 22:57:46,608 INFO L895 garLoopResultBuilder]: At program point L428-2(lines 422 435) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0))) (let ((.cse3 (<= ~waterLevel~0 2)) (.cse5 (<= 1 ~pumpRunning~0)) (.cse4 (not .cse6)) (.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_main_~tmp~4#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse1 .cse2 .cse3 (<= 1 ~switchedOnBeforeTS~0) .cse4) (and .cse5 (= 2 ~waterLevel~0) .cse1 .cse2 .cse4) (and .cse0 .cse1 .cse2 .cse6)))) [2023-12-15 22:57:46,608 INFO L899 garLoopResultBuilder]: For program point L412(lines 412 418) no Hoare annotation was computed. [2023-12-15 22:57:46,608 INFO L899 garLoopResultBuilder]: For program point L412-1(lines 412 418) no Hoare annotation was computed. [2023-12-15 22:57:46,608 INFO L895 garLoopResultBuilder]: At program point L437(lines 392 439) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0))) (let ((.cse5 (= 2 ~waterLevel~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse6 (<= 1 ~pumpRunning~0)) (.cse1 (<= ~waterLevel~0 1)) (.cse2 (= |ULTIMATE.start_main_~tmp~4#1| 1)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (not .cse7))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse5 .cse2 .cse3 .cse4) (and .cse6 .cse5 .cse2 .cse3 .cse4) (and .cse0 .cse2 .cse3 .cse7) (and .cse6 .cse1 .cse2 .cse3 (<= 1 ~switchedOnBeforeTS~0) .cse4)))) [2023-12-15 22:57:46,609 INFO L895 garLoopResultBuilder]: At program point L404(line 404) the Hoare annotation is: (let ((.cse7 (= 0 ~systemActive~0))) (let ((.cse5 (= 2 ~waterLevel~0)) (.cse0 (= ~pumpRunning~0 0)) (.cse6 (<= 1 ~pumpRunning~0)) (.cse1 (<= ~waterLevel~0 1)) (.cse2 (= |ULTIMATE.start_main_~tmp~4#1| 1)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse4 (not .cse7))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse5 .cse2 .cse3 .cse4) (and .cse6 .cse5 .cse2 .cse3 .cse4) (and .cse0 .cse2 .cse3 .cse7) (and .cse6 .cse1 .cse2 .cse3 (<= 1 ~switchedOnBeforeTS~0) .cse4)))) [2023-12-15 22:57:46,609 INFO L895 garLoopResultBuilder]: At program point L268(line 268) the Hoare annotation is: (and (= |ULTIMATE.start_main_~tmp~4#1| 1) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (not (= 0 ~systemActive~0))) [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point L368(lines 368 375) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point L368-2(lines 368 375) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point L393(lines 392 439) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point L422(lines 422 435) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L895 garLoopResultBuilder]: At program point L414(line 414) the Hoare annotation is: (let ((.cse6 (= 0 ~systemActive~0))) (let ((.cse3 (<= ~waterLevel~0 2)) (.cse5 (<= 1 ~pumpRunning~0)) (.cse4 (not .cse6)) (.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_main_~tmp~4#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse1 .cse2 .cse3 (<= 1 ~switchedOnBeforeTS~0) .cse4) (and .cse5 (= 2 ~waterLevel~0) .cse1 .cse2 .cse4) (and .cse0 .cse1 .cse2 .cse6)))) [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point L443(lines 382 447) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point L402(lines 402 408) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point L402-1(lines 402 408) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point L266(lines 266 272) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L899 garLoopResultBuilder]: For program point L266-1(lines 266 272) no Hoare annotation was computed. [2023-12-15 22:57:46,609 INFO L895 garLoopResultBuilder]: At program point L120(line 120) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (< 1 ~waterLevel~0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2) (or .cse0 (not (= 2 ~waterLevel~0)) .cse2) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse1 (< ~switchedOnBeforeTS~0 1) (< |old(~pumpRunning~0)| 1) .cse2))) [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point L120-1(lines 101 125) no Hoare annotation was computed. [2023-12-15 22:57:46,610 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 101 125) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (< 1 ~waterLevel~0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= 2 ~waterLevel~0)) .cse2) (or .cse0 .cse1 .cse3 .cse2) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse3 (< ~switchedOnBeforeTS~0 1) (< |old(~pumpRunning~0)| 1) .cse2))) [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point L934(lines 934 940) no Hoare annotation was computed. [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point isHighWaterSensorDry_returnLabel#1(lines 930 943) no Hoare annotation was computed. [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 101 125) no Hoare annotation was computed. [2023-12-15 22:57:46,610 INFO L895 garLoopResultBuilder]: At program point L115(line 115) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (< 2 ~waterLevel~0) (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) (= |processEnvironment__wrappee__highWaterSensor_~tmp~0#1| 0)) .cse0) (or (< 1 ~waterLevel~0) (< ~switchedOnBeforeTS~0 1) (< |old(~pumpRunning~0)| 1) .cse0))) [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point L109(lines 109 117) no Hoare annotation was computed. [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point L105(lines 105 122) no Hoare annotation was computed. [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point L233(lines 233 237) no Hoare annotation was computed. [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point L233-2(lines 233 237) no Hoare annotation was computed. [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 865 876) no Hoare annotation was computed. [2023-12-15 22:57:46,610 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 865 876) the Hoare annotation is: (let ((.cse1 (not (= ~pumpRunning~0 0))) (.cse5 (= 2 ~waterLevel~0)) (.cse6 (not (= |old(~waterLevel~0)| 2))) (.cse0 (< 1 |old(~waterLevel~0)|)) (.cse4 (< ~pumpRunning~0 1)) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse6 .cse3) (or .cse1 .cse5 .cse6 .cse3) (or .cse0 .cse4 (< ~switchedOnBeforeTS~0 1) .cse2 .cse3))) [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point L869-1(lines 865 876) no Hoare annotation was computed. [2023-12-15 22:57:46,610 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 179 187) no Hoare annotation was computed. [2023-12-15 22:57:46,611 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 179 187) the Hoare annotation is: true [2023-12-15 22:57:46,612 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-15 22:57:46,614 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2023-12-15 22:57:46,624 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 15.12 10:57:46 BoogieIcfgContainer [2023-12-15 22:57:46,624 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-12-15 22:57:46,624 INFO L158 Benchmark]: Toolchain (without parser) took 8305.30ms. Allocated memory was 188.7MB in the beginning and 272.6MB in the end (delta: 83.9MB). Free memory was 142.0MB in the beginning and 125.0MB in the end (delta: 17.0MB). Peak memory consumption was 143.4MB. Max. memory is 8.0GB. [2023-12-15 22:57:46,624 INFO L158 Benchmark]: CDTParser took 0.11ms. Allocated memory is still 188.7MB. Free memory is still 146.7MB. There was no memory consumed. Max. memory is 8.0GB. [2023-12-15 22:57:46,625 INFO L158 Benchmark]: CACSL2BoogieTranslator took 314.15ms. Allocated memory is still 188.7MB. Free memory was 142.0MB in the beginning and 122.0MB in the end (delta: 20.1MB). Peak memory consumption was 19.9MB. Max. memory is 8.0GB. [2023-12-15 22:57:46,625 INFO L158 Benchmark]: Boogie Procedure Inliner took 43.02ms. Allocated memory is still 188.7MB. Free memory was 122.0MB in the beginning and 119.4MB in the end (delta: 2.6MB). Peak memory consumption was 3.1MB. Max. memory is 8.0GB. [2023-12-15 22:57:46,625 INFO L158 Benchmark]: Boogie Preprocessor took 27.24ms. Allocated memory is still 188.7MB. Free memory was 119.4MB in the beginning and 117.3MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. [2023-12-15 22:57:46,625 INFO L158 Benchmark]: RCFGBuilder took 378.95ms. Allocated memory is still 188.7MB. Free memory was 117.3MB in the beginning and 94.8MB in the end (delta: 22.5MB). Peak memory consumption was 22.0MB. Max. memory is 8.0GB. [2023-12-15 22:57:46,625 INFO L158 Benchmark]: TraceAbstraction took 7538.01ms. Allocated memory was 188.7MB in the beginning and 272.6MB in the end (delta: 83.9MB). Free memory was 94.2MB in the beginning and 125.0MB in the end (delta: -30.8MB). Peak memory consumption was 95.2MB. Max. memory is 8.0GB. [2023-12-15 22:57:46,626 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.11ms. Allocated memory is still 188.7MB. Free memory is still 146.7MB. There was no memory consumed. Max. memory is 8.0GB. * CACSL2BoogieTranslator took 314.15ms. Allocated memory is still 188.7MB. Free memory was 142.0MB in the beginning and 122.0MB in the end (delta: 20.1MB). Peak memory consumption was 19.9MB. Max. memory is 8.0GB. * Boogie Procedure Inliner took 43.02ms. Allocated memory is still 188.7MB. Free memory was 122.0MB in the beginning and 119.4MB in the end (delta: 2.6MB). Peak memory consumption was 3.1MB. Max. memory is 8.0GB. * Boogie Preprocessor took 27.24ms. Allocated memory is still 188.7MB. Free memory was 119.4MB in the beginning and 117.3MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. * RCFGBuilder took 378.95ms. Allocated memory is still 188.7MB. Free memory was 117.3MB in the beginning and 94.8MB in the end (delta: 22.5MB). Peak memory consumption was 22.0MB. Max. memory is 8.0GB. * TraceAbstraction took 7538.01ms. Allocated memory was 188.7MB in the beginning and 272.6MB in the end (delta: 83.9MB). Free memory was 94.2MB in the beginning and 125.0MB in the end (delta: -30.8MB). Peak memory consumption was 95.2MB. Max. memory is 8.0GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [49] - GenericResultAtLocation [Line: 277]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [277] - GenericResultAtLocation [Line: 381]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [381] - GenericResultAtLocation [Line: 448]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [448] - GenericResultAtLocation [Line: 483]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [483] - GenericResultAtLocation [Line: 849]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [849] - GenericResultAtLocation [Line: 953]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [953] - GenericResultAtLocation [Line: 962]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [962] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 958]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 77 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 7.5s, OverallIterations: 11, TraceHistogramMax: 5, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1534 SdHoareTripleChecker+Valid, 1.6s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1489 mSDsluCounter, 3428 SdHoareTripleChecker+Invalid, 1.3s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2539 mSDsCounter, 482 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 3198 IncrementalHoareTripleChecker+Invalid, 3680 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 482 mSolverCounterUnsat, 889 mSDtfsCounter, 3198 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 668 GetRequests, 531 SyntacticMatches, 8 SemanticMatches, 129 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 799 ImplicationChecksByTransitivity, 0.8s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=514occurred in iteration=10, InterpolantAutomatonStates: 119, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 11 MinimizatonAttempts, 184 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 24 LocationsWithAnnotation, 805 PreInvPairs, 918 NumberOfFragments, 1196 HoareAnnotationTreeSize, 805 FormulaSimplifications, 3216 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 24 FormulaSimplificationsInter, 7463 FormulaSimplificationTreeSizeReductionInter, 1.8s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 1.7s InterpolantComputationTime, 721 NumberOfCodeBlocks, 721 NumberOfCodeBlocksAsserted, 13 NumberOfCheckSat, 918 ConstructedInterpolants, 0 QuantifiedInterpolants, 1902 SizeOfPredicates, 5 NumberOfNonLiveVariables, 762 ConjunctsInSsa, 20 ConjunctsInUnsatCore, 15 InterpolantComputations, 9 PerfectInterpolantSequences, 477/552 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 392]: Loop Invariant Derived loop invariant: (((((((((pumpRunning == 0) && (waterLevel <= 1)) && (tmp == 1)) && (splverifierCounter == 0)) && !((0 == systemActive))) || (((((pumpRunning == 0) && (2 == waterLevel)) && (tmp == 1)) && (splverifierCounter == 0)) && !((0 == systemActive)))) || (((((1 <= pumpRunning) && (2 == waterLevel)) && (tmp == 1)) && (splverifierCounter == 0)) && !((0 == systemActive)))) || ((((pumpRunning == 0) && (tmp == 1)) && (splverifierCounter == 0)) && (0 == systemActive))) || ((((((1 <= pumpRunning) && (waterLevel <= 1)) && (tmp == 1)) && (splverifierCounter == 0)) && (1 <= switchedOnBeforeTS)) && !((0 == systemActive)))) - InvariantResult [Line: 289]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 391]: Loop Invariant Derived loop invariant: 0 RESULT: Ultimate proved your program to be correct! [2023-12-15 22:57:46,641 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...