/usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Xmx8000000000 -Xss4m -jar ./plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata ./data -s ../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.use.bitabs.translation false -tc ../../../trunk/examples/toolchains/AutomizerCInline.xml -i ../../../trunk/examples/svcomp/product-lines/minepump_spec4_product28.cil.c -------------------------------------------------------------------------------- This is Ultimate 0.2.4-tmp.fs.bitabs-eval-d9c3e40-m [2023-12-21 10:12:36,794 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-12-21 10:12:36,859 INFO L114 SettingsManager]: Loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf [2023-12-21 10:12:36,863 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-12-21 10:12:36,863 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-12-21 10:12:36,885 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-12-21 10:12:36,886 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-12-21 10:12:36,886 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-12-21 10:12:36,887 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-12-21 10:12:36,889 INFO L153 SettingsManager]: * Use memory slicer=true [2023-12-21 10:12:36,890 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-12-21 10:12:36,890 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-12-21 10:12:36,890 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-12-21 10:12:36,891 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-12-21 10:12:36,891 INFO L153 SettingsManager]: * Use SBE=true [2023-12-21 10:12:36,891 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-12-21 10:12:36,892 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-12-21 10:12:36,892 INFO L153 SettingsManager]: * sizeof long=4 [2023-12-21 10:12:36,892 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-12-21 10:12:36,892 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-12-21 10:12:36,892 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-12-21 10:12:36,893 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-12-21 10:12:36,893 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-12-21 10:12:36,893 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-12-21 10:12:36,893 INFO L153 SettingsManager]: * Allow undefined functions=false [2023-12-21 10:12:36,893 INFO L153 SettingsManager]: * sizeof long double=12 [2023-12-21 10:12:36,893 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-12-21 10:12:36,893 INFO L153 SettingsManager]: * Use constant arrays=true [2023-12-21 10:12:36,894 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-12-21 10:12:36,894 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-12-21 10:12:36,895 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-12-21 10:12:36,895 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-12-21 10:12:36,895 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-12-21 10:12:36,895 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-12-21 10:12:36,895 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-12-21 10:12:36,895 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-12-21 10:12:36,896 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-12-21 10:12:36,896 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-12-21 10:12:36,896 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-12-21 10:12:36,896 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-12-21 10:12:36,896 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-12-21 10:12:36,896 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-12-21 10:12:36,896 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-12-21 10:12:36,896 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Use bitabs translation -> false [2023-12-21 10:12:37,083 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-12-21 10:12:37,108 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-12-21 10:12:37,110 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-12-21 10:12:37,111 INFO L270 PluginConnector]: Initializing CDTParser... [2023-12-21 10:12:37,112 INFO L274 PluginConnector]: CDTParser initialized [2023-12-21 10:12:37,113 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/svcomp/product-lines/minepump_spec4_product28.cil.c [2023-12-21 10:12:38,191 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-12-21 10:12:38,394 INFO L384 CDTParser]: Found 1 translation units. [2023-12-21 10:12:38,395 INFO L180 CDTParser]: Scanning /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec4_product28.cil.c [2023-12-21 10:12:38,406 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/c611759cf/ad45ba9774214b13a1def70a01b650d2/FLAGea03acc55 [2023-12-21 10:12:38,417 INFO L435 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/c611759cf/ad45ba9774214b13a1def70a01b650d2 [2023-12-21 10:12:38,419 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-12-21 10:12:38,420 INFO L133 ToolchainWalker]: Walking toolchain with 5 elements. [2023-12-21 10:12:38,422 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-12-21 10:12:38,422 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-12-21 10:12:38,425 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-12-21 10:12:38,426 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,426 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6ad4d5af and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38, skipping insertion in model container [2023-12-21 10:12:38,427 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,455 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-12-21 10:12:38,595 WARN L239 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec4_product28.cil.c[1605,1618] [2023-12-21 10:12:38,733 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-12-21 10:12:38,742 INFO L202 MainTranslator]: Completed pre-run [2023-12-21 10:12:38,749 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2023-12-21 10:12:38,750 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [58] [2023-12-21 10:12:38,750 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [424] [2023-12-21 10:12:38,750 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [452] [2023-12-21 10:12:38,750 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [490] [2023-12-21 10:12:38,750 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [693] [2023-12-21 10:12:38,750 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [784] [2023-12-21 10:12:38,751 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [881] [2023-12-21 10:12:38,757 WARN L239 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec4_product28.cil.c[1605,1618] [2023-12-21 10:12:38,809 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-12-21 10:12:38,827 INFO L206 MainTranslator]: Completed translation [2023-12-21 10:12:38,828 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38 WrapperNode [2023-12-21 10:12:38,828 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-12-21 10:12:38,830 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-12-21 10:12:38,830 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-12-21 10:12:38,830 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-12-21 10:12:38,834 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,864 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,890 INFO L138 Inliner]: procedures = 55, calls = 98, calls flagged for inlining = 24, calls inlined = 18, statements flattened = 172 [2023-12-21 10:12:38,890 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-12-21 10:12:38,891 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-12-21 10:12:38,891 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-12-21 10:12:38,891 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-12-21 10:12:38,900 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,900 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,902 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,916 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-12-21 10:12:38,917 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,917 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,919 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,921 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,922 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,923 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,925 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-12-21 10:12:38,925 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-12-21 10:12:38,926 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-12-21 10:12:38,926 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-12-21 10:12:38,926 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (1/1) ... [2023-12-21 10:12:38,930 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-12-21 10:12:38,940 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-21 10:12:38,952 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-12-21 10:12:38,965 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-12-21 10:12:38,983 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-12-21 10:12:38,983 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-12-21 10:12:38,983 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-12-21 10:12:38,983 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-12-21 10:12:38,984 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-12-21 10:12:38,984 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-12-21 10:12:38,984 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-12-21 10:12:38,984 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-12-21 10:12:38,984 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-12-21 10:12:38,984 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-12-21 10:12:38,984 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-12-21 10:12:38,984 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-12-21 10:12:38,984 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-12-21 10:12:38,984 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-12-21 10:12:38,984 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-12-21 10:12:38,984 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-12-21 10:12:39,054 INFO L241 CfgBuilder]: Building ICFG [2023-12-21 10:12:39,056 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-12-21 10:12:39,278 INFO L282 CfgBuilder]: Performing block encoding [2023-12-21 10:12:39,325 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-12-21 10:12:39,326 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-12-21 10:12:39,326 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 10:12:39 BoogieIcfgContainer [2023-12-21 10:12:39,326 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-12-21 10:12:39,327 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-12-21 10:12:39,327 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-12-21 10:12:39,333 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-12-21 10:12:39,333 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.12 10:12:38" (1/3) ... [2023-12-21 10:12:39,334 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@1bf6f9b5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.12 10:12:39, skipping insertion in model container [2023-12-21 10:12:39,334 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:12:38" (2/3) ... [2023-12-21 10:12:39,334 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@1bf6f9b5 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.12 10:12:39, skipping insertion in model container [2023-12-21 10:12:39,335 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 10:12:39" (3/3) ... [2023-12-21 10:12:39,335 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product28.cil.c [2023-12-21 10:12:39,347 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-12-21 10:12:39,347 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-12-21 10:12:39,385 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-12-21 10:12:39,389 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@1f9fc219, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-12-21 10:12:39,389 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-12-21 10:12:39,397 INFO L276 IsEmpty]: Start isEmpty. Operand has 58 states, 40 states have (on average 1.575) internal successors, (63), 47 states have internal predecessors, (63), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) [2023-12-21 10:12:39,402 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 13 [2023-12-21 10:12:39,402 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:12:39,402 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:12:39,417 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:12:39,421 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:12:39,421 INFO L85 PathProgramCache]: Analyzing trace with hash -1545225184, now seen corresponding path program 1 times [2023-12-21 10:12:39,427 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:12:39,428 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1488986498] [2023-12-21 10:12:39,428 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:12:39,428 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:12:39,512 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:12:39,571 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-12-21 10:12:39,571 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:12:39,571 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1488986498] [2023-12-21 10:12:39,572 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1488986498] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:12:39,572 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:12:39,572 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-12-21 10:12:39,573 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [910351966] [2023-12-21 10:12:39,573 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:12:39,577 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-12-21 10:12:39,578 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:12:39,604 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-12-21 10:12:39,604 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-12-21 10:12:39,606 INFO L87 Difference]: Start difference. First operand has 58 states, 40 states have (on average 1.575) internal successors, (63), 47 states have internal predecessors, (63), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:39,652 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:12:39,652 INFO L93 Difference]: Finished difference Result 114 states and 167 transitions. [2023-12-21 10:12:39,653 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-12-21 10:12:39,654 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 12 [2023-12-21 10:12:39,654 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:12:39,661 INFO L225 Difference]: With dead ends: 114 [2023-12-21 10:12:39,661 INFO L226 Difference]: Without dead ends: 53 [2023-12-21 10:12:39,664 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-12-21 10:12:39,667 INFO L413 NwaCegarLoop]: 64 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 14 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 64 SdHoareTripleChecker+Invalid, 14 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 14 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:12:39,667 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 64 Invalid, 14 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 14 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:12:39,678 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 53 states. [2023-12-21 10:12:39,693 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 53 to 53. [2023-12-21 10:12:39,694 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 53 states, 37 states have (on average 1.4324324324324325) internal successors, (53), 43 states have internal predecessors, (53), 10 states have call successors, (10), 6 states have call predecessors, (10), 5 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2023-12-21 10:12:39,695 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 53 states to 53 states and 72 transitions. [2023-12-21 10:12:39,696 INFO L78 Accepts]: Start accepts. Automaton has 53 states and 72 transitions. Word has length 12 [2023-12-21 10:12:39,696 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:12:39,696 INFO L495 AbstractCegarLoop]: Abstraction has 53 states and 72 transitions. [2023-12-21 10:12:39,697 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:39,697 INFO L276 IsEmpty]: Start isEmpty. Operand 53 states and 72 transitions. [2023-12-21 10:12:39,698 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 14 [2023-12-21 10:12:39,698 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:12:39,699 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:12:39,700 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-12-21 10:12:39,700 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:12:39,700 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:12:39,700 INFO L85 PathProgramCache]: Analyzing trace with hash 379268383, now seen corresponding path program 1 times [2023-12-21 10:12:39,700 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:12:39,701 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [393312281] [2023-12-21 10:12:39,701 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:12:39,701 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:12:39,724 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:12:39,764 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-12-21 10:12:39,765 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:12:39,765 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [393312281] [2023-12-21 10:12:39,765 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [393312281] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:12:39,765 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:12:39,765 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-21 10:12:39,765 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [386184109] [2023-12-21 10:12:39,765 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:12:39,766 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-21 10:12:39,766 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:12:39,767 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-21 10:12:39,767 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:12:39,767 INFO L87 Difference]: Start difference. First operand 53 states and 72 transitions. Second operand has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:39,787 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:12:39,787 INFO L93 Difference]: Finished difference Result 76 states and 102 transitions. [2023-12-21 10:12:39,787 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-21 10:12:39,787 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 13 [2023-12-21 10:12:39,787 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:12:39,788 INFO L225 Difference]: With dead ends: 76 [2023-12-21 10:12:39,788 INFO L226 Difference]: Without dead ends: 45 [2023-12-21 10:12:39,788 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:12:39,789 INFO L413 NwaCegarLoop]: 50 mSDtfsCounter, 14 mSDsluCounter, 34 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 84 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:12:39,789 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 84 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:12:39,790 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 45 states. [2023-12-21 10:12:39,793 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 45 to 45. [2023-12-21 10:12:39,793 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 45 states, 32 states have (on average 1.46875) internal successors, (47), 38 states have internal predecessors, (47), 7 states have call successors, (7), 5 states have call predecessors, (7), 5 states have return successors, (7), 5 states have call predecessors, (7), 7 states have call successors, (7) [2023-12-21 10:12:39,794 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 45 states to 45 states and 61 transitions. [2023-12-21 10:12:39,794 INFO L78 Accepts]: Start accepts. Automaton has 45 states and 61 transitions. Word has length 13 [2023-12-21 10:12:39,794 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:12:39,794 INFO L495 AbstractCegarLoop]: Abstraction has 45 states and 61 transitions. [2023-12-21 10:12:39,794 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 3.6666666666666665) internal successors, (11), 3 states have internal predecessors, (11), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:39,794 INFO L276 IsEmpty]: Start isEmpty. Operand 45 states and 61 transitions. [2023-12-21 10:12:39,795 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2023-12-21 10:12:39,795 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:12:39,795 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:12:39,795 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-12-21 10:12:39,795 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:12:39,796 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:12:39,796 INFO L85 PathProgramCache]: Analyzing trace with hash -1759863489, now seen corresponding path program 1 times [2023-12-21 10:12:39,796 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:12:39,796 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1416326239] [2023-12-21 10:12:39,796 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:12:39,796 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:12:39,805 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:12:39,845 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-12-21 10:12:39,846 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:12:39,846 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1416326239] [2023-12-21 10:12:39,846 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1416326239] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:12:39,846 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:12:39,846 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-21 10:12:39,846 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [91285556] [2023-12-21 10:12:39,846 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:12:39,847 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-21 10:12:39,847 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:12:39,847 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-21 10:12:39,847 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:12:39,847 INFO L87 Difference]: Start difference. First operand 45 states and 61 transitions. Second operand has 3 states, 3 states have (on average 5.0) internal successors, (15), 3 states have internal predecessors, (15), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:39,888 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:12:39,888 INFO L93 Difference]: Finished difference Result 131 states and 180 transitions. [2023-12-21 10:12:39,888 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-21 10:12:39,889 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.0) internal successors, (15), 3 states have internal predecessors, (15), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 16 [2023-12-21 10:12:39,889 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:12:39,890 INFO L225 Difference]: With dead ends: 131 [2023-12-21 10:12:39,890 INFO L226 Difference]: Without dead ends: 88 [2023-12-21 10:12:39,890 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:12:39,891 INFO L413 NwaCegarLoop]: 55 mSDtfsCounter, 55 mSDsluCounter, 48 mSDsCounter, 0 mSdLazyCounter, 25 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 55 SdHoareTripleChecker+Valid, 103 SdHoareTripleChecker+Invalid, 26 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 25 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:12:39,891 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [55 Valid, 103 Invalid, 26 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 25 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:12:39,892 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 88 states. [2023-12-21 10:12:39,901 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 88 to 85. [2023-12-21 10:12:39,902 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 85 states, 60 states have (on average 1.4833333333333334) internal successors, (89), 71 states have internal predecessors, (89), 14 states have call successors, (14), 10 states have call predecessors, (14), 10 states have return successors, (14), 9 states have call predecessors, (14), 14 states have call successors, (14) [2023-12-21 10:12:39,903 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 85 states to 85 states and 117 transitions. [2023-12-21 10:12:39,903 INFO L78 Accepts]: Start accepts. Automaton has 85 states and 117 transitions. Word has length 16 [2023-12-21 10:12:39,903 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:12:39,903 INFO L495 AbstractCegarLoop]: Abstraction has 85 states and 117 transitions. [2023-12-21 10:12:39,903 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.0) internal successors, (15), 3 states have internal predecessors, (15), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:39,903 INFO L276 IsEmpty]: Start isEmpty. Operand 85 states and 117 transitions. [2023-12-21 10:12:39,906 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2023-12-21 10:12:39,906 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:12:39,906 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:12:39,907 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-12-21 10:12:39,907 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:12:39,907 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:12:39,907 INFO L85 PathProgramCache]: Analyzing trace with hash -2100786603, now seen corresponding path program 1 times [2023-12-21 10:12:39,907 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:12:39,908 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2065225518] [2023-12-21 10:12:39,908 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:12:39,908 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:12:39,919 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:12:39,993 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-12-21 10:12:39,994 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:12:39,994 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2065225518] [2023-12-21 10:12:39,994 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2065225518] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:12:39,994 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:12:39,994 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-21 10:12:39,994 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2118330383] [2023-12-21 10:12:39,994 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:12:39,995 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-12-21 10:12:39,995 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:12:39,995 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-12-21 10:12:39,995 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-21 10:12:39,996 INFO L87 Difference]: Start difference. First operand 85 states and 117 transitions. Second operand has 4 states, 4 states have (on average 4.5) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:40,057 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:12:40,057 INFO L93 Difference]: Finished difference Result 241 states and 344 transitions. [2023-12-21 10:12:40,060 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-12-21 10:12:40,061 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.5) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2023-12-21 10:12:40,061 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:12:40,066 INFO L225 Difference]: With dead ends: 241 [2023-12-21 10:12:40,067 INFO L226 Difference]: Without dead ends: 158 [2023-12-21 10:12:40,067 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-12-21 10:12:40,068 INFO L413 NwaCegarLoop]: 47 mSDtfsCounter, 36 mSDsluCounter, 93 mSDsCounter, 0 mSdLazyCounter, 41 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 36 SdHoareTripleChecker+Valid, 140 SdHoareTripleChecker+Invalid, 43 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 41 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:12:40,069 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [36 Valid, 140 Invalid, 43 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 41 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:12:40,069 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 158 states. [2023-12-21 10:12:40,100 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 158 to 158. [2023-12-21 10:12:40,100 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 158 states, 111 states have (on average 1.4504504504504505) internal successors, (161), 130 states have internal predecessors, (161), 28 states have call successors, (28), 20 states have call predecessors, (28), 18 states have return successors, (30), 16 states have call predecessors, (30), 28 states have call successors, (30) [2023-12-21 10:12:40,104 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 158 states to 158 states and 219 transitions. [2023-12-21 10:12:40,104 INFO L78 Accepts]: Start accepts. Automaton has 158 states and 219 transitions. Word has length 19 [2023-12-21 10:12:40,105 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:12:40,105 INFO L495 AbstractCegarLoop]: Abstraction has 158 states and 219 transitions. [2023-12-21 10:12:40,105 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.5) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:40,105 INFO L276 IsEmpty]: Start isEmpty. Operand 158 states and 219 transitions. [2023-12-21 10:12:40,106 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2023-12-21 10:12:40,106 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:12:40,106 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:12:40,107 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-12-21 10:12:40,107 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:12:40,107 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:12:40,107 INFO L85 PathProgramCache]: Analyzing trace with hash 807549978, now seen corresponding path program 1 times [2023-12-21 10:12:40,107 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:12:40,108 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1839805329] [2023-12-21 10:12:40,108 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:12:40,108 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:12:40,117 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:12:40,172 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-12-21 10:12:40,172 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:12:40,172 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1839805329] [2023-12-21 10:12:40,172 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1839805329] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:12:40,173 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:12:40,173 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-12-21 10:12:40,173 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [444053953] [2023-12-21 10:12:40,173 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:12:40,173 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-21 10:12:40,173 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:12:40,174 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-21 10:12:40,174 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:12:40,174 INFO L87 Difference]: Start difference. First operand 158 states and 219 transitions. Second operand has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 2 states have internal predecessors, (20), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:40,201 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:12:40,202 INFO L93 Difference]: Finished difference Result 276 states and 384 transitions. [2023-12-21 10:12:40,202 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-21 10:12:40,202 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 2 states have internal predecessors, (20), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 21 [2023-12-21 10:12:40,203 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:12:40,203 INFO L225 Difference]: With dead ends: 276 [2023-12-21 10:12:40,204 INFO L226 Difference]: Without dead ends: 120 [2023-12-21 10:12:40,205 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:12:40,206 INFO L413 NwaCegarLoop]: 32 mSDtfsCounter, 30 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 30 SdHoareTripleChecker+Valid, 32 SdHoareTripleChecker+Invalid, 13 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:12:40,206 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [30 Valid, 32 Invalid, 13 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:12:40,207 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 120 states. [2023-12-21 10:12:40,215 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 120 to 118. [2023-12-21 10:12:40,216 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 118 states, 87 states have (on average 1.3218390804597702) internal successors, (115), 94 states have internal predecessors, (115), 16 states have call successors, (16), 16 states have call predecessors, (16), 14 states have return successors, (16), 14 states have call predecessors, (16), 16 states have call successors, (16) [2023-12-21 10:12:40,217 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 118 states to 118 states and 147 transitions. [2023-12-21 10:12:40,217 INFO L78 Accepts]: Start accepts. Automaton has 118 states and 147 transitions. Word has length 21 [2023-12-21 10:12:40,217 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:12:40,217 INFO L495 AbstractCegarLoop]: Abstraction has 118 states and 147 transitions. [2023-12-21 10:12:40,217 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 2 states have internal predecessors, (20), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:40,218 INFO L276 IsEmpty]: Start isEmpty. Operand 118 states and 147 transitions. [2023-12-21 10:12:40,218 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-12-21 10:12:40,218 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:12:40,218 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:12:40,219 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-12-21 10:12:40,219 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:12:40,219 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:12:40,219 INFO L85 PathProgramCache]: Analyzing trace with hash 1815527855, now seen corresponding path program 1 times [2023-12-21 10:12:40,219 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:12:40,219 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1369124753] [2023-12-21 10:12:40,219 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:12:40,220 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:12:40,229 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:12:40,335 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-21 10:12:40,337 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:12:40,356 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-12-21 10:12:40,357 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:12:40,357 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1369124753] [2023-12-21 10:12:40,357 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1369124753] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:12:40,357 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:12:40,357 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-12-21 10:12:40,357 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1190110192] [2023-12-21 10:12:40,357 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:12:40,358 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-12-21 10:12:40,358 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:12:40,359 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-12-21 10:12:40,359 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2023-12-21 10:12:40,359 INFO L87 Difference]: Start difference. First operand 118 states and 147 transitions. Second operand has 7 states, 7 states have (on average 2.857142857142857) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-12-21 10:12:40,535 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:12:40,535 INFO L93 Difference]: Finished difference Result 180 states and 226 transitions. [2023-12-21 10:12:40,536 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-12-21 10:12:40,536 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 2.857142857142857) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 23 [2023-12-21 10:12:40,537 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:12:40,537 INFO L225 Difference]: With dead ends: 180 [2023-12-21 10:12:40,537 INFO L226 Difference]: Without dead ends: 0 [2023-12-21 10:12:40,540 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=29, Invalid=81, Unknown=0, NotChecked=0, Total=110 [2023-12-21 10:12:40,542 INFO L413 NwaCegarLoop]: 43 mSDtfsCounter, 75 mSDsluCounter, 134 mSDsCounter, 0 mSdLazyCounter, 153 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 77 SdHoareTripleChecker+Valid, 177 SdHoareTripleChecker+Invalid, 171 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 153 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:12:40,546 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [77 Valid, 177 Invalid, 171 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 153 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:12:40,550 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-12-21 10:12:40,551 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-12-21 10:12:40,551 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:12:40,551 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-12-21 10:12:40,551 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 23 [2023-12-21 10:12:40,551 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:12:40,551 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-12-21 10:12:40,551 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 2.857142857142857) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2023-12-21 10:12:40,552 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-12-21 10:12:40,552 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-12-21 10:12:40,554 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-12-21 10:12:40,554 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-12-21 10:12:40,555 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-12-21 10:12:40,946 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 587 594) no Hoare annotation was computed. [2023-12-21 10:12:40,947 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 587 594) the Hoare annotation is: true [2023-12-21 10:12:40,947 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 528 534) no Hoare annotation was computed. [2023-12-21 10:12:40,947 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 528 534) the Hoare annotation is: true [2023-12-21 10:12:40,947 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 722 733) the Hoare annotation is: true [2023-12-21 10:12:40,947 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 722 733) no Hoare annotation was computed. [2023-12-21 10:12:40,947 INFO L899 garLoopResultBuilder]: For program point L726-1(lines 722 733) no Hoare annotation was computed. [2023-12-21 10:12:40,947 INFO L899 garLoopResultBuilder]: For program point L800(lines 800 804) no Hoare annotation was computed. [2023-12-21 10:12:40,948 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 786 815) no Hoare annotation was computed. [2023-12-21 10:12:40,948 INFO L902 garLoopResultBuilder]: At program point L800-1(lines 800 804) the Hoare annotation is: true [2023-12-21 10:12:40,948 INFO L902 garLoopResultBuilder]: At program point L796-2(lines 796 810) the Hoare annotation is: true [2023-12-21 10:12:40,948 INFO L902 garLoopResultBuilder]: At program point L792(line 792) the Hoare annotation is: true [2023-12-21 10:12:40,948 INFO L899 garLoopResultBuilder]: For program point L792-1(line 792) no Hoare annotation was computed. [2023-12-21 10:12:40,948 INFO L899 garLoopResultBuilder]: For program point L811(lines 786 815) no Hoare annotation was computed. [2023-12-21 10:12:40,948 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 786 815) the Hoare annotation is: true [2023-12-21 10:12:40,948 INFO L899 garLoopResultBuilder]: For program point L807(line 807) no Hoare annotation was computed. [2023-12-21 10:12:40,949 INFO L899 garLoopResultBuilder]: For program point L515-1(lines 515 521) no Hoare annotation was computed. [2023-12-21 10:12:40,949 INFO L899 garLoopResultBuilder]: For program point L544(lines 544 552) no Hoare annotation was computed. [2023-12-21 10:12:40,949 INFO L899 garLoopResultBuilder]: For program point L540(lines 540 557) no Hoare annotation was computed. [2023-12-21 10:12:40,949 INFO L899 garLoopResultBuilder]: For program point L660(lines 660 664) no Hoare annotation was computed. [2023-12-21 10:12:40,949 INFO L899 garLoopResultBuilder]: For program point L660-2(lines 660 664) no Hoare annotation was computed. [2023-12-21 10:12:40,949 INFO L899 garLoopResultBuilder]: For program point L702(lines 702 706) no Hoare annotation was computed. [2023-12-21 10:12:40,949 INFO L899 garLoopResultBuilder]: For program point L702-2(lines 698 709) no Hoare annotation was computed. [2023-12-21 10:12:40,949 INFO L899 garLoopResultBuilder]: For program point L508-1(lines 507 526) no Hoare annotation was computed. [2023-12-21 10:12:40,949 INFO L899 garLoopResultBuilder]: For program point L54(line 54) no Hoare annotation was computed. [2023-12-21 10:12:40,950 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 504 527) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 (= ~waterLevel~0 1))) (or .cse0 (and .cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (< |old(~waterLevel~0)| 2)))) [2023-12-21 10:12:40,950 INFO L895 garLoopResultBuilder]: At program point L550(line 550) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2)) (or .cse0 (not (= |old(~waterLevel~0)| 1))))) [2023-12-21 10:12:40,950 INFO L895 garLoopResultBuilder]: At program point L546(line 546) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2)) (or .cse0 (not (= |old(~waterLevel~0)| 1))))) [2023-12-21 10:12:40,950 INFO L899 garLoopResultBuilder]: For program point L439(lines 439 445) no Hoare annotation was computed. [2023-12-21 10:12:40,950 INFO L899 garLoopResultBuilder]: For program point L435(lines 435 448) no Hoare annotation was computed. [2023-12-21 10:12:40,950 INFO L899 garLoopResultBuilder]: For program point L435-1(lines 427 451) no Hoare annotation was computed. [2023-12-21 10:12:40,951 INFO L895 garLoopResultBuilder]: At program point L555(line 555) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 (= ~waterLevel~0 1))) (or .cse0 (and .cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (< |old(~waterLevel~0)| 2)))) [2023-12-21 10:12:40,951 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 504 527) no Hoare annotation was computed. [2023-12-21 10:12:40,951 INFO L899 garLoopResultBuilder]: For program point L555-1(lines 536 560) no Hoare annotation was computed. [2023-12-21 10:12:40,951 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 54) no Hoare annotation was computed. [2023-12-21 10:12:40,951 INFO L895 garLoopResultBuilder]: At program point L676(line 676) the Hoare annotation is: false [2023-12-21 10:12:40,951 INFO L899 garLoopResultBuilder]: For program point L945(lines 882 949) no Hoare annotation was computed. [2023-12-21 10:12:40,951 INFO L899 garLoopResultBuilder]: For program point L912(lines 912 918) no Hoare annotation was computed. [2023-12-21 10:12:40,952 INFO L899 garLoopResultBuilder]: For program point L912-1(lines 912 918) no Hoare annotation was computed. [2023-12-21 10:12:40,952 INFO L895 garLoopResultBuilder]: At program point L904(line 904) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (= ~waterLevel~0 1)) (and .cse0 (<= 2 ~waterLevel~0) .cse1))) [2023-12-21 10:12:40,952 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-12-21 10:12:40,952 INFO L895 garLoopResultBuilder]: At program point L942(lines 891 943) the Hoare annotation is: false [2023-12-21 10:12:40,952 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-12-21 10:12:40,952 INFO L899 garLoopResultBuilder]: For program point L868(lines 868 875) no Hoare annotation was computed. [2023-12-21 10:12:40,952 INFO L899 garLoopResultBuilder]: For program point L930(lines 930 936) no Hoare annotation was computed. [2023-12-21 10:12:40,952 INFO L899 garLoopResultBuilder]: For program point L674(lines 674 680) no Hoare annotation was computed. [2023-12-21 10:12:40,952 INFO L899 garLoopResultBuilder]: For program point L868-2(lines 868 875) no Hoare annotation was computed. [2023-12-21 10:12:40,953 INFO L899 garLoopResultBuilder]: For program point L674-1(lines 674 680) no Hoare annotation was computed. [2023-12-21 10:12:40,953 INFO L895 garLoopResultBuilder]: At program point L930-2(lines 922 937) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (= ~waterLevel~0 1)) (and .cse0 (<= 2 ~waterLevel~0) .cse1))) [2023-12-21 10:12:40,953 INFO L899 garLoopResultBuilder]: For program point L893(lines 892 941) no Hoare annotation was computed. [2023-12-21 10:12:40,953 INFO L899 garLoopResultBuilder]: For program point L922(lines 922 937) no Hoare annotation was computed. [2023-12-21 10:12:40,953 INFO L895 garLoopResultBuilder]: At program point L914(line 914) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (= ~waterLevel~0 1)) (and .cse0 (<= 2 ~waterLevel~0) .cse1))) [2023-12-21 10:12:40,953 INFO L895 garLoopResultBuilder]: At program point L939(lines 892 941) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (= ~waterLevel~0 1)) (and .cse0 (<= 2 ~waterLevel~0) .cse1))) [2023-12-21 10:12:40,953 INFO L899 garLoopResultBuilder]: For program point L902(lines 902 908) no Hoare annotation was computed. [2023-12-21 10:12:40,953 INFO L899 garLoopResultBuilder]: For program point L902-1(lines 902 908) no Hoare annotation was computed. [2023-12-21 10:12:40,953 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 710 721) no Hoare annotation was computed. [2023-12-21 10:12:40,954 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 710 721) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0)))) (and (or .cse0 (< |old(~waterLevel~0)| 2) (= |old(~waterLevel~0)| ~waterLevel~0)) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (= ~waterLevel~0 1)))) [2023-12-21 10:12:40,954 INFO L899 garLoopResultBuilder]: For program point L714-1(lines 710 721) no Hoare annotation was computed. [2023-12-21 10:12:40,956 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1] [2023-12-21 10:12:40,958 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2023-12-21 10:12:40,967 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.12 10:12:40 BoogieIcfgContainer [2023-12-21 10:12:40,967 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-12-21 10:12:40,968 INFO L158 Benchmark]: Toolchain (without parser) took 2547.61ms. Allocated memory is still 347.1MB. Free memory was 296.0MB in the beginning and 163.4MB in the end (delta: 132.6MB). Peak memory consumption was 133.4MB. Max. memory is 8.0GB. [2023-12-21 10:12:40,968 INFO L158 Benchmark]: CDTParser took 0.12ms. Allocated memory is still 216.0MB. Free memory is still 167.3MB. There was no memory consumed. Max. memory is 8.0GB. [2023-12-21 10:12:40,968 INFO L158 Benchmark]: CACSL2BoogieTranslator took 406.46ms. Allocated memory is still 347.1MB. Free memory was 295.8MB in the beginning and 275.5MB in the end (delta: 20.2MB). Peak memory consumption was 21.0MB. Max. memory is 8.0GB. [2023-12-21 10:12:40,968 INFO L158 Benchmark]: Boogie Procedure Inliner took 60.87ms. Allocated memory is still 347.1MB. Free memory was 275.5MB in the beginning and 273.4MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. [2023-12-21 10:12:40,969 INFO L158 Benchmark]: Boogie Preprocessor took 33.86ms. Allocated memory is still 347.1MB. Free memory was 273.4MB in the beginning and 271.3MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. [2023-12-21 10:12:40,969 INFO L158 Benchmark]: RCFGBuilder took 400.60ms. Allocated memory is still 347.1MB. Free memory was 271.1MB in the beginning and 303.4MB in the end (delta: -32.3MB). Peak memory consumption was 14.9MB. Max. memory is 8.0GB. [2023-12-21 10:12:40,969 INFO L158 Benchmark]: TraceAbstraction took 1640.09ms. Allocated memory is still 347.1MB. Free memory was 302.8MB in the beginning and 163.4MB in the end (delta: 139.5MB). Peak memory consumption was 139.5MB. Max. memory is 8.0GB. [2023-12-21 10:12:40,970 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.12ms. Allocated memory is still 216.0MB. Free memory is still 167.3MB. There was no memory consumed. Max. memory is 8.0GB. * CACSL2BoogieTranslator took 406.46ms. Allocated memory is still 347.1MB. Free memory was 295.8MB in the beginning and 275.5MB in the end (delta: 20.2MB). Peak memory consumption was 21.0MB. Max. memory is 8.0GB. * Boogie Procedure Inliner took 60.87ms. Allocated memory is still 347.1MB. Free memory was 275.5MB in the beginning and 273.4MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. * Boogie Preprocessor took 33.86ms. Allocated memory is still 347.1MB. Free memory was 273.4MB in the beginning and 271.3MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. * RCFGBuilder took 400.60ms. Allocated memory is still 347.1MB. Free memory was 271.1MB in the beginning and 303.4MB in the end (delta: -32.3MB). Peak memory consumption was 14.9MB. Max. memory is 8.0GB. * TraceAbstraction took 1640.09ms. Allocated memory is still 347.1MB. Free memory was 302.8MB in the beginning and 163.4MB in the end (delta: 139.5MB). Peak memory consumption was 139.5MB. Max. memory is 8.0GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [58] - GenericResultAtLocation [Line: 424]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification4_spec.i","") [424] - GenericResultAtLocation [Line: 452]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [452] - GenericResultAtLocation [Line: 490]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [490] - GenericResultAtLocation [Line: 693]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [693] - GenericResultAtLocation [Line: 784]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [784] - GenericResultAtLocation [Line: 881]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [881] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 58 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 1.6s, OverallIterations: 6, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.5s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.4s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 216 SdHoareTripleChecker+Valid, 0.2s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 210 mSDsluCounter, 600 SdHoareTripleChecker+Invalid, 0.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 309 mSDsCounter, 23 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 262 IncrementalHoareTripleChecker+Invalid, 285 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 23 mSolverCounterUnsat, 291 mSDtfsCounter, 262 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 27 GetRequests, 12 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 5 ImplicationChecksByTransitivity, 0.1s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=158occurred in iteration=4, InterpolantAutomatonStates: 23, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 6 MinimizatonAttempts, 5 StatesRemovedByMinimization, 2 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 18 LocationsWithAnnotation, 155 PreInvPairs, 175 NumberOfFragments, 217 HoareAnnotationTreeSize, 155 FormulaSimplifications, 0 FormulaSimplificationTreeSizeReduction, 0.0s HoareSimplificationTime, 18 FormulaSimplificationsInter, 485 FormulaSimplificationTreeSizeReductionInter, 0.3s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 0.4s InterpolantComputationTime, 104 NumberOfCodeBlocks, 104 NumberOfCodeBlocksAsserted, 6 NumberOfCheckSat, 98 ConstructedInterpolants, 0 QuantifiedInterpolants, 210 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 6 InterpolantComputations, 6 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 891]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 796]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 892]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0) && (splverifierCounter == 0)) && (waterLevel == 1)) || (((pumpRunning == 0) && (2 <= waterLevel)) && (splverifierCounter == 0))) RESULT: Ultimate proved your program to be correct! [2023-12-21 10:12:40,996 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...