/usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Xmx8000000000 -Xss4m -jar ./plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata ./data -s ../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.use.bitabs.translation false -tc ../../../trunk/examples/toolchains/AutomizerCInline.xml -i ../../../trunk/examples/svcomp/product-lines/minepump_spec5_product35.cil.c -------------------------------------------------------------------------------- This is Ultimate 0.2.4-tmp.fs.bitabs-eval-d9c3e40-m [2023-12-21 10:13:25,034 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-12-21 10:13:25,109 INFO L114 SettingsManager]: Loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf [2023-12-21 10:13:25,115 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-12-21 10:13:25,116 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-12-21 10:13:25,143 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-12-21 10:13:25,144 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-12-21 10:13:25,144 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-12-21 10:13:25,145 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-12-21 10:13:25,148 INFO L153 SettingsManager]: * Use memory slicer=true [2023-12-21 10:13:25,149 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-12-21 10:13:25,149 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-12-21 10:13:25,149 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-12-21 10:13:25,151 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-12-21 10:13:25,151 INFO L153 SettingsManager]: * Use SBE=true [2023-12-21 10:13:25,151 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-12-21 10:13:25,151 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-12-21 10:13:25,151 INFO L153 SettingsManager]: * sizeof long=4 [2023-12-21 10:13:25,152 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-12-21 10:13:25,153 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-12-21 10:13:25,153 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-12-21 10:13:25,153 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-12-21 10:13:25,153 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-12-21 10:13:25,154 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-12-21 10:13:25,154 INFO L153 SettingsManager]: * Allow undefined functions=false [2023-12-21 10:13:25,154 INFO L153 SettingsManager]: * sizeof long double=12 [2023-12-21 10:13:25,154 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-12-21 10:13:25,154 INFO L153 SettingsManager]: * Use constant arrays=true [2023-12-21 10:13:25,155 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-12-21 10:13:25,155 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-12-21 10:13:25,156 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-12-21 10:13:25,156 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-12-21 10:13:25,156 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-12-21 10:13:25,157 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-12-21 10:13:25,157 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-12-21 10:13:25,157 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-12-21 10:13:25,157 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-12-21 10:13:25,157 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-12-21 10:13:25,158 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-12-21 10:13:25,158 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-12-21 10:13:25,158 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-12-21 10:13:25,158 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-12-21 10:13:25,158 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-12-21 10:13:25,158 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Use bitabs translation -> false [2023-12-21 10:13:25,393 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-12-21 10:13:25,414 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-12-21 10:13:25,416 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-12-21 10:13:25,417 INFO L270 PluginConnector]: Initializing CDTParser... [2023-12-21 10:13:25,418 INFO L274 PluginConnector]: CDTParser initialized [2023-12-21 10:13:25,419 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/svcomp/product-lines/minepump_spec5_product35.cil.c [2023-12-21 10:13:26,579 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-12-21 10:13:26,841 INFO L384 CDTParser]: Found 1 translation units. [2023-12-21 10:13:26,842 INFO L180 CDTParser]: Scanning /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product35.cil.c [2023-12-21 10:13:26,853 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/73924e3da/b315a7e71a3647e2acafb3553b53a653/FLAGd41fb8992 [2023-12-21 10:13:26,863 INFO L435 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/73924e3da/b315a7e71a3647e2acafb3553b53a653 [2023-12-21 10:13:26,864 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-12-21 10:13:26,865 INFO L133 ToolchainWalker]: Walking toolchain with 5 elements. [2023-12-21 10:13:26,866 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-12-21 10:13:26,866 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-12-21 10:13:26,874 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-12-21 10:13:26,875 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.12 10:13:26" (1/1) ... [2023-12-21 10:13:26,876 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@3e92638 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:26, skipping insertion in model container [2023-12-21 10:13:26,876 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.12 10:13:26" (1/1) ... [2023-12-21 10:13:26,928 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-12-21 10:13:27,051 WARN L239 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product35.cil.c[1605,1618] [2023-12-21 10:13:27,188 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-12-21 10:13:27,206 INFO L202 MainTranslator]: Completed pre-run [2023-12-21 10:13:27,214 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] [2023-12-21 10:13:27,216 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [58] [2023-12-21 10:13:27,216 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [164] [2023-12-21 10:13:27,216 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [530] [2023-12-21 10:13:27,216 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [565] [2023-12-21 10:13:27,216 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [633] [2023-12-21 10:13:27,217 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [732] [2023-12-21 10:13:27,217 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [907] [2023-12-21 10:13:27,231 WARN L239 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product35.cil.c[1605,1618] [2023-12-21 10:13:27,270 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-12-21 10:13:27,286 INFO L206 MainTranslator]: Completed translation [2023-12-21 10:13:27,286 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27 WrapperNode [2023-12-21 10:13:27,287 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-12-21 10:13:27,288 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-12-21 10:13:27,288 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-12-21 10:13:27,288 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-12-21 10:13:27,293 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,318 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,350 INFO L138 Inliner]: procedures = 55, calls = 98, calls flagged for inlining = 24, calls inlined = 20, statements flattened = 182 [2023-12-21 10:13:27,350 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-12-21 10:13:27,351 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-12-21 10:13:27,351 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-12-21 10:13:27,351 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-12-21 10:13:27,360 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,361 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,363 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,378 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-12-21 10:13:27,378 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,379 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,383 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,388 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,389 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,390 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,392 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-12-21 10:13:27,393 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-12-21 10:13:27,393 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-12-21 10:13:27,393 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-12-21 10:13:27,393 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (1/1) ... [2023-12-21 10:13:27,400 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-12-21 10:13:27,416 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-21 10:13:27,451 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-12-21 10:13:27,472 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-12-21 10:13:27,484 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-12-21 10:13:27,485 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-12-21 10:13:27,485 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-12-21 10:13:27,485 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-12-21 10:13:27,485 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-12-21 10:13:27,485 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-12-21 10:13:27,485 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-12-21 10:13:27,485 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-12-21 10:13:27,486 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-12-21 10:13:27,486 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2023-12-21 10:13:27,486 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2023-12-21 10:13:27,486 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-12-21 10:13:27,486 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-12-21 10:13:27,486 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-12-21 10:13:27,486 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-12-21 10:13:27,486 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-12-21 10:13:27,542 INFO L241 CfgBuilder]: Building ICFG [2023-12-21 10:13:27,544 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-12-21 10:13:27,765 INFO L282 CfgBuilder]: Performing block encoding [2023-12-21 10:13:27,826 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-12-21 10:13:27,827 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-12-21 10:13:27,827 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 10:13:27 BoogieIcfgContainer [2023-12-21 10:13:27,827 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-12-21 10:13:27,829 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-12-21 10:13:27,829 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-12-21 10:13:27,832 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-12-21 10:13:27,832 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.12 10:13:26" (1/3) ... [2023-12-21 10:13:27,833 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@30b9dd02 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.12 10:13:27, skipping insertion in model container [2023-12-21 10:13:27,833 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:27" (2/3) ... [2023-12-21 10:13:27,833 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@30b9dd02 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.12 10:13:27, skipping insertion in model container [2023-12-21 10:13:27,833 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 10:13:27" (3/3) ... [2023-12-21 10:13:27,834 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product35.cil.c [2023-12-21 10:13:27,847 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-12-21 10:13:27,847 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-12-21 10:13:27,889 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-12-21 10:13:27,895 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@7ce99546, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-12-21 10:13:27,895 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-12-21 10:13:27,899 INFO L276 IsEmpty]: Start isEmpty. Operand has 64 states, 46 states have (on average 1.5434782608695652) internal successors, (71), 52 states have internal predecessors, (71), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 9 states have call predecessors, (10), 10 states have call successors, (10) [2023-12-21 10:13:27,908 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2023-12-21 10:13:27,908 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:27,909 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:27,918 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:27,923 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:27,924 INFO L85 PathProgramCache]: Analyzing trace with hash -1725021989, now seen corresponding path program 1 times [2023-12-21 10:13:27,932 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:27,932 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1980021906] [2023-12-21 10:13:27,933 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:27,933 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:28,012 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,070 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-12-21 10:13:28,074 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,078 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-12-21 10:13:28,081 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,084 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:28,084 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:28,084 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1980021906] [2023-12-21 10:13:28,085 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1980021906] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:28,085 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:28,085 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-12-21 10:13:28,087 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1520312636] [2023-12-21 10:13:28,087 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:28,091 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-12-21 10:13:28,091 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:28,126 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-12-21 10:13:28,127 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-12-21 10:13:28,130 INFO L87 Difference]: Start difference. First operand has 64 states, 46 states have (on average 1.5434782608695652) internal successors, (71), 52 states have internal predecessors, (71), 10 states have call successors, (10), 6 states have call predecessors, (10), 6 states have return successors, (10), 9 states have call predecessors, (10), 10 states have call successors, (10) Second operand has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:28,207 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:28,207 INFO L93 Difference]: Finished difference Result 126 states and 183 transitions. [2023-12-21 10:13:28,209 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-12-21 10:13:28,210 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 22 [2023-12-21 10:13:28,210 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:28,217 INFO L225 Difference]: With dead ends: 126 [2023-12-21 10:13:28,218 INFO L226 Difference]: Without dead ends: 59 [2023-12-21 10:13:28,221 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-12-21 10:13:28,224 INFO L413 NwaCegarLoop]: 72 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 14 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 72 SdHoareTripleChecker+Invalid, 14 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 14 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:28,225 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 72 Invalid, 14 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 14 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:13:28,238 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2023-12-21 10:13:28,255 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 59. [2023-12-21 10:13:28,256 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 59 states, 43 states have (on average 1.4186046511627908) internal successors, (61), 48 states have internal predecessors, (61), 10 states have call successors, (10), 6 states have call predecessors, (10), 5 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) [2023-12-21 10:13:28,258 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 80 transitions. [2023-12-21 10:13:28,260 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 80 transitions. Word has length 22 [2023-12-21 10:13:28,260 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:28,260 INFO L495 AbstractCegarLoop]: Abstraction has 59 states and 80 transitions. [2023-12-21 10:13:28,260 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:28,261 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 80 transitions. [2023-12-21 10:13:28,262 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-12-21 10:13:28,263 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:28,263 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:28,263 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-12-21 10:13:28,263 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:28,264 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:28,264 INFO L85 PathProgramCache]: Analyzing trace with hash -2102393361, now seen corresponding path program 1 times [2023-12-21 10:13:28,264 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:28,265 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1077447733] [2023-12-21 10:13:28,265 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:28,265 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:28,282 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,373 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-12-21 10:13:28,377 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,380 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-12-21 10:13:28,384 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,391 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:28,392 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:28,392 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1077447733] [2023-12-21 10:13:28,392 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1077447733] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:28,392 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:28,392 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-21 10:13:28,393 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1305858559] [2023-12-21 10:13:28,393 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:28,394 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-21 10:13:28,394 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:28,395 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-21 10:13:28,395 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:13:28,395 INFO L87 Difference]: Start difference. First operand 59 states and 80 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:28,441 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:28,441 INFO L93 Difference]: Finished difference Result 89 states and 120 transitions. [2023-12-21 10:13:28,444 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-21 10:13:28,444 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 23 [2023-12-21 10:13:28,444 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:28,445 INFO L225 Difference]: With dead ends: 89 [2023-12-21 10:13:28,445 INFO L226 Difference]: Without dead ends: 51 [2023-12-21 10:13:28,446 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:13:28,447 INFO L413 NwaCegarLoop]: 58 mSDtfsCounter, 14 mSDsluCounter, 43 mSDsCounter, 0 mSdLazyCounter, 18 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 17 SdHoareTripleChecker+Valid, 101 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 18 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:28,448 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [17 Valid, 101 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 18 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:13:28,448 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 51 states. [2023-12-21 10:13:28,453 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 51 to 51. [2023-12-21 10:13:28,454 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 51 states, 38 states have (on average 1.4473684210526316) internal successors, (55), 43 states have internal predecessors, (55), 7 states have call successors, (7), 5 states have call predecessors, (7), 5 states have return successors, (7), 6 states have call predecessors, (7), 7 states have call successors, (7) [2023-12-21 10:13:28,455 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 51 states to 51 states and 69 transitions. [2023-12-21 10:13:28,455 INFO L78 Accepts]: Start accepts. Automaton has 51 states and 69 transitions. Word has length 23 [2023-12-21 10:13:28,455 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:28,455 INFO L495 AbstractCegarLoop]: Abstraction has 51 states and 69 transitions. [2023-12-21 10:13:28,456 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:28,456 INFO L276 IsEmpty]: Start isEmpty. Operand 51 states and 69 transitions. [2023-12-21 10:13:28,457 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-12-21 10:13:28,457 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:28,457 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:28,457 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-12-21 10:13:28,457 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:28,458 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:28,458 INFO L85 PathProgramCache]: Analyzing trace with hash 611933001, now seen corresponding path program 1 times [2023-12-21 10:13:28,458 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:28,458 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [757074548] [2023-12-21 10:13:28,459 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:28,459 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:28,495 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,571 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-21 10:13:28,573 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,575 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-12-21 10:13:28,576 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,578 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:28,578 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:28,578 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [757074548] [2023-12-21 10:13:28,578 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [757074548] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:28,579 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:28,579 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-12-21 10:13:28,579 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1624619931] [2023-12-21 10:13:28,579 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:28,579 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-12-21 10:13:28,579 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:28,580 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-12-21 10:13:28,580 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-21 10:13:28,580 INFO L87 Difference]: Start difference. First operand 51 states and 69 transitions. Second operand has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:28,672 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:28,673 INFO L93 Difference]: Finished difference Result 151 states and 211 transitions. [2023-12-21 10:13:28,673 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-12-21 10:13:28,673 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 26 [2023-12-21 10:13:28,674 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:28,675 INFO L225 Difference]: With dead ends: 151 [2023-12-21 10:13:28,675 INFO L226 Difference]: Without dead ends: 102 [2023-12-21 10:13:28,676 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-12-21 10:13:28,677 INFO L413 NwaCegarLoop]: 65 mSDtfsCounter, 78 mSDsluCounter, 109 mSDsCounter, 0 mSdLazyCounter, 55 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 78 SdHoareTripleChecker+Valid, 174 SdHoareTripleChecker+Invalid, 62 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 55 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:28,678 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [78 Valid, 174 Invalid, 62 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 55 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:13:28,678 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 102 states. [2023-12-21 10:13:28,693 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 102 to 85. [2023-12-21 10:13:28,694 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 85 states, 63 states have (on average 1.4444444444444444) internal successors, (91), 70 states have internal predecessors, (91), 12 states have call successors, (12), 9 states have call predecessors, (12), 9 states have return successors, (13), 11 states have call predecessors, (13), 12 states have call successors, (13) [2023-12-21 10:13:28,695 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 85 states to 85 states and 116 transitions. [2023-12-21 10:13:28,695 INFO L78 Accepts]: Start accepts. Automaton has 85 states and 116 transitions. Word has length 26 [2023-12-21 10:13:28,695 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:28,696 INFO L495 AbstractCegarLoop]: Abstraction has 85 states and 116 transitions. [2023-12-21 10:13:28,696 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:28,696 INFO L276 IsEmpty]: Start isEmpty. Operand 85 states and 116 transitions. [2023-12-21 10:13:28,697 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-12-21 10:13:28,697 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:28,697 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:28,698 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-12-21 10:13:28,698 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:28,698 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:28,699 INFO L85 PathProgramCache]: Analyzing trace with hash 782732798, now seen corresponding path program 1 times [2023-12-21 10:13:28,699 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:28,699 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [654302746] [2023-12-21 10:13:28,699 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:28,699 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:28,713 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,742 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-12-21 10:13:28,743 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,745 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-12-21 10:13:28,746 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,747 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:28,747 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:28,747 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [654302746] [2023-12-21 10:13:28,748 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [654302746] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:28,748 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:28,748 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-21 10:13:28,748 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [443017588] [2023-12-21 10:13:28,748 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:28,749 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-21 10:13:28,749 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:28,749 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-21 10:13:28,749 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:13:28,750 INFO L87 Difference]: Start difference. First operand 85 states and 116 transitions. Second operand has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 3 states have internal predecessors, (23), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:28,789 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:28,789 INFO L93 Difference]: Finished difference Result 205 states and 284 transitions. [2023-12-21 10:13:28,792 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-21 10:13:28,792 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 3 states have internal predecessors, (23), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 29 [2023-12-21 10:13:28,792 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:28,794 INFO L225 Difference]: With dead ends: 205 [2023-12-21 10:13:28,794 INFO L226 Difference]: Without dead ends: 122 [2023-12-21 10:13:28,795 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:13:28,796 INFO L413 NwaCegarLoop]: 63 mSDtfsCounter, 51 mSDsluCounter, 44 mSDsCounter, 0 mSdLazyCounter, 22 mSolverCounterSat, 6 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 51 SdHoareTripleChecker+Valid, 107 SdHoareTripleChecker+Invalid, 28 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 6 IncrementalHoareTripleChecker+Valid, 22 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:28,797 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [51 Valid, 107 Invalid, 28 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [6 Valid, 22 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:13:28,798 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 122 states. [2023-12-21 10:13:28,815 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 122 to 120. [2023-12-21 10:13:28,815 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 120 states, 88 states have (on average 1.3977272727272727) internal successors, (123), 96 states have internal predecessors, (123), 17 states have call successors, (17), 14 states have call predecessors, (17), 14 states have return successors, (21), 17 states have call predecessors, (21), 17 states have call successors, (21) [2023-12-21 10:13:28,817 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 120 states to 120 states and 161 transitions. [2023-12-21 10:13:28,817 INFO L78 Accepts]: Start accepts. Automaton has 120 states and 161 transitions. Word has length 29 [2023-12-21 10:13:28,817 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:28,817 INFO L495 AbstractCegarLoop]: Abstraction has 120 states and 161 transitions. [2023-12-21 10:13:28,817 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 3 states have internal predecessors, (23), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:28,817 INFO L276 IsEmpty]: Start isEmpty. Operand 120 states and 161 transitions. [2023-12-21 10:13:28,818 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-12-21 10:13:28,818 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:28,818 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:28,818 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-12-21 10:13:28,819 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:28,819 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:28,819 INFO L85 PathProgramCache]: Analyzing trace with hash -1078250247, now seen corresponding path program 1 times [2023-12-21 10:13:28,819 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:28,819 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [566316417] [2023-12-21 10:13:28,819 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:28,820 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:28,829 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,891 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-12-21 10:13:28,892 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,893 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-12-21 10:13:28,895 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:28,906 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-12-21 10:13:28,906 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:28,907 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [566316417] [2023-12-21 10:13:28,907 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [566316417] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:28,907 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:28,907 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-12-21 10:13:28,907 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [6410316] [2023-12-21 10:13:28,907 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:28,908 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-12-21 10:13:28,908 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:28,909 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-12-21 10:13:28,909 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-12-21 10:13:28,909 INFO L87 Difference]: Start difference. First operand 120 states and 161 transitions. Second operand has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:29,022 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:29,023 INFO L93 Difference]: Finished difference Result 239 states and 323 transitions. [2023-12-21 10:13:29,023 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-12-21 10:13:29,023 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 29 [2023-12-21 10:13:29,024 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:29,026 INFO L225 Difference]: With dead ends: 239 [2023-12-21 10:13:29,026 INFO L226 Difference]: Without dead ends: 121 [2023-12-21 10:13:29,032 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2023-12-21 10:13:29,033 INFO L413 NwaCegarLoop]: 57 mSDtfsCounter, 50 mSDsluCounter, 192 mSDsCounter, 0 mSdLazyCounter, 99 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 249 SdHoareTripleChecker+Invalid, 104 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 99 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:29,034 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [52 Valid, 249 Invalid, 104 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 99 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:13:29,034 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2023-12-21 10:13:29,051 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 118. [2023-12-21 10:13:29,052 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 118 states, 86 states have (on average 1.3604651162790697) internal successors, (117), 94 states have internal predecessors, (117), 17 states have call successors, (17), 14 states have call predecessors, (17), 14 states have return successors, (21), 17 states have call predecessors, (21), 17 states have call successors, (21) [2023-12-21 10:13:29,053 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 118 states to 118 states and 155 transitions. [2023-12-21 10:13:29,053 INFO L78 Accepts]: Start accepts. Automaton has 118 states and 155 transitions. Word has length 29 [2023-12-21 10:13:29,053 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:29,054 INFO L495 AbstractCegarLoop]: Abstraction has 118 states and 155 transitions. [2023-12-21 10:13:29,054 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (3), 1 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:29,054 INFO L276 IsEmpty]: Start isEmpty. Operand 118 states and 155 transitions. [2023-12-21 10:13:29,055 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2023-12-21 10:13:29,055 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:29,055 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:29,055 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-12-21 10:13:29,056 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:29,056 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:29,056 INFO L85 PathProgramCache]: Analyzing trace with hash 465688280, now seen corresponding path program 1 times [2023-12-21 10:13:29,056 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:29,057 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [274067413] [2023-12-21 10:13:29,057 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:29,057 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:29,091 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,192 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-21 10:13:29,193 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,195 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2023-12-21 10:13:29,196 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,202 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:29,203 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:29,203 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [274067413] [2023-12-21 10:13:29,203 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [274067413] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:29,203 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:29,203 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-12-21 10:13:29,203 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1786309977] [2023-12-21 10:13:29,204 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:29,204 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-12-21 10:13:29,204 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:29,205 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-12-21 10:13:29,205 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-21 10:13:29,205 INFO L87 Difference]: Start difference. First operand 118 states and 155 transitions. Second operand has 4 states, 4 states have (on average 6.75) internal successors, (27), 4 states have internal predecessors, (27), 2 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:29,255 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:29,255 INFO L93 Difference]: Finished difference Result 236 states and 314 transitions. [2023-12-21 10:13:29,256 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-12-21 10:13:29,256 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 6.75) internal successors, (27), 4 states have internal predecessors, (27), 2 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 33 [2023-12-21 10:13:29,256 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:29,258 INFO L225 Difference]: With dead ends: 236 [2023-12-21 10:13:29,258 INFO L226 Difference]: Without dead ends: 120 [2023-12-21 10:13:29,258 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 8 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-21 10:13:29,265 INFO L413 NwaCegarLoop]: 58 mSDtfsCounter, 1 mSDsluCounter, 109 mSDsCounter, 0 mSdLazyCounter, 40 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 2 SdHoareTripleChecker+Valid, 167 SdHoareTripleChecker+Invalid, 41 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 40 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:29,267 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [2 Valid, 167 Invalid, 41 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 40 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:13:29,269 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 120 states. [2023-12-21 10:13:29,290 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 120 to 120. [2023-12-21 10:13:29,292 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 120 states, 88 states have (on average 1.3522727272727273) internal successors, (119), 96 states have internal predecessors, (119), 17 states have call successors, (17), 14 states have call predecessors, (17), 14 states have return successors, (21), 17 states have call predecessors, (21), 17 states have call successors, (21) [2023-12-21 10:13:29,294 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 120 states to 120 states and 157 transitions. [2023-12-21 10:13:29,295 INFO L78 Accepts]: Start accepts. Automaton has 120 states and 157 transitions. Word has length 33 [2023-12-21 10:13:29,295 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:29,295 INFO L495 AbstractCegarLoop]: Abstraction has 120 states and 157 transitions. [2023-12-21 10:13:29,295 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 6.75) internal successors, (27), 4 states have internal predecessors, (27), 2 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:29,295 INFO L276 IsEmpty]: Start isEmpty. Operand 120 states and 157 transitions. [2023-12-21 10:13:29,300 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2023-12-21 10:13:29,300 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:29,301 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:29,301 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-12-21 10:13:29,302 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:29,302 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:29,302 INFO L85 PathProgramCache]: Analyzing trace with hash -121117734, now seen corresponding path program 1 times [2023-12-21 10:13:29,302 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:29,302 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1689839421] [2023-12-21 10:13:29,303 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:29,303 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:29,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,382 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-21 10:13:29,383 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,386 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2023-12-21 10:13:29,387 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,395 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:29,395 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:29,396 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1689839421] [2023-12-21 10:13:29,396 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1689839421] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:29,396 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:29,396 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-12-21 10:13:29,396 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [410578484] [2023-12-21 10:13:29,396 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:29,397 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-12-21 10:13:29,397 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:29,397 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-12-21 10:13:29,397 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-21 10:13:29,398 INFO L87 Difference]: Start difference. First operand 120 states and 157 transitions. Second operand has 4 states, 4 states have (on average 6.75) internal successors, (27), 4 states have internal predecessors, (27), 2 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:29,458 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:29,458 INFO L93 Difference]: Finished difference Result 251 states and 337 transitions. [2023-12-21 10:13:29,459 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2023-12-21 10:13:29,459 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 6.75) internal successors, (27), 4 states have internal predecessors, (27), 2 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 33 [2023-12-21 10:13:29,460 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:29,462 INFO L225 Difference]: With dead ends: 251 [2023-12-21 10:13:29,462 INFO L226 Difference]: Without dead ends: 133 [2023-12-21 10:13:29,463 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-12-21 10:13:29,464 INFO L413 NwaCegarLoop]: 65 mSDtfsCounter, 12 mSDsluCounter, 119 mSDsCounter, 0 mSdLazyCounter, 46 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 184 SdHoareTripleChecker+Invalid, 46 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 46 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:29,464 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 184 Invalid, 46 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 46 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:13:29,465 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 133 states. [2023-12-21 10:13:29,474 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 133 to 122. [2023-12-21 10:13:29,475 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 122 states, 90 states have (on average 1.3444444444444446) internal successors, (121), 98 states have internal predecessors, (121), 17 states have call successors, (17), 14 states have call predecessors, (17), 14 states have return successors, (21), 17 states have call predecessors, (21), 17 states have call successors, (21) [2023-12-21 10:13:29,476 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 122 states to 122 states and 159 transitions. [2023-12-21 10:13:29,476 INFO L78 Accepts]: Start accepts. Automaton has 122 states and 159 transitions. Word has length 33 [2023-12-21 10:13:29,476 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:29,476 INFO L495 AbstractCegarLoop]: Abstraction has 122 states and 159 transitions. [2023-12-21 10:13:29,476 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 6.75) internal successors, (27), 4 states have internal predecessors, (27), 2 states have call successors, (3), 1 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:29,476 INFO L276 IsEmpty]: Start isEmpty. Operand 122 states and 159 transitions. [2023-12-21 10:13:29,477 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2023-12-21 10:13:29,478 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:29,478 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:29,478 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-12-21 10:13:29,478 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:29,478 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:29,478 INFO L85 PathProgramCache]: Analyzing trace with hash -1400981412, now seen corresponding path program 1 times [2023-12-21 10:13:29,479 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:29,479 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [352473213] [2023-12-21 10:13:29,479 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:29,479 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:29,497 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,542 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-21 10:13:29,544 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,546 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2023-12-21 10:13:29,547 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,550 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:29,551 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:29,551 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [352473213] [2023-12-21 10:13:29,551 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [352473213] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:29,551 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:29,551 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-21 10:13:29,551 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1722700546] [2023-12-21 10:13:29,552 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:29,553 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-21 10:13:29,553 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:29,553 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-21 10:13:29,554 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:13:29,555 INFO L87 Difference]: Start difference. First operand 122 states and 159 transitions. Second operand has 3 states, 3 states have (on average 9.0) internal successors, (27), 3 states have internal predecessors, (27), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:29,605 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:29,605 INFO L93 Difference]: Finished difference Result 350 states and 475 transitions. [2023-12-21 10:13:29,609 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-21 10:13:29,609 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.0) internal successors, (27), 3 states have internal predecessors, (27), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 33 [2023-12-21 10:13:29,610 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:29,614 INFO L225 Difference]: With dead ends: 350 [2023-12-21 10:13:29,614 INFO L226 Difference]: Without dead ends: 230 [2023-12-21 10:13:29,615 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:13:29,616 INFO L413 NwaCegarLoop]: 68 mSDtfsCounter, 45 mSDsluCounter, 52 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 45 SdHoareTripleChecker+Valid, 120 SdHoareTripleChecker+Invalid, 33 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:29,617 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [45 Valid, 120 Invalid, 33 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:13:29,617 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 230 states. [2023-12-21 10:13:29,639 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 230 to 228. [2023-12-21 10:13:29,640 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 228 states, 168 states have (on average 1.3333333333333333) internal successors, (224), 179 states have internal predecessors, (224), 34 states have call successors, (34), 28 states have call predecessors, (34), 25 states have return successors, (44), 31 states have call predecessors, (44), 34 states have call successors, (44) [2023-12-21 10:13:29,641 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 228 states to 228 states and 302 transitions. [2023-12-21 10:13:29,641 INFO L78 Accepts]: Start accepts. Automaton has 228 states and 302 transitions. Word has length 33 [2023-12-21 10:13:29,642 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:29,642 INFO L495 AbstractCegarLoop]: Abstraction has 228 states and 302 transitions. [2023-12-21 10:13:29,642 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.0) internal successors, (27), 3 states have internal predecessors, (27), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:29,642 INFO L276 IsEmpty]: Start isEmpty. Operand 228 states and 302 transitions. [2023-12-21 10:13:29,645 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2023-12-21 10:13:29,645 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:29,645 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:29,645 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-12-21 10:13:29,645 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:29,646 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:29,646 INFO L85 PathProgramCache]: Analyzing trace with hash -1367248330, now seen corresponding path program 1 times [2023-12-21 10:13:29,646 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:29,646 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1885062035] [2023-12-21 10:13:29,646 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:29,646 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:29,662 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,771 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-21 10:13:29,772 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,783 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-12-21 10:13:29,784 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,785 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2023-12-21 10:13:29,787 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:29,790 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:29,790 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:29,790 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1885062035] [2023-12-21 10:13:29,790 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1885062035] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:29,790 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:29,791 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-12-21 10:13:29,791 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [820385821] [2023-12-21 10:13:29,791 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:29,792 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-12-21 10:13:29,792 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:29,793 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-12-21 10:13:29,793 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2023-12-21 10:13:29,794 INFO L87 Difference]: Start difference. First operand 228 states and 302 transitions. Second operand has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-12-21 10:13:30,015 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:30,016 INFO L93 Difference]: Finished difference Result 586 states and 802 transitions. [2023-12-21 10:13:30,016 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2023-12-21 10:13:30,016 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 37 [2023-12-21 10:13:30,017 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:30,019 INFO L225 Difference]: With dead ends: 586 [2023-12-21 10:13:30,020 INFO L226 Difference]: Without dead ends: 360 [2023-12-21 10:13:30,020 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=48, Invalid=84, Unknown=0, NotChecked=0, Total=132 [2023-12-21 10:13:30,022 INFO L413 NwaCegarLoop]: 78 mSDtfsCounter, 141 mSDsluCounter, 163 mSDsCounter, 0 mSdLazyCounter, 166 mSolverCounterSat, 32 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 147 SdHoareTripleChecker+Valid, 241 SdHoareTripleChecker+Invalid, 198 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 32 IncrementalHoareTripleChecker+Valid, 166 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:30,023 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [147 Valid, 241 Invalid, 198 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [32 Valid, 166 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:13:30,024 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 360 states. [2023-12-21 10:13:30,054 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 360 to 351. [2023-12-21 10:13:30,055 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 351 states, 261 states have (on average 1.3026819923371646) internal successors, (340), 280 states have internal predecessors, (340), 49 states have call successors, (49), 39 states have call predecessors, (49), 40 states have return successors, (75), 46 states have call predecessors, (75), 49 states have call successors, (75) [2023-12-21 10:13:30,058 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 351 states to 351 states and 464 transitions. [2023-12-21 10:13:30,058 INFO L78 Accepts]: Start accepts. Automaton has 351 states and 464 transitions. Word has length 37 [2023-12-21 10:13:30,058 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:30,058 INFO L495 AbstractCegarLoop]: Abstraction has 351 states and 464 transitions. [2023-12-21 10:13:30,059 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2023-12-21 10:13:30,059 INFO L276 IsEmpty]: Start isEmpty. Operand 351 states and 464 transitions. [2023-12-21 10:13:30,061 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 64 [2023-12-21 10:13:30,061 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:30,061 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:30,061 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-12-21 10:13:30,061 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:30,062 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:30,062 INFO L85 PathProgramCache]: Analyzing trace with hash 2108259256, now seen corresponding path program 1 times [2023-12-21 10:13:30,062 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:30,062 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1627002782] [2023-12-21 10:13:30,062 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:30,062 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:30,083 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:30,197 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-21 10:13:30,198 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:30,215 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-21 10:13:30,222 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:30,237 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-21 10:13:30,238 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:30,240 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2023-12-21 10:13:30,241 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:30,252 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 50 [2023-12-21 10:13:30,253 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:30,255 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 56 [2023-12-21 10:13:30,256 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:30,257 INFO L134 CoverageAnalysis]: Checked inductivity of 23 backedges. 14 proven. 5 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-12-21 10:13:30,257 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:30,257 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1627002782] [2023-12-21 10:13:30,258 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1627002782] provided 0 perfect and 1 imperfect interpolant sequences [2023-12-21 10:13:30,258 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [47690706] [2023-12-21 10:13:30,258 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:30,258 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-12-21 10:13:30,258 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-21 10:13:30,261 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-12-21 10:13:30,267 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-12-21 10:13:30,348 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:30,351 INFO L262 TraceCheckSpWp]: Trace formula consists of 260 conjuncts, 8 conjunts are in the unsatisfiable core [2023-12-21 10:13:30,357 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-12-21 10:13:30,488 INFO L134 CoverageAnalysis]: Checked inductivity of 23 backedges. 18 proven. 5 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-12-21 10:13:30,489 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-12-21 10:13:30,653 INFO L134 CoverageAnalysis]: Checked inductivity of 23 backedges. 15 proven. 4 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2023-12-21 10:13:30,653 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [47690706] provided 0 perfect and 2 imperfect interpolant sequences [2023-12-21 10:13:30,653 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-12-21 10:13:30,653 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 6, 6] total 14 [2023-12-21 10:13:30,654 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [748112815] [2023-12-21 10:13:30,654 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-12-21 10:13:30,655 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2023-12-21 10:13:30,655 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:30,656 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2023-12-21 10:13:30,656 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=33, Invalid=149, Unknown=0, NotChecked=0, Total=182 [2023-12-21 10:13:30,656 INFO L87 Difference]: Start difference. First operand 351 states and 464 transitions. Second operand has 14 states, 11 states have (on average 7.0) internal successors, (77), 10 states have internal predecessors, (77), 5 states have call successors, (16), 6 states have call predecessors, (16), 6 states have return successors, (13), 7 states have call predecessors, (13), 5 states have call successors, (13) [2023-12-21 10:13:31,174 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:31,174 INFO L93 Difference]: Finished difference Result 728 states and 993 transitions. [2023-12-21 10:13:31,175 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 22 states. [2023-12-21 10:13:31,175 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 11 states have (on average 7.0) internal successors, (77), 10 states have internal predecessors, (77), 5 states have call successors, (16), 6 states have call predecessors, (16), 6 states have return successors, (13), 7 states have call predecessors, (13), 5 states have call successors, (13) Word has length 63 [2023-12-21 10:13:31,176 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:31,177 INFO L225 Difference]: With dead ends: 728 [2023-12-21 10:13:31,177 INFO L226 Difference]: Without dead ends: 0 [2023-12-21 10:13:31,180 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 169 GetRequests, 136 SyntacticMatches, 4 SemanticMatches, 29 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 183 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=187, Invalid=743, Unknown=0, NotChecked=0, Total=930 [2023-12-21 10:13:31,183 INFO L413 NwaCegarLoop]: 95 mSDtfsCounter, 188 mSDsluCounter, 462 mSDsCounter, 0 mSdLazyCounter, 540 mSolverCounterSat, 67 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 193 SdHoareTripleChecker+Valid, 557 SdHoareTripleChecker+Invalid, 607 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 67 IncrementalHoareTripleChecker+Valid, 540 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:31,184 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [193 Valid, 557 Invalid, 607 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [67 Valid, 540 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2023-12-21 10:13:31,185 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-12-21 10:13:31,185 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-12-21 10:13:31,185 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:13:31,185 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-12-21 10:13:31,186 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 63 [2023-12-21 10:13:31,186 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:31,186 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-12-21 10:13:31,186 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 11 states have (on average 7.0) internal successors, (77), 10 states have internal predecessors, (77), 5 states have call successors, (16), 6 states have call predecessors, (16), 6 states have return successors, (13), 7 states have call predecessors, (13), 5 states have call successors, (13) [2023-12-21 10:13:31,187 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-12-21 10:13:31,187 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-12-21 10:13:31,191 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-12-21 10:13:31,201 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2023-12-21 10:13:31,397 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-12-21 10:13:31,399 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-12-21 10:13:32,579 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 768 774) no Hoare annotation was computed. [2023-12-21 10:13:32,579 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 768 774) the Hoare annotation is: true [2023-12-21 10:13:32,579 INFO L899 garLoopResultBuilder]: For program point L669-1(lines 665 676) no Hoare annotation was computed. [2023-12-21 10:13:32,579 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 665 676) the Hoare annotation is: true [2023-12-21 10:13:32,580 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 665 676) no Hoare annotation was computed. [2023-12-21 10:13:32,580 INFO L895 garLoopResultBuilder]: At program point L795(line 795) the Hoare annotation is: (let ((.cse2 (< |old(~pumpRunning~0)| 1)) (.cse3 (= 0 ~systemActive~0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse1 (<= 1 ~switchedOnBeforeTS~0))) (and (or (< 1 |old(~waterLevel~0)|) (and .cse0 (<= ~waterLevel~0 1) .cse1) (< |old(~switchedOnBeforeTS~0)| 1) .cse2 .cse3) (or (not (= |old(~pumpRunning~0)| 0)) (< 2 |old(~waterLevel~0)|)) (or (not (= |old(~waterLevel~0)| 2)) .cse2 .cse3 (and .cse0 (<= ~waterLevel~0 2) .cse1)))) [2023-12-21 10:13:32,580 INFO L899 garLoopResultBuilder]: For program point L795-1(lines 776 800) no Hoare annotation was computed. [2023-12-21 10:13:32,580 INFO L899 garLoopResultBuilder]: For program point L882(lines 882 886) no Hoare annotation was computed. [2023-12-21 10:13:32,580 INFO L899 garLoopResultBuilder]: For program point L882-2(lines 882 886) no Hoare annotation was computed. [2023-12-21 10:13:32,580 INFO L899 garLoopResultBuilder]: For program point L940(lines 940 946) no Hoare annotation was computed. [2023-12-21 10:13:32,580 INFO L899 garLoopResultBuilder]: For program point isHighWaterSensorDry_returnLabel#1(lines 718 731) no Hoare annotation was computed. [2023-12-21 10:13:32,580 INFO L899 garLoopResultBuilder]: For program point L722(lines 722 728) no Hoare annotation was computed. [2023-12-21 10:13:32,581 INFO L899 garLoopResultBuilder]: For program point L755-1(lines 755 761) no Hoare annotation was computed. [2023-12-21 10:13:32,581 INFO L899 garLoopResultBuilder]: For program point L784(lines 784 792) no Hoare annotation was computed. [2023-12-21 10:13:32,581 INFO L899 garLoopResultBuilder]: For program point L780(lines 780 797) no Hoare annotation was computed. [2023-12-21 10:13:32,581 INFO L895 garLoopResultBuilder]: At program point L937(line 937) the Hoare annotation is: (let ((.cse1 (<= ~waterLevel~0 1)) (.cse3 (< |old(~pumpRunning~0)| 1)) (.cse4 (= 0 ~systemActive~0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse2 (<= 1 ~switchedOnBeforeTS~0))) (and (or (< 1 |old(~waterLevel~0)|) (and .cse0 .cse1 .cse2) (< |old(~switchedOnBeforeTS~0)| 1) .cse3 .cse4) (or (and (= ~pumpRunning~0 0) .cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0)) (< 2 |old(~waterLevel~0)|)) (or (not (= |old(~waterLevel~0)| 2)) .cse3 .cse4 (and .cse0 (<= ~waterLevel~0 2) .cse2)))) [2023-12-21 10:13:32,581 INFO L899 garLoopResultBuilder]: For program point L937-1(line 937) no Hoare annotation was computed. [2023-12-21 10:13:32,581 INFO L899 garLoopResultBuilder]: For program point L54(line 54) no Hoare annotation was computed. [2023-12-21 10:13:32,581 INFO L899 garLoopResultBuilder]: For program point L748(lines 748 754) no Hoare annotation was computed. [2023-12-21 10:13:32,581 INFO L899 garLoopResultBuilder]: For program point L748-2(lines 744 766) no Hoare annotation was computed. [2023-12-21 10:13:32,582 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 741 767) the Hoare annotation is: (let ((.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse5 (< 2 |old(~waterLevel~0)|)) (.cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse3 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse0 (< |old(~pumpRunning~0)| 1)) (.cse1 (= 0 ~systemActive~0))) (and (or (< |old(~switchedOnBeforeTS~0)| 1) .cse0 .cse1 (and .cse2 .cse3 .cse4) .cse5) (or (and (= ~pumpRunning~0 0) .cse3 .cse4) (not (= |old(~pumpRunning~0)| 0)) .cse5) (or (and .cse2 (= 2 ~waterLevel~0) .cse3) (not (= |old(~waterLevel~0)| 2)) .cse0 .cse1))) [2023-12-21 10:13:32,582 INFO L899 garLoopResultBuilder]: For program point L645(lines 645 649) no Hoare annotation was computed. [2023-12-21 10:13:32,582 INFO L899 garLoopResultBuilder]: For program point L645-2(lines 641 652) no Hoare annotation was computed. [2023-12-21 10:13:32,582 INFO L895 garLoopResultBuilder]: At program point L922(line 922) the Hoare annotation is: (let ((.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse5 (< 2 |old(~waterLevel~0)|)) (.cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse3 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse0 (< |old(~pumpRunning~0)| 1)) (.cse1 (= 0 ~systemActive~0))) (and (or (< |old(~switchedOnBeforeTS~0)| 1) .cse0 .cse1 (and .cse2 .cse3 .cse4) .cse5) (or (and (= ~pumpRunning~0 0) .cse3 .cse4) (not (= |old(~pumpRunning~0)| 0)) .cse5) (or (and .cse2 (= 2 ~waterLevel~0) .cse3) (not (= |old(~waterLevel~0)| 2)) .cse0 .cse1))) [2023-12-21 10:13:32,582 INFO L899 garLoopResultBuilder]: For program point L922-1(line 922) no Hoare annotation was computed. [2023-12-21 10:13:32,582 INFO L895 garLoopResultBuilder]: At program point L790(line 790) the Hoare annotation is: (let ((.cse0 (< |old(~pumpRunning~0)| 1)) (.cse1 (= 0 ~systemActive~0)) (.cse2 (< 2 |old(~waterLevel~0)|))) (and (or (< |old(~switchedOnBeforeTS~0)| 1) .cse0 .cse1 .cse2) (or (not (= |old(~waterLevel~0)| 2)) .cse0 .cse1) (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) (= |timeShift_processEnvironment_~tmp~5#1| 0) (= |old(~waterLevel~0)| ~waterLevel~0) (not .cse1)) .cse2))) [2023-12-21 10:13:32,582 INFO L899 garLoopResultBuilder]: For program point L939(lines 939 949) no Hoare annotation was computed. [2023-12-21 10:13:32,583 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 741 767) no Hoare annotation was computed. [2023-12-21 10:13:32,583 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 54) no Hoare annotation was computed. [2023-12-21 10:13:32,583 INFO L899 garLoopResultBuilder]: For program point L935(lines 935 952) no Hoare annotation was computed. [2023-12-21 10:13:32,583 INFO L899 garLoopResultBuilder]: For program point L935-1(lines 927 955) no Hoare annotation was computed. [2023-12-21 10:13:32,583 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 61 90) no Hoare annotation was computed. [2023-12-21 10:13:32,583 INFO L899 garLoopResultBuilder]: For program point L86(lines 61 90) no Hoare annotation was computed. [2023-12-21 10:13:32,583 INFO L899 garLoopResultBuilder]: For program point L82(line 82) no Hoare annotation was computed. [2023-12-21 10:13:32,583 INFO L899 garLoopResultBuilder]: For program point L75(lines 75 79) no Hoare annotation was computed. [2023-12-21 10:13:32,583 INFO L902 garLoopResultBuilder]: At program point L75-1(lines 75 79) the Hoare annotation is: true [2023-12-21 10:13:32,583 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 61 90) the Hoare annotation is: true [2023-12-21 10:13:32,584 INFO L902 garLoopResultBuilder]: At program point L71-2(lines 71 85) the Hoare annotation is: true [2023-12-21 10:13:32,584 INFO L902 garLoopResultBuilder]: At program point L67(line 67) the Hoare annotation is: true [2023-12-21 10:13:32,584 INFO L899 garLoopResultBuilder]: For program point L67-1(line 67) no Hoare annotation was computed. [2023-12-21 10:13:32,584 INFO L899 garLoopResultBuilder]: For program point L151(lines 151 158) no Hoare annotation was computed. [2023-12-21 10:13:32,584 INFO L899 garLoopResultBuilder]: For program point L597(lines 597 603) no Hoare annotation was computed. [2023-12-21 10:13:32,584 INFO L899 garLoopResultBuilder]: For program point L151-2(lines 151 158) no Hoare annotation was computed. [2023-12-21 10:13:32,584 INFO L899 garLoopResultBuilder]: For program point L597-1(lines 597 603) no Hoare annotation was computed. [2023-12-21 10:13:32,584 INFO L895 garLoopResultBuilder]: At program point L622(lines 577 624) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse3 (not (= 0 ~systemActive~0))) (.cse1 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= ~waterLevel~0 1) .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse3) (and .cse0 (= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and (= ~pumpRunning~0 0) .cse1 .cse2 (<= ~waterLevel~0 2)))) [2023-12-21 10:13:32,584 INFO L895 garLoopResultBuilder]: At program point L589(line 589) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse3 (not (= 0 ~systemActive~0))) (.cse1 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= ~waterLevel~0 1) .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse3) (and .cse0 (= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and (= ~pumpRunning~0 0) .cse1 .cse2 (<= ~waterLevel~0 2)))) [2023-12-21 10:13:32,585 INFO L899 garLoopResultBuilder]: For program point L578(lines 577 624) no Hoare annotation was computed. [2023-12-21 10:13:32,585 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-12-21 10:13:32,585 INFO L899 garLoopResultBuilder]: For program point L896(lines 896 902) no Hoare annotation was computed. [2023-12-21 10:13:32,585 INFO L899 garLoopResultBuilder]: For program point L607(lines 607 620) no Hoare annotation was computed. [2023-12-21 10:13:32,585 INFO L899 garLoopResultBuilder]: For program point L896-2(lines 896 902) no Hoare annotation was computed. [2023-12-21 10:13:32,585 INFO L895 garLoopResultBuilder]: At program point L599(line 599) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse3 (not (= 0 ~systemActive~0))) (.cse1 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= ~waterLevel~0 1) .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse3) (and .cse0 (= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and (= ~pumpRunning~0 0) .cse1 .cse2 (<= ~waterLevel~0 2)))) [2023-12-21 10:13:32,585 INFO L899 garLoopResultBuilder]: For program point L628(lines 567 632) no Hoare annotation was computed. [2023-12-21 10:13:32,585 INFO L899 garLoopResultBuilder]: For program point L587(lines 587 593) no Hoare annotation was computed. [2023-12-21 10:13:32,585 INFO L899 garLoopResultBuilder]: For program point L587-1(lines 587 593) no Hoare annotation was computed. [2023-12-21 10:13:32,585 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-12-21 10:13:32,585 INFO L895 garLoopResultBuilder]: At program point L625(lines 576 626) the Hoare annotation is: false [2023-12-21 10:13:32,586 INFO L899 garLoopResultBuilder]: For program point L613(lines 613 619) no Hoare annotation was computed. [2023-12-21 10:13:32,586 INFO L895 garLoopResultBuilder]: At program point L613-2(lines 607 620) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse3 (not (= 0 ~systemActive~0))) (.cse1 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 (<= ~waterLevel~0 1) .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse3) (and .cse0 (= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and (= ~pumpRunning~0 0) .cse1 .cse2 (<= ~waterLevel~0 2)))) [2023-12-21 10:13:32,586 INFO L899 garLoopResultBuilder]: For program point L657-1(lines 653 664) no Hoare annotation was computed. [2023-12-21 10:13:32,586 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 653 664) no Hoare annotation was computed. [2023-12-21 10:13:32,586 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 653 664) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse3 (< ~pumpRunning~0 1)) (.cse1 (= 2 ~waterLevel~0)) (.cse2 (not (= |old(~waterLevel~0)| 2))) (.cse5 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2) (or .cse3 (< ~switchedOnBeforeTS~0 1) .cse4 .cse5 (< 2 |old(~waterLevel~0)|)) (or (< 1 |old(~waterLevel~0)|) .cse0 .cse4) (or .cse3 .cse1 .cse2 .cse5))) [2023-12-21 10:13:32,586 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 828 836) no Hoare annotation was computed. [2023-12-21 10:13:32,586 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 828 836) the Hoare annotation is: true [2023-12-21 10:13:32,588 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:32,590 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2023-12-21 10:13:32,605 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.12 10:13:32 BoogieIcfgContainer [2023-12-21 10:13:32,605 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-12-21 10:13:32,606 INFO L158 Benchmark]: Toolchain (without parser) took 5740.48ms. Allocated memory was 174.1MB in the beginning and 257.9MB in the end (delta: 83.9MB). Free memory was 123.8MB in the beginning and 177.3MB in the end (delta: -53.4MB). Peak memory consumption was 129.5MB. Max. memory is 8.0GB. [2023-12-21 10:13:32,606 INFO L158 Benchmark]: CDTParser took 0.63ms. Allocated memory is still 174.1MB. Free memory was 128.9MB in the beginning and 128.7MB in the end (delta: 167.8kB). There was no memory consumed. Max. memory is 8.0GB. [2023-12-21 10:13:32,606 INFO L158 Benchmark]: CACSL2BoogieTranslator took 420.59ms. Allocated memory is still 174.1MB. Free memory was 123.5MB in the beginning and 103.9MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 8.0GB. [2023-12-21 10:13:32,607 INFO L158 Benchmark]: Boogie Procedure Inliner took 62.80ms. Allocated memory is still 174.1MB. Free memory was 103.9MB in the beginning and 101.8MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. [2023-12-21 10:13:32,607 INFO L158 Benchmark]: Boogie Preprocessor took 41.09ms. Allocated memory is still 174.1MB. Free memory was 101.8MB in the beginning and 99.7MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. [2023-12-21 10:13:32,608 INFO L158 Benchmark]: RCFGBuilder took 434.68ms. Allocated memory was 174.1MB in the beginning and 257.9MB in the end (delta: 83.9MB). Free memory was 99.7MB in the beginning and 221.3MB in the end (delta: -121.6MB). Peak memory consumption was 20.5MB. Max. memory is 8.0GB. [2023-12-21 10:13:32,608 INFO L158 Benchmark]: TraceAbstraction took 4776.50ms. Allocated memory is still 257.9MB. Free memory was 220.8MB in the beginning and 177.3MB in the end (delta: 43.5MB). Peak memory consumption was 141.6MB. Max. memory is 8.0GB. [2023-12-21 10:13:32,610 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.63ms. Allocated memory is still 174.1MB. Free memory was 128.9MB in the beginning and 128.7MB in the end (delta: 167.8kB). There was no memory consumed. Max. memory is 8.0GB. * CACSL2BoogieTranslator took 420.59ms. Allocated memory is still 174.1MB. Free memory was 123.5MB in the beginning and 103.9MB in the end (delta: 19.6MB). Peak memory consumption was 18.9MB. Max. memory is 8.0GB. * Boogie Procedure Inliner took 62.80ms. Allocated memory is still 174.1MB. Free memory was 103.9MB in the beginning and 101.8MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. * Boogie Preprocessor took 41.09ms. Allocated memory is still 174.1MB. Free memory was 101.8MB in the beginning and 99.7MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. * RCFGBuilder took 434.68ms. Allocated memory was 174.1MB in the beginning and 257.9MB in the end (delta: 83.9MB). Free memory was 99.7MB in the beginning and 221.3MB in the end (delta: -121.6MB). Peak memory consumption was 20.5MB. Max. memory is 8.0GB. * TraceAbstraction took 4776.50ms. Allocated memory is still 257.9MB. Free memory was 220.8MB in the beginning and 177.3MB in the end (delta: 43.5MB). Peak memory consumption was 141.6MB. Max. memory is 8.0GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [49] - GenericResultAtLocation [Line: 58]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [58] - GenericResultAtLocation [Line: 164]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [164] - GenericResultAtLocation [Line: 530]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [530] - GenericResultAtLocation [Line: 565]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [565] - GenericResultAtLocation [Line: 633]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [633] - GenericResultAtLocation [Line: 732]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [732] - GenericResultAtLocation [Line: 907]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [907] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 64 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 4.7s, OverallIterations: 10, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 1.2s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 599 SdHoareTripleChecker+Valid, 0.7s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 580 mSDsluCounter, 1972 SdHoareTripleChecker+Invalid, 0.6s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1293 mSDsCounter, 122 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1029 IncrementalHoareTripleChecker+Invalid, 1151 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 122 mSolverCounterUnsat, 679 mSDtfsCounter, 1029 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 252 GetRequests, 191 SyntacticMatches, 4 SemanticMatches, 57 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 198 ImplicationChecksByTransitivity, 0.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=351occurred in iteration=9, InterpolantAutomatonStates: 63, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 10 MinimizatonAttempts, 44 StatesRemovedByMinimization, 6 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 18 LocationsWithAnnotation, 473 PreInvPairs, 568 NumberOfFragments, 555 HoareAnnotationTreeSize, 473 FormulaSimplifications, 777 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 18 FormulaSimplificationsInter, 3337 FormulaSimplificationTreeSizeReductionInter, 1.0s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 1.2s InterpolantComputationTime, 391 NumberOfCodeBlocks, 391 NumberOfCodeBlocksAsserted, 11 NumberOfCheckSat, 442 ConstructedInterpolants, 0 QuantifiedInterpolants, 840 SizeOfPredicates, 3 NumberOfNonLiveVariables, 260 ConjunctsInSsa, 8 ConjunctsInUnsatCore, 12 InterpolantComputations, 9 PerfectInterpolantSequences, 73/87 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 576]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 71]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 577]: Loop Invariant Derived loop invariant: ((((((((1 <= pumpRunning) && (tmp == 1)) && (waterLevel <= 1)) && (splverifierCounter == 0)) && (1 <= switchedOnBeforeTS)) && !((0 == systemActive))) || (((((1 <= pumpRunning) && (2 == waterLevel)) && (tmp == 1)) && (splverifierCounter == 0)) && !((0 == systemActive)))) || ((((pumpRunning == 0) && (tmp == 1)) && (splverifierCounter == 0)) && (waterLevel <= 2))) RESULT: Ultimate proved your program to be correct! [2023-12-21 10:13:32,636 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...