/usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Xmx8000000000 -Xss4m -jar ./plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata ./data -s ../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.use.bitabs.translation false -tc ../../../trunk/examples/toolchains/AutomizerCInline.xml -i ../../../trunk/examples/svcomp/product-lines/minepump_spec5_product52.cil.c -------------------------------------------------------------------------------- This is Ultimate 0.2.4-tmp.fs.bitabs-eval-d9c3e40-m [2023-12-21 10:13:36,531 INFO L188 SettingsManager]: Resetting all preferences to default values... [2023-12-21 10:13:36,596 INFO L114 SettingsManager]: Loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf [2023-12-21 10:13:36,599 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2023-12-21 10:13:36,600 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2023-12-21 10:13:36,623 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2023-12-21 10:13:36,623 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2023-12-21 10:13:36,623 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2023-12-21 10:13:36,624 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2023-12-21 10:13:36,626 INFO L153 SettingsManager]: * Use memory slicer=true [2023-12-21 10:13:36,626 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2023-12-21 10:13:36,627 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2023-12-21 10:13:36,627 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2023-12-21 10:13:36,628 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2023-12-21 10:13:36,628 INFO L153 SettingsManager]: * Use SBE=true [2023-12-21 10:13:36,628 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2023-12-21 10:13:36,629 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2023-12-21 10:13:36,629 INFO L153 SettingsManager]: * sizeof long=4 [2023-12-21 10:13:36,629 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2023-12-21 10:13:36,630 INFO L153 SettingsManager]: * sizeof POINTER=4 [2023-12-21 10:13:36,630 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2023-12-21 10:13:36,630 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2023-12-21 10:13:36,630 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2023-12-21 10:13:36,630 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2023-12-21 10:13:36,631 INFO L153 SettingsManager]: * Allow undefined functions=false [2023-12-21 10:13:36,631 INFO L153 SettingsManager]: * sizeof long double=12 [2023-12-21 10:13:36,631 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2023-12-21 10:13:36,631 INFO L153 SettingsManager]: * Use constant arrays=true [2023-12-21 10:13:36,631 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2023-12-21 10:13:36,631 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2023-12-21 10:13:36,632 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2023-12-21 10:13:36,632 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2023-12-21 10:13:36,632 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-12-21 10:13:36,633 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2023-12-21 10:13:36,633 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2023-12-21 10:13:36,633 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2023-12-21 10:13:36,633 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2023-12-21 10:13:36,633 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2023-12-21 10:13:36,633 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2023-12-21 10:13:36,633 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2023-12-21 10:13:36,633 INFO L153 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2023-12-21 10:13:36,633 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2023-12-21 10:13:36,633 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2023-12-21 10:13:36,634 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Use bitabs translation -> false [2023-12-21 10:13:36,811 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2023-12-21 10:13:36,828 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2023-12-21 10:13:36,829 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2023-12-21 10:13:36,830 INFO L270 PluginConnector]: Initializing CDTParser... [2023-12-21 10:13:36,831 INFO L274 PluginConnector]: CDTParser initialized [2023-12-21 10:13:36,831 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/svcomp/product-lines/minepump_spec5_product52.cil.c [2023-12-21 10:13:37,767 INFO L533 CDTParser]: Created temporary CDT project at NULL [2023-12-21 10:13:37,940 INFO L384 CDTParser]: Found 1 translation units. [2023-12-21 10:13:37,941 INFO L180 CDTParser]: Scanning /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product52.cil.c [2023-12-21 10:13:37,948 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/bee880140/4f8bdaed33494b788ea4e6daec26a3b6/FLAGf818fe14f [2023-12-21 10:13:38,322 INFO L435 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/bee880140/4f8bdaed33494b788ea4e6daec26a3b6 [2023-12-21 10:13:38,324 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2023-12-21 10:13:38,325 INFO L133 ToolchainWalker]: Walking toolchain with 5 elements. [2023-12-21 10:13:38,326 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2023-12-21 10:13:38,326 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2023-12-21 10:13:38,329 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2023-12-21 10:13:38,329 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,330 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@7226e288 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38, skipping insertion in model container [2023-12-21 10:13:38,330 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,368 INFO L177 MainTranslator]: Built tables and reachable declarations [2023-12-21 10:13:38,583 WARN L239 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product52.cil.c[12672,12685] [2023-12-21 10:13:38,622 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-12-21 10:13:38,633 INFO L202 MainTranslator]: Completed pre-run [2023-12-21 10:13:38,640 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [49] [2023-12-21 10:13:38,641 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [415] [2023-12-21 10:13:38,643 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [521] [2023-12-21 10:13:38,644 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [530] [2023-12-21 10:13:38,644 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [581] [2023-12-21 10:13:38,644 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [689] [2023-12-21 10:13:38,644 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [760] [2023-12-21 10:13:38,644 WARN L75 lationResultReporter]: Unsoundness Warning: Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [985] [2023-12-21 10:13:38,675 WARN L239 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/trunk/examples/svcomp/product-lines/minepump_spec5_product52.cil.c[12672,12685] [2023-12-21 10:13:38,687 INFO L209 PostProcessor]: Analyzing one entry point: main [2023-12-21 10:13:38,699 INFO L206 MainTranslator]: Completed translation [2023-12-21 10:13:38,700 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38 WrapperNode [2023-12-21 10:13:38,700 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2023-12-21 10:13:38,701 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2023-12-21 10:13:38,701 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2023-12-21 10:13:38,701 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2023-12-21 10:13:38,705 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,713 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,735 INFO L138 Inliner]: procedures = 59, calls = 104, calls flagged for inlining = 26, calls inlined = 22, statements flattened = 215 [2023-12-21 10:13:38,735 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2023-12-21 10:13:38,736 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2023-12-21 10:13:38,736 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2023-12-21 10:13:38,736 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2023-12-21 10:13:38,743 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,743 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,745 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,762 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2023-12-21 10:13:38,762 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,762 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,765 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,768 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,768 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,769 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,771 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2023-12-21 10:13:38,771 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2023-12-21 10:13:38,771 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2023-12-21 10:13:38,771 INFO L274 PluginConnector]: RCFGBuilder initialized [2023-12-21 10:13:38,776 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (1/1) ... [2023-12-21 10:13:38,779 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2023-12-21 10:13:38,788 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-21 10:13:38,798 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2023-12-21 10:13:38,814 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2023-12-21 10:13:38,823 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2023-12-21 10:13:38,823 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2023-12-21 10:13:38,823 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2023-12-21 10:13:38,823 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2023-12-21 10:13:38,823 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2023-12-21 10:13:38,823 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2023-12-21 10:13:38,824 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2023-12-21 10:13:38,824 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2023-12-21 10:13:38,824 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2023-12-21 10:13:38,824 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2023-12-21 10:13:38,824 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2023-12-21 10:13:38,824 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2023-12-21 10:13:38,824 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2023-12-21 10:13:38,824 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2023-12-21 10:13:38,824 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2023-12-21 10:13:38,824 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2023-12-21 10:13:38,825 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2023-12-21 10:13:38,825 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2023-12-21 10:13:38,825 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2023-12-21 10:13:38,826 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2023-12-21 10:13:38,899 INFO L241 CfgBuilder]: Building ICFG [2023-12-21 10:13:38,901 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2023-12-21 10:13:39,125 INFO L282 CfgBuilder]: Performing block encoding [2023-12-21 10:13:39,165 INFO L304 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2023-12-21 10:13:39,166 INFO L309 CfgBuilder]: Removed 2 assume(true) statements. [2023-12-21 10:13:39,166 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 10:13:39 BoogieIcfgContainer [2023-12-21 10:13:39,166 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2023-12-21 10:13:39,167 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2023-12-21 10:13:39,168 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2023-12-21 10:13:39,170 INFO L274 PluginConnector]: TraceAbstraction initialized [2023-12-21 10:13:39,170 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.12 10:13:38" (1/3) ... [2023-12-21 10:13:39,176 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@47f565b and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.12 10:13:39, skipping insertion in model container [2023-12-21 10:13:39,176 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 10:13:38" (2/3) ... [2023-12-21 10:13:39,177 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@47f565b and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.12 10:13:39, skipping insertion in model container [2023-12-21 10:13:39,177 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 10:13:39" (3/3) ... [2023-12-21 10:13:39,177 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product52.cil.c [2023-12-21 10:13:39,194 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2023-12-21 10:13:39,194 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2023-12-21 10:13:39,231 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2023-12-21 10:13:39,236 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopHeads, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@68e42c07, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2023-12-21 10:13:39,236 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2023-12-21 10:13:39,240 INFO L276 IsEmpty]: Start isEmpty. Operand has 77 states, 53 states have (on average 1.528301886792453) internal successors, (81), 62 states have internal predecessors, (81), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) [2023-12-21 10:13:39,248 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2023-12-21 10:13:39,248 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:39,249 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:39,249 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:39,254 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:39,255 INFO L85 PathProgramCache]: Analyzing trace with hash -345854806, now seen corresponding path program 1 times [2023-12-21 10:13:39,261 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:39,262 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1950901831] [2023-12-21 10:13:39,262 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:39,262 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:39,338 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:39,383 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2023-12-21 10:13:39,386 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:39,389 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-12-21 10:13:39,390 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:39,393 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:39,393 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:39,393 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1950901831] [2023-12-21 10:13:39,393 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1950901831] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:39,394 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:39,394 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2023-12-21 10:13:39,395 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1842443389] [2023-12-21 10:13:39,395 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:39,398 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2023-12-21 10:13:39,398 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:39,424 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2023-12-21 10:13:39,424 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-12-21 10:13:39,426 INFO L87 Difference]: Start difference. First operand has 77 states, 53 states have (on average 1.528301886792453) internal successors, (81), 62 states have internal predecessors, (81), 14 states have call successors, (14), 8 states have call predecessors, (14), 8 states have return successors, (14), 11 states have call predecessors, (14), 14 states have call successors, (14) Second operand has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:39,495 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:39,495 INFO L93 Difference]: Finished difference Result 152 states and 219 transitions. [2023-12-21 10:13:39,496 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2023-12-21 10:13:39,497 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 22 [2023-12-21 10:13:39,497 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:39,504 INFO L225 Difference]: With dead ends: 152 [2023-12-21 10:13:39,504 INFO L226 Difference]: Without dead ends: 72 [2023-12-21 10:13:39,507 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2023-12-21 10:13:39,511 INFO L413 NwaCegarLoop]: 87 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 17 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 87 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 17 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:39,512 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 87 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 17 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:13:39,524 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 72 states. [2023-12-21 10:13:39,543 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 72 to 72. [2023-12-21 10:13:39,544 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 72 states, 50 states have (on average 1.42) internal successors, (71), 58 states have internal predecessors, (71), 14 states have call successors, (14), 8 states have call predecessors, (14), 7 states have return successors, (13), 10 states have call predecessors, (13), 13 states have call successors, (13) [2023-12-21 10:13:39,546 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 72 states to 72 states and 98 transitions. [2023-12-21 10:13:39,547 INFO L78 Accepts]: Start accepts. Automaton has 72 states and 98 transitions. Word has length 22 [2023-12-21 10:13:39,547 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:39,547 INFO L495 AbstractCegarLoop]: Abstraction has 72 states and 98 transitions. [2023-12-21 10:13:39,548 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 7.5) internal successors, (15), 2 states have internal predecessors, (15), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:39,548 INFO L276 IsEmpty]: Start isEmpty. Operand 72 states and 98 transitions. [2023-12-21 10:13:39,551 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2023-12-21 10:13:39,551 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:39,551 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:39,551 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2023-12-21 10:13:39,551 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:39,552 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:39,552 INFO L85 PathProgramCache]: Analyzing trace with hash 693383338, now seen corresponding path program 1 times [2023-12-21 10:13:39,552 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:39,553 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1085692061] [2023-12-21 10:13:39,553 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:39,553 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:39,577 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:39,674 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-12-21 10:13:39,676 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:39,684 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2023-12-21 10:13:39,685 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:39,686 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:39,686 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:39,686 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1085692061] [2023-12-21 10:13:39,686 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1085692061] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:39,686 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:39,687 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2023-12-21 10:13:39,687 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1303515454] [2023-12-21 10:13:39,687 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:39,688 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2023-12-21 10:13:39,688 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:39,696 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2023-12-21 10:13:39,696 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:13:39,696 INFO L87 Difference]: Start difference. First operand 72 states and 98 transitions. Second operand has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:39,726 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:39,726 INFO L93 Difference]: Finished difference Result 114 states and 154 transitions. [2023-12-21 10:13:39,726 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2023-12-21 10:13:39,727 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 23 [2023-12-21 10:13:39,727 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:39,727 INFO L225 Difference]: With dead ends: 114 [2023-12-21 10:13:39,727 INFO L226 Difference]: Without dead ends: 64 [2023-12-21 10:13:39,728 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2023-12-21 10:13:39,729 INFO L413 NwaCegarLoop]: 73 mSDtfsCounter, 14 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 130 SdHoareTripleChecker+Invalid, 24 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:39,729 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 130 Invalid, 24 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:13:39,731 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 64 states. [2023-12-21 10:13:39,738 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 64 to 64. [2023-12-21 10:13:39,738 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 64 states, 45 states have (on average 1.4444444444444444) internal successors, (65), 53 states have internal predecessors, (65), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 8 states have call predecessors, (11), 11 states have call successors, (11) [2023-12-21 10:13:39,739 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 64 states to 64 states and 87 transitions. [2023-12-21 10:13:39,739 INFO L78 Accepts]: Start accepts. Automaton has 64 states and 87 transitions. Word has length 23 [2023-12-21 10:13:39,739 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:39,739 INFO L495 AbstractCegarLoop]: Abstraction has 64 states and 87 transitions. [2023-12-21 10:13:39,739 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 5.333333333333333) internal successors, (16), 3 states have internal predecessors, (16), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:39,739 INFO L276 IsEmpty]: Start isEmpty. Operand 64 states and 87 transitions. [2023-12-21 10:13:39,740 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2023-12-21 10:13:39,740 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:39,740 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:39,740 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2023-12-21 10:13:39,740 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:39,740 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:39,740 INFO L85 PathProgramCache]: Analyzing trace with hash 2054145718, now seen corresponding path program 1 times [2023-12-21 10:13:39,741 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:39,741 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [815526498] [2023-12-21 10:13:39,741 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:39,741 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:39,765 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:39,813 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-21 10:13:39,814 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:39,816 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2023-12-21 10:13:39,817 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:39,818 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:39,818 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:39,818 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [815526498] [2023-12-21 10:13:39,818 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [815526498] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:39,818 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:39,819 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-12-21 10:13:39,819 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [337805134] [2023-12-21 10:13:39,819 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:39,819 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-12-21 10:13:39,819 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:39,819 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-12-21 10:13:39,820 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-21 10:13:39,820 INFO L87 Difference]: Start difference. First operand 64 states and 87 transitions. Second operand has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:39,903 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:39,903 INFO L93 Difference]: Finished difference Result 167 states and 228 transitions. [2023-12-21 10:13:39,906 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-12-21 10:13:39,906 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 26 [2023-12-21 10:13:39,906 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:39,908 INFO L225 Difference]: With dead ends: 167 [2023-12-21 10:13:39,908 INFO L226 Difference]: Without dead ends: 105 [2023-12-21 10:13:39,909 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-12-21 10:13:39,909 INFO L413 NwaCegarLoop]: 79 mSDtfsCounter, 107 mSDsluCounter, 110 mSDsCounter, 0 mSdLazyCounter, 41 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 111 SdHoareTripleChecker+Valid, 189 SdHoareTripleChecker+Invalid, 49 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 41 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:39,910 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [111 Valid, 189 Invalid, 49 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 41 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2023-12-21 10:13:39,910 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 105 states. [2023-12-21 10:13:39,922 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 105 to 102. [2023-12-21 10:13:39,923 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 102 states, 72 states have (on average 1.4444444444444444) internal successors, (104), 83 states have internal predecessors, (104), 17 states have call successors, (17), 12 states have call predecessors, (17), 12 states have return successors, (18), 13 states have call predecessors, (18), 17 states have call successors, (18) [2023-12-21 10:13:39,923 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 102 states to 102 states and 139 transitions. [2023-12-21 10:13:39,924 INFO L78 Accepts]: Start accepts. Automaton has 102 states and 139 transitions. Word has length 26 [2023-12-21 10:13:39,924 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:39,924 INFO L495 AbstractCegarLoop]: Abstraction has 102 states and 139 transitions. [2023-12-21 10:13:39,924 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 5.0) internal successors, (20), 4 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2023-12-21 10:13:39,924 INFO L276 IsEmpty]: Start isEmpty. Operand 102 states and 139 transitions. [2023-12-21 10:13:39,925 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2023-12-21 10:13:39,925 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:39,925 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:39,925 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2023-12-21 10:13:39,925 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:39,926 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:39,926 INFO L85 PathProgramCache]: Analyzing trace with hash -1857500800, now seen corresponding path program 1 times [2023-12-21 10:13:39,926 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:39,926 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2062350589] [2023-12-21 10:13:39,926 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:39,926 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:39,946 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,039 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-12-21 10:13:40,040 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,041 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-12-21 10:13:40,042 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,054 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 1 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2023-12-21 10:13:40,054 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:40,055 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2062350589] [2023-12-21 10:13:40,055 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2062350589] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:40,055 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:40,055 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2023-12-21 10:13:40,055 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1229325822] [2023-12-21 10:13:40,055 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:40,056 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2023-12-21 10:13:40,056 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:40,056 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2023-12-21 10:13:40,057 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2023-12-21 10:13:40,057 INFO L87 Difference]: Start difference. First operand 102 states and 139 transitions. Second operand has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:40,177 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:40,177 INFO L93 Difference]: Finished difference Result 239 states and 332 transitions. [2023-12-21 10:13:40,177 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2023-12-21 10:13:40,177 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 29 [2023-12-21 10:13:40,178 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:40,181 INFO L225 Difference]: With dead ends: 239 [2023-12-21 10:13:40,181 INFO L226 Difference]: Without dead ends: 139 [2023-12-21 10:13:40,188 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2023-12-21 10:13:40,192 INFO L413 NwaCegarLoop]: 74 mSDtfsCounter, 44 mSDsluCounter, 247 mSDsCounter, 0 mSdLazyCounter, 125 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 45 SdHoareTripleChecker+Valid, 321 SdHoareTripleChecker+Invalid, 135 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 125 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:40,192 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [45 Valid, 321 Invalid, 135 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 125 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:13:40,193 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 139 states. [2023-12-21 10:13:40,203 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 139 to 135. [2023-12-21 10:13:40,203 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 135 states, 96 states have (on average 1.3541666666666667) internal successors, (130), 106 states have internal predecessors, (130), 21 states have call successors, (21), 17 states have call predecessors, (21), 17 states have return successors, (27), 20 states have call predecessors, (27), 21 states have call successors, (27) [2023-12-21 10:13:40,208 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 135 states to 135 states and 178 transitions. [2023-12-21 10:13:40,208 INFO L78 Accepts]: Start accepts. Automaton has 135 states and 178 transitions. Word has length 29 [2023-12-21 10:13:40,208 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:40,208 INFO L495 AbstractCegarLoop]: Abstraction has 135 states and 178 transitions. [2023-12-21 10:13:40,208 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2023-12-21 10:13:40,209 INFO L276 IsEmpty]: Start isEmpty. Operand 135 states and 178 transitions. [2023-12-21 10:13:40,213 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2023-12-21 10:13:40,213 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:40,214 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:40,214 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2023-12-21 10:13:40,214 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:40,214 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:40,215 INFO L85 PathProgramCache]: Analyzing trace with hash -1296137227, now seen corresponding path program 1 times [2023-12-21 10:13:40,215 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:40,215 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1284593445] [2023-12-21 10:13:40,215 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:40,215 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:40,233 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,268 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-21 10:13:40,269 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,271 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-12-21 10:13:40,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,284 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2023-12-21 10:13:40,285 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,287 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:40,287 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:40,287 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1284593445] [2023-12-21 10:13:40,288 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1284593445] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:40,288 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:40,288 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-12-21 10:13:40,288 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1694018525] [2023-12-21 10:13:40,288 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:40,288 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-12-21 10:13:40,289 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:40,289 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-12-21 10:13:40,289 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-12-21 10:13:40,289 INFO L87 Difference]: Start difference. First operand 135 states and 178 transitions. Second operand has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-21 10:13:40,388 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:40,389 INFO L93 Difference]: Finished difference Result 291 states and 388 transitions. [2023-12-21 10:13:40,389 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-12-21 10:13:40,389 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 38 [2023-12-21 10:13:40,389 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:40,391 INFO L225 Difference]: With dead ends: 291 [2023-12-21 10:13:40,392 INFO L226 Difference]: Without dead ends: 158 [2023-12-21 10:13:40,392 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2023-12-21 10:13:40,397 INFO L413 NwaCegarLoop]: 64 mSDtfsCounter, 51 mSDsluCounter, 140 mSDsCounter, 0 mSdLazyCounter, 126 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 54 SdHoareTripleChecker+Valid, 204 SdHoareTripleChecker+Invalid, 142 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 126 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:40,398 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [54 Valid, 204 Invalid, 142 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 126 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:13:40,402 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 158 states. [2023-12-21 10:13:40,416 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 158 to 156. [2023-12-21 10:13:40,417 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 156 states, 112 states have (on average 1.3392857142857142) internal successors, (150), 122 states have internal predecessors, (150), 23 states have call successors, (23), 17 states have call predecessors, (23), 20 states have return successors, (32), 24 states have call predecessors, (32), 23 states have call successors, (32) [2023-12-21 10:13:40,418 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 156 states to 156 states and 205 transitions. [2023-12-21 10:13:40,418 INFO L78 Accepts]: Start accepts. Automaton has 156 states and 205 transitions. Word has length 38 [2023-12-21 10:13:40,418 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:40,418 INFO L495 AbstractCegarLoop]: Abstraction has 156 states and 205 transitions. [2023-12-21 10:13:40,418 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-21 10:13:40,418 INFO L276 IsEmpty]: Start isEmpty. Operand 156 states and 205 transitions. [2023-12-21 10:13:40,419 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2023-12-21 10:13:40,419 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:40,419 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:40,419 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2023-12-21 10:13:40,419 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:40,419 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:40,420 INFO L85 PathProgramCache]: Analyzing trace with hash 960396353, now seen corresponding path program 1 times [2023-12-21 10:13:40,420 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:40,428 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [83215394] [2023-12-21 10:13:40,428 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:40,428 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:40,438 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,449 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2023-12-21 10:13:40,450 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,453 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2023-12-21 10:13:40,455 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,456 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2023-12-21 10:13:40,457 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,458 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:40,458 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:40,458 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [83215394] [2023-12-21 10:13:40,458 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [83215394] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:40,458 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:40,458 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2023-12-21 10:13:40,458 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1598788416] [2023-12-21 10:13:40,458 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:40,459 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2023-12-21 10:13:40,459 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:40,459 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2023-12-21 10:13:40,459 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2023-12-21 10:13:40,459 INFO L87 Difference]: Start difference. First operand 156 states and 205 transitions. Second operand has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-21 10:13:40,557 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:40,557 INFO L93 Difference]: Finished difference Result 314 states and 411 transitions. [2023-12-21 10:13:40,557 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-12-21 10:13:40,558 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 41 [2023-12-21 10:13:40,558 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:40,559 INFO L225 Difference]: With dead ends: 314 [2023-12-21 10:13:40,559 INFO L226 Difference]: Without dead ends: 160 [2023-12-21 10:13:40,559 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2023-12-21 10:13:40,560 INFO L413 NwaCegarLoop]: 82 mSDtfsCounter, 80 mSDsluCounter, 95 mSDsCounter, 0 mSdLazyCounter, 108 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 87 SdHoareTripleChecker+Valid, 177 SdHoareTripleChecker+Invalid, 126 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 108 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:40,560 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [87 Valid, 177 Invalid, 126 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 108 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:13:40,560 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 160 states. [2023-12-21 10:13:40,570 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 160 to 156. [2023-12-21 10:13:40,571 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 156 states, 112 states have (on average 1.3303571428571428) internal successors, (149), 122 states have internal predecessors, (149), 23 states have call successors, (23), 17 states have call predecessors, (23), 20 states have return successors, (30), 24 states have call predecessors, (30), 23 states have call successors, (30) [2023-12-21 10:13:40,571 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 156 states to 156 states and 202 transitions. [2023-12-21 10:13:40,571 INFO L78 Accepts]: Start accepts. Automaton has 156 states and 202 transitions. Word has length 41 [2023-12-21 10:13:40,572 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:40,572 INFO L495 AbstractCegarLoop]: Abstraction has 156 states and 202 transitions. [2023-12-21 10:13:40,572 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.25) internal successors, (33), 3 states have internal predecessors, (33), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-21 10:13:40,572 INFO L276 IsEmpty]: Start isEmpty. Operand 156 states and 202 transitions. [2023-12-21 10:13:40,572 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2023-12-21 10:13:40,572 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:40,573 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:40,573 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2023-12-21 10:13:40,573 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:40,573 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:40,573 INFO L85 PathProgramCache]: Analyzing trace with hash 1718966391, now seen corresponding path program 1 times [2023-12-21 10:13:40,573 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:40,573 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1593823098] [2023-12-21 10:13:40,573 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:40,573 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:40,580 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,604 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-21 10:13:40,605 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,607 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-12-21 10:13:40,609 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,629 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2023-12-21 10:13:40,630 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,631 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:40,631 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:40,631 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1593823098] [2023-12-21 10:13:40,631 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1593823098] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:40,631 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:40,631 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-12-21 10:13:40,631 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [627520834] [2023-12-21 10:13:40,631 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:40,631 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-12-21 10:13:40,631 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:40,632 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-12-21 10:13:40,632 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-12-21 10:13:40,632 INFO L87 Difference]: Start difference. First operand 156 states and 202 transitions. Second operand has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-21 10:13:40,723 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:40,723 INFO L93 Difference]: Finished difference Result 319 states and 421 transitions. [2023-12-21 10:13:40,723 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2023-12-21 10:13:40,723 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 38 [2023-12-21 10:13:40,723 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:40,724 INFO L225 Difference]: With dead ends: 319 [2023-12-21 10:13:40,724 INFO L226 Difference]: Without dead ends: 165 [2023-12-21 10:13:40,725 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2023-12-21 10:13:40,725 INFO L413 NwaCegarLoop]: 63 mSDtfsCounter, 57 mSDsluCounter, 139 mSDsCounter, 0 mSdLazyCounter, 130 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 202 SdHoareTripleChecker+Invalid, 147 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 130 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:40,726 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 202 Invalid, 147 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 130 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:13:40,726 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 165 states. [2023-12-21 10:13:40,734 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 165 to 158. [2023-12-21 10:13:40,734 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 158 states, 114 states have (on average 1.3245614035087718) internal successors, (151), 124 states have internal predecessors, (151), 23 states have call successors, (23), 17 states have call predecessors, (23), 20 states have return successors, (30), 24 states have call predecessors, (30), 23 states have call successors, (30) [2023-12-21 10:13:40,735 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 158 states to 158 states and 204 transitions. [2023-12-21 10:13:40,735 INFO L78 Accepts]: Start accepts. Automaton has 158 states and 204 transitions. Word has length 38 [2023-12-21 10:13:40,735 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:40,735 INFO L495 AbstractCegarLoop]: Abstraction has 158 states and 204 transitions. [2023-12-21 10:13:40,735 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 2 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-21 10:13:40,736 INFO L276 IsEmpty]: Start isEmpty. Operand 158 states and 204 transitions. [2023-12-21 10:13:40,736 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2023-12-21 10:13:40,736 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:40,736 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:40,736 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2023-12-21 10:13:40,736 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:40,737 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:40,737 INFO L85 PathProgramCache]: Analyzing trace with hash 130618489, now seen corresponding path program 1 times [2023-12-21 10:13:40,737 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:40,737 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [478002195] [2023-12-21 10:13:40,737 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:40,737 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:40,743 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,768 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2023-12-21 10:13:40,769 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,772 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2023-12-21 10:13:40,774 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,781 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2023-12-21 10:13:40,782 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:40,782 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:40,782 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:40,782 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [478002195] [2023-12-21 10:13:40,783 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [478002195] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:40,783 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:40,783 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2023-12-21 10:13:40,783 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [576288980] [2023-12-21 10:13:40,783 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:40,783 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2023-12-21 10:13:40,783 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:40,783 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2023-12-21 10:13:40,784 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2023-12-21 10:13:40,784 INFO L87 Difference]: Start difference. First operand 158 states and 204 transitions. Second operand has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-21 10:13:40,942 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:40,942 INFO L93 Difference]: Finished difference Result 496 states and 661 transitions. [2023-12-21 10:13:40,943 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2023-12-21 10:13:40,943 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 38 [2023-12-21 10:13:40,943 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:40,947 INFO L225 Difference]: With dead ends: 496 [2023-12-21 10:13:40,947 INFO L226 Difference]: Without dead ends: 340 [2023-12-21 10:13:40,948 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2023-12-21 10:13:40,948 INFO L413 NwaCegarLoop]: 96 mSDtfsCounter, 193 mSDsluCounter, 120 mSDsCounter, 0 mSdLazyCounter, 175 mSolverCounterSat, 61 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 200 SdHoareTripleChecker+Valid, 216 SdHoareTripleChecker+Invalid, 236 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 61 IncrementalHoareTripleChecker+Valid, 175 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:40,948 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [200 Valid, 216 Invalid, 236 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [61 Valid, 175 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:13:40,949 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 340 states. [2023-12-21 10:13:40,966 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 340 to 338. [2023-12-21 10:13:40,967 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 338 states, 243 states have (on average 1.2798353909465021) internal successors, (311), 261 states have internal predecessors, (311), 52 states have call successors, (52), 42 states have call predecessors, (52), 42 states have return successors, (72), 51 states have call predecessors, (72), 52 states have call successors, (72) [2023-12-21 10:13:40,969 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 338 states to 338 states and 435 transitions. [2023-12-21 10:13:40,969 INFO L78 Accepts]: Start accepts. Automaton has 338 states and 435 transitions. Word has length 38 [2023-12-21 10:13:40,969 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:40,969 INFO L495 AbstractCegarLoop]: Abstraction has 338 states and 435 transitions. [2023-12-21 10:13:40,969 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.0) internal successors, (30), 4 states have internal predecessors, (30), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2023-12-21 10:13:40,969 INFO L276 IsEmpty]: Start isEmpty. Operand 338 states and 435 transitions. [2023-12-21 10:13:40,970 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2023-12-21 10:13:40,970 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:40,970 INFO L195 NwaCegarLoop]: trace histogram [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:40,970 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2023-12-21 10:13:40,970 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:40,971 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:40,971 INFO L85 PathProgramCache]: Analyzing trace with hash 26928479, now seen corresponding path program 1 times [2023-12-21 10:13:40,971 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:40,971 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1606722379] [2023-12-21 10:13:40,971 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:40,971 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:40,980 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,042 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-21 10:13:41,043 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,082 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2023-12-21 10:13:41,083 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,088 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2023-12-21 10:13:41,090 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,092 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2023-12-21 10:13:41,092 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,093 INFO L134 CoverageAnalysis]: Checked inductivity of 2 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2023-12-21 10:13:41,093 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:41,093 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1606722379] [2023-12-21 10:13:41,093 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1606722379] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:41,093 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:41,093 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2023-12-21 10:13:41,093 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [649531362] [2023-12-21 10:13:41,093 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:41,094 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2023-12-21 10:13:41,094 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:41,094 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2023-12-21 10:13:41,094 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2023-12-21 10:13:41,094 INFO L87 Difference]: Start difference. First operand 338 states and 435 transitions. Second operand has 8 states, 8 states have (on average 4.0) internal successors, (32), 6 states have internal predecessors, (32), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) [2023-12-21 10:13:41,464 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:41,464 INFO L93 Difference]: Finished difference Result 1010 states and 1341 transitions. [2023-12-21 10:13:41,465 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 23 states. [2023-12-21 10:13:41,465 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.0) internal successors, (32), 6 states have internal predecessors, (32), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) Word has length 42 [2023-12-21 10:13:41,465 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:41,468 INFO L225 Difference]: With dead ends: 1010 [2023-12-21 10:13:41,468 INFO L226 Difference]: Without dead ends: 749 [2023-12-21 10:13:41,469 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 33 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 22 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 119 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=126, Invalid=426, Unknown=0, NotChecked=0, Total=552 [2023-12-21 10:13:41,471 INFO L413 NwaCegarLoop]: 79 mSDtfsCounter, 389 mSDsluCounter, 254 mSDsCounter, 0 mSdLazyCounter, 388 mSolverCounterSat, 137 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 396 SdHoareTripleChecker+Valid, 333 SdHoareTripleChecker+Invalid, 525 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 137 IncrementalHoareTripleChecker+Valid, 388 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:41,471 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [396 Valid, 333 Invalid, 525 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [137 Valid, 388 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2023-12-21 10:13:41,472 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 749 states. [2023-12-21 10:13:41,519 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 749 to 626. [2023-12-21 10:13:41,520 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 626 states, 450 states have (on average 1.2777777777777777) internal successors, (575), 487 states have internal predecessors, (575), 95 states have call successors, (95), 72 states have call predecessors, (95), 80 states have return successors, (135), 94 states have call predecessors, (135), 95 states have call successors, (135) [2023-12-21 10:13:41,541 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 626 states to 626 states and 805 transitions. [2023-12-21 10:13:41,541 INFO L78 Accepts]: Start accepts. Automaton has 626 states and 805 transitions. Word has length 42 [2023-12-21 10:13:41,542 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:41,542 INFO L495 AbstractCegarLoop]: Abstraction has 626 states and 805 transitions. [2023-12-21 10:13:41,542 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.0) internal successors, (32), 6 states have internal predecessors, (32), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 3 states have call successors, (4) [2023-12-21 10:13:41,542 INFO L276 IsEmpty]: Start isEmpty. Operand 626 states and 805 transitions. [2023-12-21 10:13:41,543 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 77 [2023-12-21 10:13:41,543 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:41,543 INFO L195 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:41,543 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2023-12-21 10:13:41,543 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:41,544 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:41,544 INFO L85 PathProgramCache]: Analyzing trace with hash 941485235, now seen corresponding path program 1 times [2023-12-21 10:13:41,544 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:41,544 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1128954584] [2023-12-21 10:13:41,544 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:41,544 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:41,565 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,649 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-21 10:13:41,650 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,658 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-21 10:13:41,669 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,684 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-21 10:13:41,685 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,690 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-12-21 10:13:41,693 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,699 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2023-12-21 10:13:41,700 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,710 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 58 [2023-12-21 10:13:41,711 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,717 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-12-21 10:13:41,718 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,720 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 69 [2023-12-21 10:13:41,720 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,722 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 14 proven. 7 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2023-12-21 10:13:41,722 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:41,722 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1128954584] [2023-12-21 10:13:41,722 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1128954584] provided 0 perfect and 1 imperfect interpolant sequences [2023-12-21 10:13:41,722 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1032490950] [2023-12-21 10:13:41,722 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:41,722 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-12-21 10:13:41,723 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-21 10:13:41,725 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-12-21 10:13:41,729 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2023-12-21 10:13:41,809 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:41,811 INFO L262 TraceCheckSpWp]: Trace formula consists of 300 conjuncts, 8 conjunts are in the unsatisfiable core [2023-12-21 10:13:41,815 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-12-21 10:13:41,933 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 20 proven. 7 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2023-12-21 10:13:41,933 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-12-21 10:13:42,080 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 15 proven. 6 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2023-12-21 10:13:42,081 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1032490950] provided 0 perfect and 2 imperfect interpolant sequences [2023-12-21 10:13:42,081 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-12-21 10:13:42,081 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 6, 6] total 15 [2023-12-21 10:13:42,082 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1377597875] [2023-12-21 10:13:42,082 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-12-21 10:13:42,084 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2023-12-21 10:13:42,084 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:42,084 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2023-12-21 10:13:42,084 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=36, Invalid=174, Unknown=0, NotChecked=0, Total=210 [2023-12-21 10:13:42,084 INFO L87 Difference]: Start difference. First operand 626 states and 805 transitions. Second operand has 15 states, 12 states have (on average 7.666666666666667) internal successors, (92), 10 states have internal predecessors, (92), 5 states have call successors, (20), 7 states have call predecessors, (20), 6 states have return successors, (16), 7 states have call predecessors, (16), 5 states have call successors, (16) [2023-12-21 10:13:42,858 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:42,858 INFO L93 Difference]: Finished difference Result 1445 states and 1922 transitions. [2023-12-21 10:13:42,858 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 39 states. [2023-12-21 10:13:42,859 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 12 states have (on average 7.666666666666667) internal successors, (92), 10 states have internal predecessors, (92), 5 states have call successors, (20), 7 states have call predecessors, (20), 6 states have return successors, (16), 7 states have call predecessors, (16), 5 states have call successors, (16) Word has length 76 [2023-12-21 10:13:42,859 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:42,862 INFO L225 Difference]: With dead ends: 1445 [2023-12-21 10:13:42,862 INFO L226 Difference]: Without dead ends: 892 [2023-12-21 10:13:42,864 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 222 GetRequests, 172 SyntacticMatches, 4 SemanticMatches, 46 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 611 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=403, Invalid=1853, Unknown=0, NotChecked=0, Total=2256 [2023-12-21 10:13:42,865 INFO L413 NwaCegarLoop]: 133 mSDtfsCounter, 341 mSDsluCounter, 851 mSDsCounter, 0 mSdLazyCounter, 1180 mSolverCounterSat, 138 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 347 SdHoareTripleChecker+Valid, 984 SdHoareTripleChecker+Invalid, 1318 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 138 IncrementalHoareTripleChecker+Valid, 1180 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:42,865 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [347 Valid, 984 Invalid, 1318 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [138 Valid, 1180 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2023-12-21 10:13:42,865 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 892 states. [2023-12-21 10:13:42,909 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 892 to 709. [2023-12-21 10:13:42,910 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 709 states, 501 states have (on average 1.249500998003992) internal successors, (626), 550 states have internal predecessors, (626), 112 states have call successors, (112), 93 states have call predecessors, (112), 95 states have return successors, (138), 100 states have call predecessors, (138), 112 states have call successors, (138) [2023-12-21 10:13:42,913 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 709 states to 709 states and 876 transitions. [2023-12-21 10:13:42,913 INFO L78 Accepts]: Start accepts. Automaton has 709 states and 876 transitions. Word has length 76 [2023-12-21 10:13:42,913 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:42,913 INFO L495 AbstractCegarLoop]: Abstraction has 709 states and 876 transitions. [2023-12-21 10:13:42,913 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 12 states have (on average 7.666666666666667) internal successors, (92), 10 states have internal predecessors, (92), 5 states have call successors, (20), 7 states have call predecessors, (20), 6 states have return successors, (16), 7 states have call predecessors, (16), 5 states have call successors, (16) [2023-12-21 10:13:42,913 INFO L276 IsEmpty]: Start isEmpty. Operand 709 states and 876 transitions. [2023-12-21 10:13:42,915 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 137 [2023-12-21 10:13:42,915 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:42,915 INFO L195 NwaCegarLoop]: trace histogram [5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:42,921 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2023-12-21 10:13:43,121 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2023-12-21 10:13:43,121 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:43,122 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:43,122 INFO L85 PathProgramCache]: Analyzing trace with hash 1427009207, now seen corresponding path program 1 times [2023-12-21 10:13:43,122 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:43,122 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1198132674] [2023-12-21 10:13:43,122 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:43,122 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:43,132 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,170 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-21 10:13:43,170 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,181 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-21 10:13:43,183 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,185 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-21 10:13:43,186 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,190 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-12-21 10:13:43,191 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,192 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2023-12-21 10:13:43,194 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,205 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-21 10:13:43,205 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,206 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-21 10:13:43,206 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,207 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-12-21 10:13:43,207 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,208 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 78 [2023-12-21 10:13:43,209 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,224 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-21 10:13:43,225 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,225 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-21 10:13:43,226 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,226 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 109 [2023-12-21 10:13:43,227 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,227 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 116 [2023-12-21 10:13:43,228 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,229 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 129 [2023-12-21 10:13:43,230 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,230 INFO L134 CoverageAnalysis]: Checked inductivity of 151 backedges. 61 proven. 0 refuted. 0 times theorem prover too weak. 90 trivial. 0 not checked. [2023-12-21 10:13:43,230 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:43,230 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1198132674] [2023-12-21 10:13:43,230 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1198132674] provided 1 perfect and 0 imperfect interpolant sequences [2023-12-21 10:13:43,230 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2023-12-21 10:13:43,231 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2023-12-21 10:13:43,231 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2052858907] [2023-12-21 10:13:43,231 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2023-12-21 10:13:43,231 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2023-12-21 10:13:43,231 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:43,231 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2023-12-21 10:13:43,231 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2023-12-21 10:13:43,232 INFO L87 Difference]: Start difference. First operand 709 states and 876 transitions. Second operand has 7 states, 7 states have (on average 9.142857142857142) internal successors, (64), 4 states have internal predecessors, (64), 2 states have call successors, (11), 5 states have call predecessors, (11), 2 states have return successors, (11), 2 states have call predecessors, (11), 2 states have call successors, (11) [2023-12-21 10:13:43,387 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:43,387 INFO L93 Difference]: Finished difference Result 1351 states and 1680 transitions. [2023-12-21 10:13:43,387 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2023-12-21 10:13:43,387 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 9.142857142857142) internal successors, (64), 4 states have internal predecessors, (64), 2 states have call successors, (11), 5 states have call predecessors, (11), 2 states have return successors, (11), 2 states have call predecessors, (11), 2 states have call successors, (11) Word has length 136 [2023-12-21 10:13:43,387 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:43,390 INFO L225 Difference]: With dead ends: 1351 [2023-12-21 10:13:43,390 INFO L226 Difference]: Without dead ends: 715 [2023-12-21 10:13:43,391 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 39 GetRequests, 29 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 13 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=92, Unknown=0, NotChecked=0, Total=132 [2023-12-21 10:13:43,391 INFO L413 NwaCegarLoop]: 60 mSDtfsCounter, 110 mSDsluCounter, 164 mSDsCounter, 0 mSdLazyCounter, 238 mSolverCounterSat, 33 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 115 SdHoareTripleChecker+Valid, 224 SdHoareTripleChecker+Invalid, 271 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 33 IncrementalHoareTripleChecker+Valid, 238 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:43,391 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [115 Valid, 224 Invalid, 271 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [33 Valid, 238 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2023-12-21 10:13:43,392 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 715 states. [2023-12-21 10:13:43,418 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 715 to 715. [2023-12-21 10:13:43,419 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 715 states, 507 states have (on average 1.2465483234714003) internal successors, (632), 556 states have internal predecessors, (632), 112 states have call successors, (112), 93 states have call predecessors, (112), 95 states have return successors, (138), 100 states have call predecessors, (138), 112 states have call successors, (138) [2023-12-21 10:13:43,421 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 715 states to 715 states and 882 transitions. [2023-12-21 10:13:43,421 INFO L78 Accepts]: Start accepts. Automaton has 715 states and 882 transitions. Word has length 136 [2023-12-21 10:13:43,421 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:43,421 INFO L495 AbstractCegarLoop]: Abstraction has 715 states and 882 transitions. [2023-12-21 10:13:43,421 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 9.142857142857142) internal successors, (64), 4 states have internal predecessors, (64), 2 states have call successors, (11), 5 states have call predecessors, (11), 2 states have return successors, (11), 2 states have call predecessors, (11), 2 states have call successors, (11) [2023-12-21 10:13:43,421 INFO L276 IsEmpty]: Start isEmpty. Operand 715 states and 882 transitions. [2023-12-21 10:13:43,423 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 137 [2023-12-21 10:13:43,423 INFO L187 NwaCegarLoop]: Found error trace [2023-12-21 10:13:43,423 INFO L195 NwaCegarLoop]: trace histogram [5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:43,423 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2023-12-21 10:13:43,423 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2023-12-21 10:13:43,424 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2023-12-21 10:13:43,424 INFO L85 PathProgramCache]: Analyzing trace with hash 1073920825, now seen corresponding path program 1 times [2023-12-21 10:13:43,424 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2023-12-21 10:13:43,424 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1068748078] [2023-12-21 10:13:43,424 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:43,424 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2023-12-21 10:13:43,435 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,503 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2023-12-21 10:13:43,504 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,510 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-21 10:13:43,512 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,523 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-21 10:13:43,523 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,527 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2023-12-21 10:13:43,528 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,529 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2023-12-21 10:13:43,531 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,565 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-21 10:13:43,566 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,566 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-21 10:13:43,567 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,569 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2023-12-21 10:13:43,569 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,570 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 78 [2023-12-21 10:13:43,572 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,574 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2023-12-21 10:13:43,574 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,575 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2023-12-21 10:13:43,575 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,576 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 109 [2023-12-21 10:13:43,576 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,577 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 116 [2023-12-21 10:13:43,577 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,578 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 129 [2023-12-21 10:13:43,579 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,579 INFO L134 CoverageAnalysis]: Checked inductivity of 151 backedges. 75 proven. 21 refuted. 0 times theorem prover too weak. 55 trivial. 0 not checked. [2023-12-21 10:13:43,580 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2023-12-21 10:13:43,580 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1068748078] [2023-12-21 10:13:43,580 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1068748078] provided 0 perfect and 1 imperfect interpolant sequences [2023-12-21 10:13:43,580 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [31110239] [2023-12-21 10:13:43,580 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2023-12-21 10:13:43,580 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2023-12-21 10:13:43,580 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2023-12-21 10:13:43,581 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2023-12-21 10:13:43,584 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2023-12-21 10:13:43,684 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2023-12-21 10:13:43,686 INFO L262 TraceCheckSpWp]: Trace formula consists of 475 conjuncts, 12 conjunts are in the unsatisfiable core [2023-12-21 10:13:43,689 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2023-12-21 10:13:43,798 INFO L134 CoverageAnalysis]: Checked inductivity of 151 backedges. 110 proven. 3 refuted. 0 times theorem prover too weak. 38 trivial. 0 not checked. [2023-12-21 10:13:43,799 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2023-12-21 10:13:44,025 INFO L134 CoverageAnalysis]: Checked inductivity of 151 backedges. 66 proven. 31 refuted. 0 times theorem prover too weak. 54 trivial. 0 not checked. [2023-12-21 10:13:44,026 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [31110239] provided 0 perfect and 2 imperfect interpolant sequences [2023-12-21 10:13:44,026 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2023-12-21 10:13:44,026 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9, 10] total 21 [2023-12-21 10:13:44,026 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1379360653] [2023-12-21 10:13:44,026 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2023-12-21 10:13:44,026 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2023-12-21 10:13:44,026 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2023-12-21 10:13:44,027 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2023-12-21 10:13:44,027 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=101, Invalid=319, Unknown=0, NotChecked=0, Total=420 [2023-12-21 10:13:44,027 INFO L87 Difference]: Start difference. First operand 715 states and 882 transitions. Second operand has 21 states, 21 states have (on average 7.333333333333333) internal successors, (154), 18 states have internal predecessors, (154), 10 states have call successors, (31), 8 states have call predecessors, (31), 9 states have return successors, (29), 9 states have call predecessors, (29), 10 states have call successors, (29) [2023-12-21 10:13:44,644 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2023-12-21 10:13:44,644 INFO L93 Difference]: Finished difference Result 1557 states and 1987 transitions. [2023-12-21 10:13:44,644 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 24 states. [2023-12-21 10:13:44,644 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 7.333333333333333) internal successors, (154), 18 states have internal predecessors, (154), 10 states have call successors, (31), 8 states have call predecessors, (31), 9 states have return successors, (29), 9 states have call predecessors, (29), 10 states have call successors, (29) Word has length 136 [2023-12-21 10:13:44,645 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2023-12-21 10:13:44,645 INFO L225 Difference]: With dead ends: 1557 [2023-12-21 10:13:44,645 INFO L226 Difference]: Without dead ends: 0 [2023-12-21 10:13:44,648 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 336 GetRequests, 294 SyntacticMatches, 4 SemanticMatches, 38 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 311 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=377, Invalid=1183, Unknown=0, NotChecked=0, Total=1560 [2023-12-21 10:13:44,648 INFO L413 NwaCegarLoop]: 75 mSDtfsCounter, 442 mSDsluCounter, 458 mSDsCounter, 0 mSdLazyCounter, 1071 mSolverCounterSat, 181 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 448 SdHoareTripleChecker+Valid, 533 SdHoareTripleChecker+Invalid, 1252 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 181 IncrementalHoareTripleChecker+Valid, 1071 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2023-12-21 10:13:44,648 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [448 Valid, 533 Invalid, 1252 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [181 Valid, 1071 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2023-12-21 10:13:44,648 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2023-12-21 10:13:44,649 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2023-12-21 10:13:44,649 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2023-12-21 10:13:44,649 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2023-12-21 10:13:44,649 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 136 [2023-12-21 10:13:44,649 INFO L84 Accepts]: Finished accepts. word is rejected. [2023-12-21 10:13:44,649 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2023-12-21 10:13:44,649 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 7.333333333333333) internal successors, (154), 18 states have internal predecessors, (154), 10 states have call successors, (31), 8 states have call predecessors, (31), 9 states have return successors, (29), 9 states have call predecessors, (29), 10 states have call successors, (29) [2023-12-21 10:13:44,649 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2023-12-21 10:13:44,649 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2023-12-21 10:13:44,651 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2023-12-21 10:13:44,662 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2023-12-21 10:13:44,856 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2023-12-21 10:13:44,858 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2023-12-21 10:13:47,345 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 860 867) no Hoare annotation was computed. [2023-12-21 10:13:47,345 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 860 867) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (< |old(~pumpRunning~0)| 1)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 (not (= 2 ~waterLevel~0)) .cse1 .cse2) (or .cse0 (< 1 ~waterLevel~0) (< ~switchedOnBeforeTS~0 1) .cse1 .cse2))) [2023-12-21 10:13:47,345 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 793 799) no Hoare annotation was computed. [2023-12-21 10:13:47,345 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 793 799) the Hoare annotation is: true [2023-12-21 10:13:47,346 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 613 624) the Hoare annotation is: true [2023-12-21 10:13:47,346 INFO L899 garLoopResultBuilder]: For program point L617-1(lines 613 624) no Hoare annotation was computed. [2023-12-21 10:13:47,346 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 613 624) no Hoare annotation was computed. [2023-12-21 10:13:47,346 INFO L899 garLoopResultBuilder]: For program point L952(lines 952 956) no Hoare annotation was computed. [2023-12-21 10:13:47,346 INFO L899 garLoopResultBuilder]: For program point L952-2(lines 952 956) no Hoare annotation was computed. [2023-12-21 10:13:47,346 INFO L899 garLoopResultBuilder]: For program point L564(lines 564 574) no Hoare annotation was computed. [2023-12-21 10:13:47,346 INFO L899 garLoopResultBuilder]: For program point L593(lines 593 597) no Hoare annotation was computed. [2023-12-21 10:13:47,346 INFO L899 garLoopResultBuilder]: For program point L560(lines 560 577) no Hoare annotation was computed. [2023-12-21 10:13:47,346 INFO L899 garLoopResultBuilder]: For program point L593-2(lines 589 600) no Hoare annotation was computed. [2023-12-21 10:13:47,346 INFO L899 garLoopResultBuilder]: For program point L560-1(lines 552 580) no Hoare annotation was computed. [2023-12-21 10:13:47,346 INFO L895 garLoopResultBuilder]: At program point L841(line 841) the Hoare annotation is: (let ((.cse6 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse7 (= |timeShift_processEnvironment_~tmp~7#1| 0)) (.cse8 (<= 1 ~switchedOnBeforeTS~0))) (let ((.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse3 (and .cse6 .cse7 (<= ~waterLevel~0 1) (<= (+ ~waterLevel~0 1) |old(~waterLevel~0)|) .cse8)) (.cse5 (not (= |old(~waterLevel~0)| 2))) (.cse1 (< |old(~pumpRunning~0)| 1)) (.cse2 (= 0 ~systemActive~0))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5) (or (< 1 |old(~waterLevel~0)|) .cse4) (or .cse0 (and .cse6 .cse7 (= |old(~waterLevel~0)| ~waterLevel~0) .cse8) .cse1 .cse2 (< 2 |old(~waterLevel~0)|) .cse3) (or (and .cse6 .cse7 (= ~waterLevel~0 1) .cse8) .cse5 .cse1 .cse2)))) [2023-12-21 10:13:47,346 INFO L895 garLoopResultBuilder]: At program point L837(line 837) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse1 (<= 1 ~switchedOnBeforeTS~0))) (let ((.cse2 (not (= |old(~waterLevel~0)| 2))) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse7 (and .cse0 (<= ~waterLevel~0 1) (<= (+ ~waterLevel~0 1) |old(~waterLevel~0)|) .cse1)) (.cse3 (< |old(~pumpRunning~0)| 1)) (.cse4 (= 0 ~systemActive~0))) (and (or (and .cse0 (= ~waterLevel~0 1) .cse1) .cse2 .cse3 .cse4) (or .cse5 .cse2) (or (< 1 |old(~waterLevel~0)|) .cse5) (or (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1) .cse6 .cse7 .cse3 .cse4 (< 2 |old(~waterLevel~0)|)) (or (not (= |old(~waterLevel~0)| 1)) .cse6 .cse7 .cse3 .cse4)))) [2023-12-21 10:13:47,346 INFO L899 garLoopResultBuilder]: For program point L565(lines 565 571) no Hoare annotation was computed. [2023-12-21 10:13:47,346 INFO L895 garLoopResultBuilder]: At program point L846(line 846) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (< 2 |old(~waterLevel~0)|)) (.cse0 (< |old(~pumpRunning~0)| 1)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~waterLevel~0)| 2)) .cse0 .cse1) (or .cse2 .cse3 (not .cse1)) (or .cse2 (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse3) (or (< 1 |old(~waterLevel~0)|) (< |old(~switchedOnBeforeTS~0)| 1) .cse0 .cse1))) [2023-12-21 10:13:47,347 INFO L899 garLoopResultBuilder]: For program point L846-1(lines 827 851) no Hoare annotation was computed. [2023-12-21 10:13:47,347 INFO L899 garLoopResultBuilder]: For program point L780-1(lines 780 786) no Hoare annotation was computed. [2023-12-21 10:13:47,347 INFO L895 garLoopResultBuilder]: At program point L562(line 562) the Hoare annotation is: (let ((.cse7 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse3 (= 0 ~systemActive~0)) (.cse11 (= ~pumpRunning~0 0)) (.cse13 (<= ~waterLevel~0 1)) (.cse14 (<= (+ ~waterLevel~0 1) |old(~waterLevel~0)|)) (.cse8 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~4#1| ~waterLevel~0)) (.cse10 (<= 1 ~switchedOnBeforeTS~0))) (let ((.cse0 (< |old(~switchedOnBeforeTS~0)| 1)) (.cse1 (and .cse11 .cse13 .cse14 .cse8 .cse10)) (.cse4 (and (<= 1 ~pumpRunning~0) .cse7 .cse13 .cse14 .cse8 .cse10 (not .cse3))) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse9 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (not (= |old(~waterLevel~0)| 2))) (.cse2 (< |old(~pumpRunning~0)| 1))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6) (or (and .cse7 .cse8 .cse9 .cse10) .cse0 .cse1 .cse2 .cse3 .cse4 (< 2 |old(~waterLevel~0)|) (and .cse11 .cse8 .cse9 .cse10)) (or (< 1 |old(~waterLevel~0)|) .cse5 (and .cse11 .cse8 .cse9)) (let ((.cse12 (= ~waterLevel~0 1))) (or (and .cse7 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~4#1| 1) .cse12 .cse10) (and .cse11 .cse8 .cse12 .cse10) .cse6 .cse2 .cse3))))) [2023-12-21 10:13:47,347 INFO L899 garLoopResultBuilder]: For program point L562-1(line 562) no Hoare annotation was computed. [2023-12-21 10:13:47,347 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 766 792) the Hoare annotation is: (let ((.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse0 (< |old(~pumpRunning~0)| 1)) (.cse1 (= 0 ~systemActive~0)) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (= ~pumpRunning~0 0)) (.cse7 (= 2 ~waterLevel~0)) (.cse3 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse8 (not (= |old(~waterLevel~0)| 2)))) (and (or (< |old(~switchedOnBeforeTS~0)| 1) .cse0 .cse1 (and .cse2 .cse3 .cse4) (< 2 |old(~waterLevel~0)|)) (or (< 1 |old(~waterLevel~0)|) (and .cse5 .cse3 .cse4) .cse6) (or (and .cse2 .cse7 .cse3) .cse8 .cse0 .cse1) (or .cse6 (and .cse5 .cse7 .cse3) .cse8))) [2023-12-21 10:13:47,347 INFO L899 garLoopResultBuilder]: For program point L773(lines 773 779) no Hoare annotation was computed. [2023-12-21 10:13:47,347 INFO L899 garLoopResultBuilder]: For program point L773-2(lines 769 791) no Hoare annotation was computed. [2023-12-21 10:13:47,347 INFO L899 garLoopResultBuilder]: For program point L835(lines 835 843) no Hoare annotation was computed. [2023-12-21 10:13:47,347 INFO L899 garLoopResultBuilder]: For program point L831(lines 831 848) no Hoare annotation was computed. [2023-12-21 10:13:47,347 INFO L899 garLoopResultBuilder]: For program point L526(line 526) no Hoare annotation was computed. [2023-12-21 10:13:47,347 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 766 792) no Hoare annotation was computed. [2023-12-21 10:13:47,347 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 526) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L895 garLoopResultBuilder]: At program point L547(line 547) the Hoare annotation is: (let ((.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse0 (< |old(~pumpRunning~0)| 1)) (.cse1 (= 0 ~systemActive~0)) (.cse6 (not (= |old(~pumpRunning~0)| 0))) (.cse5 (= ~pumpRunning~0 0)) (.cse7 (= 2 ~waterLevel~0)) (.cse3 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse8 (not (= |old(~waterLevel~0)| 2)))) (and (or (< |old(~switchedOnBeforeTS~0)| 1) .cse0 .cse1 (and .cse2 .cse3 .cse4) (< 2 |old(~waterLevel~0)|)) (or (< 1 |old(~waterLevel~0)|) (and .cse5 .cse3 .cse4) .cse6) (or (and .cse2 .cse7 .cse3) .cse8 .cse0 .cse1) (or .cse6 (and .cse5 .cse7 .cse3) .cse8))) [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L547-1(line 547) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 418 447) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L443(lines 418 447) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L439(line 439) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L432(lines 432 436) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L902 garLoopResultBuilder]: At program point L432-1(lines 432 436) the Hoare annotation is: true [2023-12-21 10:13:47,348 INFO L902 garLoopResultBuilder]: At program point L428-2(lines 428 442) the Hoare annotation is: true [2023-12-21 10:13:47,348 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 418 447) the Hoare annotation is: true [2023-12-21 10:13:47,348 INFO L902 garLoopResultBuilder]: At program point L424(line 424) the Hoare annotation is: true [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L424-1(line 424) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L755(lines 692 759) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L722(lines 722 728) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L722-1(lines 722 728) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L895 garLoopResultBuilder]: At program point L714(line 714) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 0)) (.cse1 (= 2 ~waterLevel~0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse6 (<= ~waterLevel~0 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~3#1| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse6 .cse2 .cse3) (and .cse5 .cse1 .cse2 .cse3) (and .cse0 .cse6 .cse2 .cse3 (<= 1 ~switchedOnBeforeTS~0) .cse4))) [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L966(lines 966 972) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L966-1(lines 966 972) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L508(lines 508 515) no Hoare annotation was computed. [2023-12-21 10:13:47,348 INFO L899 garLoopResultBuilder]: For program point L508-2(lines 508 515) no Hoare annotation was computed. [2023-12-21 10:13:47,349 INFO L895 garLoopResultBuilder]: At program point L752(lines 701 753) the Hoare annotation is: false [2023-12-21 10:13:47,349 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2023-12-21 10:13:47,349 INFO L899 garLoopResultBuilder]: For program point L740(lines 740 746) no Hoare annotation was computed. [2023-12-21 10:13:47,349 INFO L895 garLoopResultBuilder]: At program point L740-2(lines 732 747) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~3#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 (= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and (= ~pumpRunning~0 0) .cse1 (<= ~waterLevel~0 2) .cse2) (and .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse3))) [2023-12-21 10:13:47,349 INFO L899 garLoopResultBuilder]: For program point L703(lines 702 751) no Hoare annotation was computed. [2023-12-21 10:13:47,349 INFO L899 garLoopResultBuilder]: For program point L732(lines 732 747) no Hoare annotation was computed. [2023-12-21 10:13:47,349 INFO L895 garLoopResultBuilder]: At program point L724(line 724) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~3#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 (= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and (= ~pumpRunning~0 0) .cse1 (<= ~waterLevel~0 2) .cse2) (and .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse3))) [2023-12-21 10:13:47,349 INFO L895 garLoopResultBuilder]: At program point L749(lines 702 751) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 0)) (.cse1 (= 2 ~waterLevel~0)) (.cse0 (<= 1 ~pumpRunning~0)) (.cse6 (<= ~waterLevel~0 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~3#1| 1)) (.cse4 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse5 .cse6 .cse2 .cse3) (and .cse5 .cse1 .cse2 .cse3) (and .cse0 .cse6 .cse2 .cse3 (<= 1 ~switchedOnBeforeTS~0) .cse4))) [2023-12-21 10:13:47,349 INFO L899 garLoopResultBuilder]: For program point L712(lines 712 718) no Hoare annotation was computed. [2023-12-21 10:13:47,349 INFO L895 garLoopResultBuilder]: At program point L968(line 968) the Hoare annotation is: (let ((.cse0 (<= 1 ~pumpRunning~0)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~3#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 (= 2 ~waterLevel~0) .cse1 .cse2 .cse3) (and .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 (<= 1 ~switchedOnBeforeTS~0) .cse3))) [2023-12-21 10:13:47,349 INFO L899 garLoopResultBuilder]: For program point L712-1(lines 712 718) no Hoare annotation was computed. [2023-12-21 10:13:47,349 INFO L895 garLoopResultBuilder]: At program point L820(line 820) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (< 1 ~waterLevel~0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2) (or .cse0 (not (= 2 ~waterLevel~0)) .cse2) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse1 (< ~switchedOnBeforeTS~0 1) (< |old(~pumpRunning~0)| 1) .cse2))) [2023-12-21 10:13:47,349 INFO L899 garLoopResultBuilder]: For program point L820-1(lines 801 825) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 801 825) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse3 (< 1 ~waterLevel~0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= 2 ~waterLevel~0)) .cse2) (or .cse0 .cse1 .cse3 .cse2) (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse3 (< ~switchedOnBeforeTS~0 1) (< |old(~pumpRunning~0)| 1) .cse2))) [2023-12-21 10:13:47,350 INFO L899 garLoopResultBuilder]: For program point isHighWaterSensorDry_returnLabel#1(lines 666 679) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L899 garLoopResultBuilder]: For program point L670(lines 670 676) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 801 825) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L895 garLoopResultBuilder]: At program point L815(line 815) the Hoare annotation is: (let ((.cse1 (= 0 ~systemActive~0)) (.cse4 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse4)) (.cse3 (< 1 ~waterLevel~0)) (.cse2 (and (= ~pumpRunning~0 0) .cse4 (= |processEnvironment__wrappee__highWaterSensor_~tmp~6#1| 0) (not .cse1)))) (and (or .cse0 (not (= 2 ~waterLevel~0)) .cse1 .cse2) (or .cse3 (< ~switchedOnBeforeTS~0 1) (< |old(~pumpRunning~0)| 1) .cse1) (or .cse0 .cse3 .cse1 .cse2)))) [2023-12-21 10:13:47,350 INFO L899 garLoopResultBuilder]: For program point L809(lines 809 817) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L899 garLoopResultBuilder]: For program point L805(lines 805 822) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L899 garLoopResultBuilder]: For program point L933(lines 933 937) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L899 garLoopResultBuilder]: For program point L933-2(lines 933 937) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 601 612) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L899 garLoopResultBuilder]: For program point L605-1(lines 601 612) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 601 612) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (= 2 ~waterLevel~0)) (.cse2 (not (= |old(~waterLevel~0)| 2))) (.cse3 (< 1 |old(~waterLevel~0)|)) (.cse5 (< ~pumpRunning~0 1)) (.cse4 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 .cse2) (or .cse3 .cse0 .cse4) (or .cse5 .cse1 .cse2 .cse6) (or .cse3 .cse5 (< ~switchedOnBeforeTS~0 1) .cse4 .cse6))) [2023-12-21 10:13:47,350 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 879 887) no Hoare annotation was computed. [2023-12-21 10:13:47,350 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 879 887) the Hoare annotation is: true [2023-12-21 10:13:47,352 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2023-12-21 10:13:47,353 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2023-12-21 10:13:47,362 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.12 10:13:47 BoogieIcfgContainer [2023-12-21 10:13:47,362 INFO L131 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2023-12-21 10:13:47,363 INFO L158 Benchmark]: Toolchain (without parser) took 9037.84ms. Allocated memory was 289.4MB in the beginning and 418.4MB in the end (delta: 129.0MB). Free memory was 244.3MB in the beginning and 162.3MB in the end (delta: 82.0MB). Peak memory consumption was 214.1MB. Max. memory is 8.0GB. [2023-12-21 10:13:47,363 INFO L158 Benchmark]: CDTParser took 0.38ms. Allocated memory is still 207.6MB. Free memory was 157.0MB in the beginning and 156.8MB in the end (delta: 188.8kB). There was no memory consumed. Max. memory is 8.0GB. [2023-12-21 10:13:47,363 INFO L158 Benchmark]: CACSL2BoogieTranslator took 374.36ms. Allocated memory is still 289.4MB. Free memory was 244.3MB in the beginning and 223.8MB in the end (delta: 20.4MB). Peak memory consumption was 19.9MB. Max. memory is 8.0GB. [2023-12-21 10:13:47,363 INFO L158 Benchmark]: Boogie Procedure Inliner took 34.98ms. Allocated memory is still 289.4MB. Free memory was 223.8MB in the beginning and 221.7MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. [2023-12-21 10:13:47,364 INFO L158 Benchmark]: Boogie Preprocessor took 34.74ms. Allocated memory is still 289.4MB. Free memory was 221.7MB in the beginning and 219.1MB in the end (delta: 2.6MB). Peak memory consumption was 3.1MB. Max. memory is 8.0GB. [2023-12-21 10:13:47,364 INFO L158 Benchmark]: RCFGBuilder took 395.04ms. Allocated memory is still 289.4MB. Free memory was 219.1MB in the beginning and 197.1MB in the end (delta: 22.0MB). Peak memory consumption was 22.0MB. Max. memory is 8.0GB. [2023-12-21 10:13:47,364 INFO L158 Benchmark]: TraceAbstraction took 8194.87ms. Allocated memory was 289.4MB in the beginning and 418.4MB in the end (delta: 129.0MB). Free memory was 196.6MB in the beginning and 162.3MB in the end (delta: 34.3MB). Peak memory consumption was 166.9MB. Max. memory is 8.0GB. [2023-12-21 10:13:47,365 INFO L338 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.38ms. Allocated memory is still 207.6MB. Free memory was 157.0MB in the beginning and 156.8MB in the end (delta: 188.8kB). There was no memory consumed. Max. memory is 8.0GB. * CACSL2BoogieTranslator took 374.36ms. Allocated memory is still 289.4MB. Free memory was 244.3MB in the beginning and 223.8MB in the end (delta: 20.4MB). Peak memory consumption was 19.9MB. Max. memory is 8.0GB. * Boogie Procedure Inliner took 34.98ms. Allocated memory is still 289.4MB. Free memory was 223.8MB in the beginning and 221.7MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 8.0GB. * Boogie Preprocessor took 34.74ms. Allocated memory is still 289.4MB. Free memory was 221.7MB in the beginning and 219.1MB in the end (delta: 2.6MB). Peak memory consumption was 3.1MB. Max. memory is 8.0GB. * RCFGBuilder took 395.04ms. Allocated memory is still 289.4MB. Free memory was 219.1MB in the beginning and 197.1MB in the end (delta: 22.0MB). Peak memory consumption was 22.0MB. Max. memory is 8.0GB. * TraceAbstraction took 8194.87ms. Allocated memory was 289.4MB in the beginning and 418.4MB in the end (delta: 129.0MB). Free memory was 196.6MB in the beginning and 162.3MB in the end (delta: 34.3MB). Peak memory consumption was 166.9MB. Max. memory is 8.0GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: - GenericResultAtLocation [Line: 49]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"libacc.i","") [49] - GenericResultAtLocation [Line: 415]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Test.i","") [415] - GenericResultAtLocation [Line: 521]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"wsllib_check.i","") [521] - GenericResultAtLocation [Line: 530]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Specification5_spec.i","") [530] - GenericResultAtLocation [Line: 581]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"Environment.i","") [581] - GenericResultAtLocation [Line: 689]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"scenario.i","") [689] - GenericResultAtLocation [Line: 760]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"MinePump.i","") [760] - GenericResultAtLocation [Line: 985]: Unsoundness Warning Ignoring preprocessor pragma C: #pragma merger(0,"featureselect.i","") [985] * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 526]: a call to reach_error is unreachable For all program executions holds that a call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 77 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 8.1s, OverallIterations: 12, TraceHistogramMax: 5, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.5s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1882 SdHoareTripleChecker+Valid, 1.7s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1828 mSDsluCounter, 3600 SdHoareTripleChecker+Invalid, 1.4s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2635 mSDsCounter, 619 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 3623 IncrementalHoareTripleChecker+Invalid, 4242 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 619 mSolverCounterUnsat, 965 mSDtfsCounter, 3623 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 717 GetRequests, 564 SyntacticMatches, 8 SemanticMatches, 145 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1059 ImplicationChecksByTransitivity, 0.8s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=715occurred in iteration=11, InterpolantAutomatonStates: 136, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.3s AutomataMinimizationTime, 12 MinimizatonAttempts, 328 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 24 LocationsWithAnnotation, 1264 PreInvPairs, 1417 NumberOfFragments, 1156 HoareAnnotationTreeSize, 1264 FormulaSimplifications, 5271 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 24 FormulaSimplificationsInter, 10705 FormulaSimplificationTreeSizeReductionInter, 2.2s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 1.6s InterpolantComputationTime, 857 NumberOfCodeBlocks, 857 NumberOfCodeBlocksAsserted, 14 NumberOfCheckSat, 1053 ConstructedInterpolants, 0 QuantifiedInterpolants, 2053 SizeOfPredicates, 5 NumberOfNonLiveVariables, 775 ConjunctsInSsa, 20 ConjunctsInUnsatCore, 16 InterpolantComputations, 10 PerfectInterpolantSequences, 628/703 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 702]: Loop Invariant Derived loop invariant: ((((((((1 <= pumpRunning) && (2 == waterLevel)) && (splverifierCounter == 0)) && (tmp == 1)) && !((0 == systemActive))) || ((((pumpRunning == 0) && (waterLevel <= 1)) && (splverifierCounter == 0)) && (tmp == 1))) || ((((pumpRunning == 0) && (2 == waterLevel)) && (splverifierCounter == 0)) && (tmp == 1))) || ((((((1 <= pumpRunning) && (waterLevel <= 1)) && (splverifierCounter == 0)) && (tmp == 1)) && (1 <= switchedOnBeforeTS)) && !((0 == systemActive)))) - InvariantResult [Line: 701]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 428]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2023-12-21 10:13:47,389 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Forceful destruction successful, exit code 0 Received shutdown request...