./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec2_product30.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 791161d1 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec2_product30.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash b2bdcdf2450fe12dc31eba38670a2ad19cdc8c29d88388843515301032876b8f --- Real Ultimate output --- This is Ultimate 0.2.2-?-791161d [2022-07-22 17:37:36,736 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-07-22 17:37:36,737 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-07-22 17:37:36,782 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-07-22 17:37:36,783 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-07-22 17:37:36,784 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-07-22 17:37:36,786 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-07-22 17:37:36,790 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-07-22 17:37:36,791 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-07-22 17:37:36,792 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-07-22 17:37:36,793 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-07-22 17:37:36,795 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-07-22 17:37:36,796 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-07-22 17:37:36,801 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-07-22 17:37:36,802 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-07-22 17:37:36,804 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-07-22 17:37:36,807 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-07-22 17:37:36,808 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-07-22 17:37:36,810 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-07-22 17:37:36,811 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-07-22 17:37:36,815 INFO L181 SettingsManager]: Resetting HornVerifier preferences to default values [2022-07-22 17:37:36,816 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-07-22 17:37:36,817 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-07-22 17:37:36,818 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-07-22 17:37:36,818 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-07-22 17:37:36,822 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-07-22 17:37:36,824 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-07-22 17:37:36,825 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-07-22 17:37:36,825 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-07-22 17:37:36,826 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-07-22 17:37:36,827 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-07-22 17:37:36,827 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-07-22 17:37:36,827 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-07-22 17:37:36,828 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-07-22 17:37:36,829 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-07-22 17:37:36,829 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-07-22 17:37:36,830 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-07-22 17:37:36,830 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-07-22 17:37:36,831 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-07-22 17:37:36,831 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-07-22 17:37:36,832 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-07-22 17:37:36,834 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-07-22 17:37:36,836 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2022-07-22 17:37:36,860 INFO L113 SettingsManager]: Loading preferences was successful [2022-07-22 17:37:36,861 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-07-22 17:37:36,861 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-07-22 17:37:36,861 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-07-22 17:37:36,862 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-07-22 17:37:36,862 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-07-22 17:37:36,862 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2022-07-22 17:37:36,862 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2022-07-22 17:37:36,863 INFO L138 SettingsManager]: * Use SBE=true [2022-07-22 17:37:36,864 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-07-22 17:37:36,864 INFO L138 SettingsManager]: * sizeof long=4 [2022-07-22 17:37:36,864 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-07-22 17:37:36,864 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-07-22 17:37:36,864 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-07-22 17:37:36,865 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-07-22 17:37:36,865 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-07-22 17:37:36,865 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-07-22 17:37:36,865 INFO L138 SettingsManager]: * sizeof long double=12 [2022-07-22 17:37:36,865 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-07-22 17:37:36,865 INFO L138 SettingsManager]: * Use constant arrays=true [2022-07-22 17:37:36,866 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-07-22 17:37:36,866 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-07-22 17:37:36,866 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2022-07-22 17:37:36,866 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-07-22 17:37:36,866 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-07-22 17:37:36,867 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-07-22 17:37:36,867 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-07-22 17:37:36,867 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-07-22 17:37:36,867 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2022-07-22 17:37:36,868 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-07-22 17:37:36,868 INFO L138 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2022-07-22 17:37:36,868 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2022-07-22 17:37:36,868 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-07-22 17:37:36,868 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> b2bdcdf2450fe12dc31eba38670a2ad19cdc8c29d88388843515301032876b8f [2022-07-22 17:37:37,100 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-07-22 17:37:37,120 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-07-22 17:37:37,122 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-07-22 17:37:37,123 INFO L271 PluginConnector]: Initializing CDTParser... [2022-07-22 17:37:37,124 INFO L275 PluginConnector]: CDTParser initialized [2022-07-22 17:37:37,125 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec2_product30.cil.c [2022-07-22 17:37:37,197 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b9c8b947b/680517b3d85e45e0bcf06cd3eaa30bee/FLAG0890da950 [2022-07-22 17:37:37,630 INFO L306 CDTParser]: Found 1 translation units. [2022-07-22 17:37:37,632 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec2_product30.cil.c [2022-07-22 17:37:37,645 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b9c8b947b/680517b3d85e45e0bcf06cd3eaa30bee/FLAG0890da950 [2022-07-22 17:37:37,664 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b9c8b947b/680517b3d85e45e0bcf06cd3eaa30bee [2022-07-22 17:37:37,666 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-07-22 17:37:37,667 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-07-22 17:37:37,669 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-07-22 17:37:37,669 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-07-22 17:37:37,672 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-07-22 17:37:37,673 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 22.07 05:37:37" (1/1) ... [2022-07-22 17:37:37,673 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@4d5f4a8b and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:37, skipping insertion in model container [2022-07-22 17:37:37,674 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 22.07 05:37:37" (1/1) ... [2022-07-22 17:37:37,679 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-07-22 17:37:37,720 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-07-22 17:37:37,962 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec2_product30.cil.c[17982,17995] [2022-07-22 17:37:37,966 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-07-22 17:37:37,973 INFO L203 MainTranslator]: Completed pre-run [2022-07-22 17:37:38,025 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec2_product30.cil.c[17982,17995] [2022-07-22 17:37:38,027 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-07-22 17:37:38,041 INFO L208 MainTranslator]: Completed translation [2022-07-22 17:37:38,045 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38 WrapperNode [2022-07-22 17:37:38,046 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-07-22 17:37:38,047 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-07-22 17:37:38,047 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-07-22 17:37:38,047 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-07-22 17:37:38,053 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (1/1) ... [2022-07-22 17:37:38,065 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (1/1) ... [2022-07-22 17:37:38,089 INFO L137 Inliner]: procedures = 56, calls = 157, calls flagged for inlining = 21, calls inlined = 17, statements flattened = 233 [2022-07-22 17:37:38,094 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-07-22 17:37:38,095 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-07-22 17:37:38,095 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-07-22 17:37:38,095 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-07-22 17:37:38,101 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (1/1) ... [2022-07-22 17:37:38,102 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (1/1) ... [2022-07-22 17:37:38,104 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (1/1) ... [2022-07-22 17:37:38,104 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (1/1) ... [2022-07-22 17:37:38,109 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (1/1) ... [2022-07-22 17:37:38,116 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (1/1) ... [2022-07-22 17:37:38,117 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (1/1) ... [2022-07-22 17:37:38,119 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-07-22 17:37:38,136 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-07-22 17:37:38,136 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-07-22 17:37:38,136 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-07-22 17:37:38,137 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (1/1) ... [2022-07-22 17:37:38,153 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-07-22 17:37:38,163 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2022-07-22 17:37:38,173 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-07-22 17:37:38,175 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-07-22 17:37:38,201 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-07-22 17:37:38,201 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-07-22 17:37:38,202 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-07-22 17:37:38,202 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2022-07-22 17:37:38,202 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2022-07-22 17:37:38,202 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-07-22 17:37:38,202 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-07-22 17:37:38,202 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-07-22 17:37:38,203 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-07-22 17:37:38,203 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-07-22 17:37:38,203 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-07-22 17:37:38,203 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2022-07-22 17:37:38,203 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2022-07-22 17:37:38,203 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2022-07-22 17:37:38,205 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2022-07-22 17:37:38,205 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2022-07-22 17:37:38,205 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2022-07-22 17:37:38,205 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-07-22 17:37:38,205 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-07-22 17:37:38,205 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-07-22 17:37:38,206 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-07-22 17:37:38,206 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-07-22 17:37:38,279 INFO L234 CfgBuilder]: Building ICFG [2022-07-22 17:37:38,281 INFO L260 CfgBuilder]: Building CFG for each procedure with an implementation [2022-07-22 17:37:38,540 INFO L275 CfgBuilder]: Performing block encoding [2022-07-22 17:37:38,546 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-07-22 17:37:38,547 INFO L299 CfgBuilder]: Removed 2 assume(true) statements. [2022-07-22 17:37:38,548 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 22.07 05:37:38 BoogieIcfgContainer [2022-07-22 17:37:38,548 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-07-22 17:37:38,550 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-07-22 17:37:38,550 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-07-22 17:37:38,553 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-07-22 17:37:38,553 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 22.07 05:37:37" (1/3) ... [2022-07-22 17:37:38,554 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@47444566 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 22.07 05:37:38, skipping insertion in model container [2022-07-22 17:37:38,554 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:37:38" (2/3) ... [2022-07-22 17:37:38,554 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@47444566 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 22.07 05:37:38, skipping insertion in model container [2022-07-22 17:37:38,554 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 22.07 05:37:38" (3/3) ... [2022-07-22 17:37:38,555 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec2_product30.cil.c [2022-07-22 17:37:38,566 INFO L201 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-07-22 17:37:38,566 INFO L160 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-07-22 17:37:38,607 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-07-22 17:37:38,612 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=de.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings@3b962125, mLbeIndependenceSettings=de.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings@7e9596dc [2022-07-22 17:37:38,612 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-07-22 17:37:38,620 INFO L276 IsEmpty]: Start isEmpty. Operand has 94 states, 68 states have (on average 1.3676470588235294) internal successors, (93), 76 states have internal predecessors, (93), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 11 states have call predecessors, (15), 15 states have call successors, (15) [2022-07-22 17:37:38,629 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2022-07-22 17:37:38,629 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:37:38,629 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:37:38,630 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:37:38,634 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:37:38,636 INFO L85 PathProgramCache]: Analyzing trace with hash 975753900, now seen corresponding path program 1 times [2022-07-22 17:37:38,645 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:37:38,645 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [96010324] [2022-07-22 17:37:38,645 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:37:38,646 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:37:38,762 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:38,844 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-22 17:37:38,850 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:38,860 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-22 17:37:38,861 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:37:38,861 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [96010324] [2022-07-22 17:37:38,862 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [96010324] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-22 17:37:38,862 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-22 17:37:38,862 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-07-22 17:37:38,864 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1033746977] [2022-07-22 17:37:38,864 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-22 17:37:38,869 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-07-22 17:37:38,869 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:37:38,896 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-07-22 17:37:38,898 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-07-22 17:37:38,900 INFO L87 Difference]: Start difference. First operand has 94 states, 68 states have (on average 1.3676470588235294) internal successors, (93), 76 states have internal predecessors, (93), 15 states have call successors, (15), 9 states have call predecessors, (15), 9 states have return successors, (15), 11 states have call predecessors, (15), 15 states have call successors, (15) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-22 17:37:38,928 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:37:38,928 INFO L93 Difference]: Finished difference Result 179 states and 240 transitions. [2022-07-22 17:37:38,929 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-07-22 17:37:38,930 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2022-07-22 17:37:38,930 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:37:38,941 INFO L225 Difference]: With dead ends: 179 [2022-07-22 17:37:38,941 INFO L226 Difference]: Without dead ends: 85 [2022-07-22 17:37:38,945 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-07-22 17:37:38,949 INFO L413 NwaCegarLoop]: 117 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 117 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-22 17:37:38,951 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 117 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-22 17:37:38,962 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 85 states. [2022-07-22 17:37:38,991 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 85 to 85. [2022-07-22 17:37:38,992 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 85 states, 61 states have (on average 1.2950819672131149) internal successors, (79), 68 states have internal predecessors, (79), 15 states have call successors, (15), 9 states have call predecessors, (15), 8 states have return successors, (14), 10 states have call predecessors, (14), 14 states have call successors, (14) [2022-07-22 17:37:38,994 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 85 states to 85 states and 108 transitions. [2022-07-22 17:37:38,996 INFO L78 Accepts]: Start accepts. Automaton has 85 states and 108 transitions. Word has length 25 [2022-07-22 17:37:38,996 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:37:38,996 INFO L495 AbstractCegarLoop]: Abstraction has 85 states and 108 transitions. [2022-07-22 17:37:38,996 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-22 17:37:38,997 INFO L276 IsEmpty]: Start isEmpty. Operand 85 states and 108 transitions. [2022-07-22 17:37:38,999 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2022-07-22 17:37:38,999 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:37:38,999 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:37:38,999 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-07-22 17:37:39,000 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:37:39,000 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:37:39,001 INFO L85 PathProgramCache]: Analyzing trace with hash -638241596, now seen corresponding path program 1 times [2022-07-22 17:37:39,001 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:37:39,001 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1424369544] [2022-07-22 17:37:39,001 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:37:39,001 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:37:39,024 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,055 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 16 [2022-07-22 17:37:39,057 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,059 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-22 17:37:39,059 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:37:39,059 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1424369544] [2022-07-22 17:37:39,060 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1424369544] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-22 17:37:39,060 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-22 17:37:39,060 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-07-22 17:37:39,060 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1700423107] [2022-07-22 17:37:39,060 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-22 17:37:39,062 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-07-22 17:37:39,062 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:37:39,062 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-07-22 17:37:39,063 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-22 17:37:39,063 INFO L87 Difference]: Start difference. First operand 85 states and 108 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-22 17:37:39,078 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:37:39,078 INFO L93 Difference]: Finished difference Result 134 states and 170 transitions. [2022-07-22 17:37:39,079 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-07-22 17:37:39,079 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2022-07-22 17:37:39,079 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:37:39,080 INFO L225 Difference]: With dead ends: 134 [2022-07-22 17:37:39,080 INFO L226 Difference]: Without dead ends: 76 [2022-07-22 17:37:39,081 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-22 17:37:39,082 INFO L413 NwaCegarLoop]: 95 mSDtfsCounter, 13 mSDsluCounter, 78 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 173 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-22 17:37:39,083 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 173 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-22 17:37:39,084 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2022-07-22 17:37:39,091 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 76. [2022-07-22 17:37:39,091 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 55 states have (on average 1.309090909090909) internal successors, (72), 62 states have internal predecessors, (72), 12 states have call successors, (12), 8 states have call predecessors, (12), 8 states have return successors, (12), 8 states have call predecessors, (12), 12 states have call successors, (12) [2022-07-22 17:37:39,093 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 96 transitions. [2022-07-22 17:37:39,093 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 96 transitions. Word has length 26 [2022-07-22 17:37:39,093 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:37:39,093 INFO L495 AbstractCegarLoop]: Abstraction has 76 states and 96 transitions. [2022-07-22 17:37:39,094 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-22 17:37:39,094 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 96 transitions. [2022-07-22 17:37:39,095 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2022-07-22 17:37:39,099 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:37:39,099 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:37:39,099 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-07-22 17:37:39,099 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:37:39,100 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:37:39,100 INFO L85 PathProgramCache]: Analyzing trace with hash 1981192212, now seen corresponding path program 1 times [2022-07-22 17:37:39,100 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:37:39,100 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1512061034] [2022-07-22 17:37:39,100 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:37:39,101 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:37:39,141 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,225 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2022-07-22 17:37:39,227 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,230 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-22 17:37:39,231 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:37:39,232 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1512061034] [2022-07-22 17:37:39,233 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1512061034] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-22 17:37:39,233 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-22 17:37:39,234 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-07-22 17:37:39,234 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1852428092] [2022-07-22 17:37:39,234 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-22 17:37:39,235 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-07-22 17:37:39,235 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:37:39,236 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-07-22 17:37:39,236 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2022-07-22 17:37:39,236 INFO L87 Difference]: Start difference. First operand 76 states and 96 transitions. Second operand has 6 states, 6 states have (on average 4.666666666666667) internal successors, (28), 6 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-22 17:37:39,341 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:37:39,342 INFO L93 Difference]: Finished difference Result 144 states and 185 transitions. [2022-07-22 17:37:39,342 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-07-22 17:37:39,343 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.666666666666667) internal successors, (28), 6 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2022-07-22 17:37:39,343 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:37:39,344 INFO L225 Difference]: With dead ends: 144 [2022-07-22 17:37:39,344 INFO L226 Difference]: Without dead ends: 76 [2022-07-22 17:37:39,345 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2022-07-22 17:37:39,346 INFO L413 NwaCegarLoop]: 89 mSDtfsCounter, 123 mSDsluCounter, 100 mSDsCounter, 0 mSdLazyCounter, 53 mSolverCounterSat, 13 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 123 SdHoareTripleChecker+Valid, 189 SdHoareTripleChecker+Invalid, 66 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 13 IncrementalHoareTripleChecker+Valid, 53 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-07-22 17:37:39,347 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [123 Valid, 189 Invalid, 66 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [13 Valid, 53 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-07-22 17:37:39,347 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 76 states. [2022-07-22 17:37:39,354 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 76 to 76. [2022-07-22 17:37:39,354 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 76 states, 55 states have (on average 1.290909090909091) internal successors, (71), 62 states have internal predecessors, (71), 12 states have call successors, (12), 8 states have call predecessors, (12), 8 states have return successors, (12), 8 states have call predecessors, (12), 12 states have call successors, (12) [2022-07-22 17:37:39,355 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 76 states to 76 states and 95 transitions. [2022-07-22 17:37:39,356 INFO L78 Accepts]: Start accepts. Automaton has 76 states and 95 transitions. Word has length 31 [2022-07-22 17:37:39,356 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:37:39,356 INFO L495 AbstractCegarLoop]: Abstraction has 76 states and 95 transitions. [2022-07-22 17:37:39,356 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.666666666666667) internal successors, (28), 6 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-22 17:37:39,357 INFO L276 IsEmpty]: Start isEmpty. Operand 76 states and 95 transitions. [2022-07-22 17:37:39,358 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2022-07-22 17:37:39,358 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:37:39,358 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:37:39,358 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-07-22 17:37:39,358 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:37:39,359 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:37:39,359 INFO L85 PathProgramCache]: Analyzing trace with hash 1055507879, now seen corresponding path program 1 times [2022-07-22 17:37:39,359 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:37:39,360 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1214934069] [2022-07-22 17:37:39,360 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:37:39,360 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:37:39,377 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,421 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2022-07-22 17:37:39,423 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,427 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-22 17:37:39,427 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,430 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2022-07-22 17:37:39,432 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,445 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-22 17:37:39,445 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:37:39,445 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1214934069] [2022-07-22 17:37:39,445 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1214934069] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-22 17:37:39,446 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-22 17:37:39,446 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2022-07-22 17:37:39,446 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1903714664] [2022-07-22 17:37:39,446 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-22 17:37:39,447 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2022-07-22 17:37:39,448 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:37:39,448 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2022-07-22 17:37:39,449 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2022-07-22 17:37:39,449 INFO L87 Difference]: Start difference. First operand 76 states and 95 transitions. Second operand has 7 states, 7 states have (on average 4.857142857142857) internal successors, (34), 5 states have internal predecessors, (34), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2022-07-22 17:37:39,720 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:37:39,721 INFO L93 Difference]: Finished difference Result 238 states and 304 transitions. [2022-07-22 17:37:39,721 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2022-07-22 17:37:39,722 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 4.857142857142857) internal successors, (34), 5 states have internal predecessors, (34), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) Word has length 41 [2022-07-22 17:37:39,722 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:37:39,728 INFO L225 Difference]: With dead ends: 238 [2022-07-22 17:37:39,729 INFO L226 Difference]: Without dead ends: 170 [2022-07-22 17:37:39,729 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 23 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=53, Invalid=157, Unknown=0, NotChecked=0, Total=210 [2022-07-22 17:37:39,731 INFO L413 NwaCegarLoop]: 94 mSDtfsCounter, 136 mSDsluCounter, 316 mSDsCounter, 0 mSdLazyCounter, 232 mSolverCounterSat, 56 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 144 SdHoareTripleChecker+Valid, 410 SdHoareTripleChecker+Invalid, 288 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 56 IncrementalHoareTripleChecker+Valid, 232 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-07-22 17:37:39,731 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [144 Valid, 410 Invalid, 288 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [56 Valid, 232 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-07-22 17:37:39,742 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 170 states. [2022-07-22 17:37:39,760 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 170 to 139. [2022-07-22 17:37:39,760 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 139 states, 98 states have (on average 1.2857142857142858) internal successors, (126), 111 states have internal predecessors, (126), 24 states have call successors, (24), 16 states have call predecessors, (24), 16 states have return successors, (25), 16 states have call predecessors, (25), 24 states have call successors, (25) [2022-07-22 17:37:39,767 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 139 states to 139 states and 175 transitions. [2022-07-22 17:37:39,767 INFO L78 Accepts]: Start accepts. Automaton has 139 states and 175 transitions. Word has length 41 [2022-07-22 17:37:39,767 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:37:39,768 INFO L495 AbstractCegarLoop]: Abstraction has 139 states and 175 transitions. [2022-07-22 17:37:39,768 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 4.857142857142857) internal successors, (34), 5 states have internal predecessors, (34), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2022-07-22 17:37:39,768 INFO L276 IsEmpty]: Start isEmpty. Operand 139 states and 175 transitions. [2022-07-22 17:37:39,770 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2022-07-22 17:37:39,770 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:37:39,770 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:37:39,770 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-07-22 17:37:39,770 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:37:39,770 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:37:39,771 INFO L85 PathProgramCache]: Analyzing trace with hash -1634457109, now seen corresponding path program 1 times [2022-07-22 17:37:39,771 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:37:39,771 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1709139683] [2022-07-22 17:37:39,771 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:37:39,771 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:37:39,803 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,859 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2022-07-22 17:37:39,864 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,871 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2022-07-22 17:37:39,873 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,878 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-22 17:37:39,882 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,883 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2022-07-22 17:37:39,888 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:37:39,891 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-22 17:37:39,891 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:37:39,896 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1709139683] [2022-07-22 17:37:39,896 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1709139683] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-22 17:37:39,896 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-22 17:37:39,896 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2022-07-22 17:37:39,897 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1111274341] [2022-07-22 17:37:39,897 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-22 17:37:39,897 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2022-07-22 17:37:39,898 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:37:39,898 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2022-07-22 17:37:39,899 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2022-07-22 17:37:39,899 INFO L87 Difference]: Start difference. First operand 139 states and 175 transitions. Second operand has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 5 states have internal predecessors, (36), 1 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2022-07-22 17:37:40,007 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:37:40,008 INFO L93 Difference]: Finished difference Result 226 states and 286 transitions. [2022-07-22 17:37:40,008 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-07-22 17:37:40,008 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 5 states have internal predecessors, (36), 1 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) Word has length 45 [2022-07-22 17:37:40,009 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:37:40,009 INFO L225 Difference]: With dead ends: 226 [2022-07-22 17:37:40,009 INFO L226 Difference]: Without dead ends: 0 [2022-07-22 17:37:40,012 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 21 GetRequests, 12 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=39, Invalid=71, Unknown=0, NotChecked=0, Total=110 [2022-07-22 17:37:40,014 INFO L413 NwaCegarLoop]: 45 mSDtfsCounter, 71 mSDsluCounter, 92 mSDsCounter, 0 mSdLazyCounter, 92 mSolverCounterSat, 27 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 72 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 119 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 27 IncrementalHoareTripleChecker+Valid, 92 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-07-22 17:37:40,014 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [72 Valid, 137 Invalid, 119 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [27 Valid, 92 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-07-22 17:37:40,015 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-07-22 17:37:40,015 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-07-22 17:37:40,015 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-07-22 17:37:40,015 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-07-22 17:37:40,015 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 45 [2022-07-22 17:37:40,015 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:37:40,016 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-07-22 17:37:40,016 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.142857142857143) internal successors, (36), 5 states have internal predecessors, (36), 1 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2022-07-22 17:37:40,016 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-07-22 17:37:40,016 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-07-22 17:37:40,019 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-07-22 17:37:40,020 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-07-22 17:37:40,021 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-07-22 17:37:40,527 INFO L902 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 834 841) the Hoare annotation is: true [2022-07-22 17:37:40,527 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 834 841) no Hoare annotation was computed. [2022-07-22 17:37:40,527 INFO L899 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 834 841) no Hoare annotation was computed. [2022-07-22 17:37:40,527 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 750 756) no Hoare annotation was computed. [2022-07-22 17:37:40,528 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 750 756) the Hoare annotation is: true [2022-07-22 17:37:40,528 INFO L899 garLoopResultBuilder]: For program point L592-1(lines 588 599) no Hoare annotation was computed. [2022-07-22 17:37:40,528 INFO L895 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 588 599) the Hoare annotation is: (or (not (= ~pumpRunning~0 0)) (not (= 1 ~systemActive~0)) (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0)) [2022-07-22 17:37:40,528 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 588 599) no Hoare annotation was computed. [2022-07-22 17:37:40,528 INFO L902 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 600 608) the Hoare annotation is: true [2022-07-22 17:37:40,528 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 600 608) no Hoare annotation was computed. [2022-07-22 17:37:40,528 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 600 608) no Hoare annotation was computed. [2022-07-22 17:37:40,528 INFO L899 garLoopResultBuilder]: For program point L737-1(lines 737 743) no Hoare annotation was computed. [2022-07-22 17:37:40,528 INFO L899 garLoopResultBuilder]: For program point L956(lines 956 966) no Hoare annotation was computed. [2022-07-22 17:37:40,528 INFO L899 garLoopResultBuilder]: For program point L568(lines 568 572) no Hoare annotation was computed. [2022-07-22 17:37:40,528 INFO L899 garLoopResultBuilder]: For program point L952(lines 952 969) no Hoare annotation was computed. [2022-07-22 17:37:40,528 INFO L895 garLoopResultBuilder]: At program point L952-1(lines 944 972) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0)) (= |timeShift___utac_acc__Specification2_spec__2_~tmp~9#1| 0)) (or .cse0 (= ~pumpRunning~0 0) .cse1))) [2022-07-22 17:37:40,529 INFO L895 garLoopResultBuilder]: At program point L568-2(lines 564 575) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,529 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 726 749) no Hoare annotation was computed. [2022-07-22 17:37:40,529 INFO L899 garLoopResultBuilder]: For program point L957(lines 957 963) no Hoare annotation was computed. [2022-07-22 17:37:40,529 INFO L895 garLoopResultBuilder]: At program point L858(lines 853 861) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (and (= ~pumpRunning~0 0) (= |timeShift_isPumpRunning_#res#1| 0))) (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0))))) [2022-07-22 17:37:40,529 INFO L899 garLoopResultBuilder]: For program point L730-1(lines 729 748) no Hoare annotation was computed. [2022-07-22 17:37:40,529 INFO L899 garLoopResultBuilder]: For program point L792(lines 792 800) no Hoare annotation was computed. [2022-07-22 17:37:40,529 INFO L899 garLoopResultBuilder]: For program point L788(lines 788 805) no Hoare annotation was computed. [2022-07-22 17:37:40,529 INFO L895 garLoopResultBuilder]: At program point L950(line 950) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,529 INFO L899 garLoopResultBuilder]: For program point L950-1(line 950) no Hoare annotation was computed. [2022-07-22 17:37:40,529 INFO L899 garLoopResultBuilder]: For program point L930(line 930) no Hoare annotation was computed. [2022-07-22 17:37:40,529 INFO L895 garLoopResultBuilder]: At program point L798(line 798) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,529 INFO L895 garLoopResultBuilder]: At program point L794(line 794) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,530 INFO L895 garLoopResultBuilder]: At program point L790(line 790) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,530 INFO L899 garLoopResultBuilder]: For program point L790-1(line 790) no Hoare annotation was computed. [2022-07-22 17:37:40,530 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 726 749) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,530 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 726 749) no Hoare annotation was computed. [2022-07-22 17:37:40,530 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 930) no Hoare annotation was computed. [2022-07-22 17:37:40,530 INFO L895 garLoopResultBuilder]: At program point L803(line 803) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,530 INFO L895 garLoopResultBuilder]: At program point L931(lines 926 933) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,530 INFO L895 garLoopResultBuilder]: At program point L803-1(lines 784 808) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,530 INFO L902 garLoopResultBuilder]: At program point L481(lines 456 485) the Hoare annotation is: true [2022-07-22 17:37:40,530 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 456 485) no Hoare annotation was computed. [2022-07-22 17:37:40,530 INFO L899 garLoopResultBuilder]: For program point L477(line 477) no Hoare annotation was computed. [2022-07-22 17:37:40,530 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 456 485) the Hoare annotation is: true [2022-07-22 17:37:40,531 INFO L899 garLoopResultBuilder]: For program point L470(lines 470 474) no Hoare annotation was computed. [2022-07-22 17:37:40,531 INFO L902 garLoopResultBuilder]: At program point L470-1(lines 470 474) the Hoare annotation is: true [2022-07-22 17:37:40,531 INFO L899 garLoopResultBuilder]: For program point L467(line 467) no Hoare annotation was computed. [2022-07-22 17:37:40,531 INFO L902 garLoopResultBuilder]: At program point L466-2(lines 466 480) the Hoare annotation is: true [2022-07-22 17:37:40,531 INFO L902 garLoopResultBuilder]: At program point L462(line 462) the Hoare annotation is: true [2022-07-22 17:37:40,531 INFO L899 garLoopResultBuilder]: For program point L462-1(line 462) no Hoare annotation was computed. [2022-07-22 17:37:40,531 INFO L899 garLoopResultBuilder]: For program point L543(lines 543 550) no Hoare annotation was computed. [2022-07-22 17:37:40,531 INFO L899 garLoopResultBuilder]: For program point L543-2(lines 543 550) no Hoare annotation was computed. [2022-07-22 17:37:40,531 INFO L899 garLoopResultBuilder]: For program point L700(lines 700 704) no Hoare annotation was computed. [2022-07-22 17:37:40,531 INFO L895 garLoopResultBuilder]: At program point L700-2(lines 692 705) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_main_~tmp~3#1| ~systemActive~0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2022-07-22 17:37:40,531 INFO L899 garLoopResultBuilder]: For program point L663(lines 662 709) no Hoare annotation was computed. [2022-07-22 17:37:40,531 INFO L899 garLoopResultBuilder]: For program point L692(lines 692 705) no Hoare annotation was computed. [2022-07-22 17:37:40,531 INFO L895 garLoopResultBuilder]: At program point L684(line 684) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_main_~tmp~3#1| ~systemActive~0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2022-07-22 17:37:40,531 INFO L902 garLoopResultBuilder]: At program point L713(lines 652 717) the Hoare annotation is: true [2022-07-22 17:37:40,532 INFO L902 garLoopResultBuilder]: At program point L552(lines 533 555) the Hoare annotation is: true [2022-07-22 17:37:40,532 INFO L895 garLoopResultBuilder]: At program point L449(lines 444 452) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0)) [2022-07-22 17:37:40,532 INFO L899 garLoopResultBuilder]: For program point L672(lines 672 678) no Hoare annotation was computed. [2022-07-22 17:37:40,532 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2022-07-22 17:37:40,532 INFO L899 garLoopResultBuilder]: For program point L672-1(lines 672 678) no Hoare annotation was computed. [2022-07-22 17:37:40,532 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2022-07-22 17:37:40,532 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2022-07-22 17:37:40,532 INFO L895 garLoopResultBuilder]: At program point L441(lines 437 443) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0)) [2022-07-22 17:37:40,532 INFO L899 garLoopResultBuilder]: For program point L664(lines 664 668) no Hoare annotation was computed. [2022-07-22 17:37:40,532 INFO L895 garLoopResultBuilder]: At program point L941(lines 936 943) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_main_~tmp~3#1| ~systemActive~0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0)) [2022-07-22 17:37:40,532 INFO L895 garLoopResultBuilder]: At program point L710(lines 661 711) the Hoare annotation is: false [2022-07-22 17:37:40,532 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-07-22 17:37:40,533 INFO L895 garLoopResultBuilder]: At program point L434(lines 430 436) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0)) [2022-07-22 17:37:40,533 INFO L899 garLoopResultBuilder]: For program point L682(lines 682 688) no Hoare annotation was computed. [2022-07-22 17:37:40,533 INFO L899 garLoopResultBuilder]: For program point L682-1(lines 682 688) no Hoare annotation was computed. [2022-07-22 17:37:40,533 INFO L895 garLoopResultBuilder]: At program point L517(lines 513 519) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_main_~tmp~3#1| ~systemActive~0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0)) [2022-07-22 17:37:40,533 INFO L895 garLoopResultBuilder]: At program point L707(lines 662 709) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_main_~tmp~3#1| ~systemActive~0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2022-07-22 17:37:40,533 INFO L895 garLoopResultBuilder]: At program point L674(line 674) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_main_~tmp~3#1| ~systemActive~0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2022-07-22 17:37:40,533 INFO L895 garLoopResultBuilder]: At program point L922(lines 917 924) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_main_~tmp~3#1| ~systemActive~0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2022-07-22 17:37:40,533 INFO L902 garLoopResultBuilder]: At program point L530(lines 522 532) the Hoare annotation is: true [2022-07-22 17:37:40,533 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 576 587) no Hoare annotation was computed. [2022-07-22 17:37:40,533 INFO L902 garLoopResultBuilder]: At program point waterRiseENTRY(lines 576 587) the Hoare annotation is: true [2022-07-22 17:37:40,533 INFO L899 garLoopResultBuilder]: For program point L580-1(lines 576 587) no Hoare annotation was computed. [2022-07-22 17:37:40,534 INFO L895 garLoopResultBuilder]: At program point L768(line 768) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,534 INFO L899 garLoopResultBuilder]: For program point L766(lines 766 774) no Hoare annotation was computed. [2022-07-22 17:37:40,534 INFO L899 garLoopResultBuilder]: For program point L762(lines 762 779) no Hoare annotation was computed. [2022-07-22 17:37:40,534 INFO L895 garLoopResultBuilder]: At program point L913(lines 898 916) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,534 INFO L899 garLoopResultBuilder]: For program point L907(lines 907 911) no Hoare annotation was computed. [2022-07-22 17:37:40,534 INFO L899 garLoopResultBuilder]: For program point L907-2(lines 907 911) no Hoare annotation was computed. [2022-07-22 17:37:40,534 INFO L895 garLoopResultBuilder]: At program point L777(line 777) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,534 INFO L899 garLoopResultBuilder]: For program point L777-1(lines 758 782) no Hoare annotation was computed. [2022-07-22 17:37:40,534 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__methaneQueryENTRY(lines 758 782) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,534 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 758 782) no Hoare annotation was computed. [2022-07-22 17:37:40,534 INFO L895 garLoopResultBuilder]: At program point L646(lines 641 649) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,534 INFO L895 garLoopResultBuilder]: At program point L772(line 772) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (= 1 ~systemActive~0))) [2022-07-22 17:37:40,534 INFO L902 garLoopResultBuilder]: At program point isMethaneAlarmENTRY(lines 842 852) the Hoare annotation is: true [2022-07-22 17:37:40,535 INFO L902 garLoopResultBuilder]: At program point L847(line 847) the Hoare annotation is: true [2022-07-22 17:37:40,535 INFO L899 garLoopResultBuilder]: For program point L847-1(line 847) no Hoare annotation was computed. [2022-07-22 17:37:40,535 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 842 852) no Hoare annotation was computed. [2022-07-22 17:37:40,535 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmFINAL(lines 842 852) no Hoare annotation was computed. [2022-07-22 17:37:40,542 INFO L356 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1] [2022-07-22 17:37:40,543 INFO L176 ceAbstractionStarter]: Computing trace abstraction results [2022-07-22 17:37:40,557 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 22.07 05:37:40 BoogieIcfgContainer [2022-07-22 17:37:40,568 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-07-22 17:37:40,568 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-07-22 17:37:40,568 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-07-22 17:37:40,569 INFO L275 PluginConnector]: Witness Printer initialized [2022-07-22 17:37:40,569 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 22.07 05:37:38" (3/4) ... [2022-07-22 17:37:40,572 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-07-22 17:37:40,577 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2022-07-22 17:37:40,577 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-07-22 17:37:40,577 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-07-22 17:37:40,577 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2022-07-22 17:37:40,577 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-07-22 17:37:40,577 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-07-22 17:37:40,578 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-07-22 17:37:40,578 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2022-07-22 17:37:40,578 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2022-07-22 17:37:40,583 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 50 nodes and edges [2022-07-22 17:37:40,584 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2022-07-22 17:37:40,584 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2022-07-22 17:37:40,584 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2022-07-22 17:37:40,585 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2022-07-22 17:37:40,585 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-07-22 17:37:40,586 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-07-22 17:37:40,604 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == systemActive [2022-07-22 17:37:40,604 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && tmp == systemActive) && methaneLevelCritical == 0) && 1 == systemActive) && \result == systemActive [2022-07-22 17:37:40,604 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && tmp == systemActive) && methaneLevelCritical == 0) && 1 == systemActive) && \result == systemActive [2022-07-22 17:37:40,605 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && tmp == systemActive) && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0 [2022-07-22 17:37:40,605 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 == systemActive) [2022-07-22 17:37:40,606 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive) [2022-07-22 17:37:40,606 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && tmp == systemActive) && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0 [2022-07-22 17:37:40,607 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) || tmp == 0) && ((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) [2022-07-22 17:37:40,607 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || (pumpRunning == 0 && \result == 0)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) [2022-07-22 17:37:40,607 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 == systemActive) [2022-07-22 17:37:40,607 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 == systemActive) [2022-07-22 17:37:40,608 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 == systemActive) [2022-07-22 17:37:40,625 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2022-07-22 17:37:40,625 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-07-22 17:37:40,626 INFO L158 Benchmark]: Toolchain (without parser) took 2959.07ms. Allocated memory was 88.1MB in the beginning and 117.4MB in the end (delta: 29.4MB). Free memory was 55.3MB in the beginning and 88.1MB in the end (delta: -32.8MB). There was no memory consumed. Max. memory is 16.1GB. [2022-07-22 17:37:40,626 INFO L158 Benchmark]: CDTParser took 0.21ms. Allocated memory is still 88.1MB. Free memory was 46.9MB in the beginning and 46.8MB in the end (delta: 39.8kB). There was no memory consumed. Max. memory is 16.1GB. [2022-07-22 17:37:40,626 INFO L158 Benchmark]: CACSL2BoogieTranslator took 376.96ms. Allocated memory was 88.1MB in the beginning and 117.4MB in the end (delta: 29.4MB). Free memory was 55.2MB in the beginning and 84.6MB in the end (delta: -29.5MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2022-07-22 17:37:40,627 INFO L158 Benchmark]: Boogie Procedure Inliner took 47.17ms. Allocated memory is still 117.4MB. Free memory was 84.6MB in the beginning and 82.5MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-07-22 17:37:40,627 INFO L158 Benchmark]: Boogie Preprocessor took 37.45ms. Allocated memory is still 117.4MB. Free memory was 82.5MB in the beginning and 81.1MB in the end (delta: 1.5MB). There was no memory consumed. Max. memory is 16.1GB. [2022-07-22 17:37:40,627 INFO L158 Benchmark]: RCFGBuilder took 412.26ms. Allocated memory is still 117.4MB. Free memory was 81.0MB in the beginning and 64.3MB in the end (delta: 16.7MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. [2022-07-22 17:37:40,628 INFO L158 Benchmark]: TraceAbstraction took 2018.12ms. Allocated memory is still 117.4MB. Free memory was 63.6MB in the beginning and 93.2MB in the end (delta: -29.6MB). Peak memory consumption was 30.9MB. Max. memory is 16.1GB. [2022-07-22 17:37:40,628 INFO L158 Benchmark]: Witness Printer took 57.03ms. Allocated memory is still 117.4MB. Free memory was 93.2MB in the beginning and 88.1MB in the end (delta: 5.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2022-07-22 17:37:40,629 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.21ms. Allocated memory is still 88.1MB. Free memory was 46.9MB in the beginning and 46.8MB in the end (delta: 39.8kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 376.96ms. Allocated memory was 88.1MB in the beginning and 117.4MB in the end (delta: 29.4MB). Free memory was 55.2MB in the beginning and 84.6MB in the end (delta: -29.5MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 47.17ms. Allocated memory is still 117.4MB. Free memory was 84.6MB in the beginning and 82.5MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 37.45ms. Allocated memory is still 117.4MB. Free memory was 82.5MB in the beginning and 81.1MB in the end (delta: 1.5MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 412.26ms. Allocated memory is still 117.4MB. Free memory was 81.0MB in the beginning and 64.3MB in the end (delta: 16.7MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. * TraceAbstraction took 2018.12ms. Allocated memory is still 117.4MB. Free memory was 63.6MB in the beginning and 93.2MB in the end (delta: -29.6MB). Peak memory consumption was 30.9MB. Max. memory is 16.1GB. * Witness Printer took 57.03ms. Allocated memory is still 117.4MB. Free memory was 93.2MB in the beginning and 88.1MB in the end (delta: 5.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 930]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 10 procedures, 94 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 1.9s, OverallIterations: 5, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.5s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 355 SdHoareTripleChecker+Valid, 0.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 343 mSDsluCounter, 1026 SdHoareTripleChecker+Invalid, 0.3s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 586 mSDsCounter, 96 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 378 IncrementalHoareTripleChecker+Invalid, 474 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 96 mSolverCounterUnsat, 440 mSDtfsCounter, 378 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 58 GetRequests, 29 SyntacticMatches, 0 SemanticMatches, 29 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 26 ImplicationChecksByTransitivity, 0.1s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=139occurred in iteration=4, InterpolantAutomatonStates: 30, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 5 MinimizatonAttempts, 31 StatesRemovedByMinimization, 1 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 43 LocationsWithAnnotation, 295 PreInvPairs, 319 NumberOfFragments, 384 HoareAnnotationTreeSize, 295 FomulaSimplifications, 74 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 43 FomulaSimplificationsInter, 662 FormulaSimplificationTreeSizeReductionInter, 0.4s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 0.4s InterpolantComputationTime, 168 NumberOfCodeBlocks, 168 NumberOfCodeBlocksAsserted, 5 NumberOfCheckSat, 163 ConstructedInterpolants, 0 QuantifiedInterpolants, 345 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 5 InterpolantComputations, 5 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 444]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == systemActive - InvariantResult [Line: 661]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 784]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive) - InvariantResult [Line: 917]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && tmp == systemActive) && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0 - InvariantResult [Line: 936]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && tmp == systemActive) && methaneLevelCritical == 0) && 1 == systemActive) && \result == systemActive - InvariantResult [Line: 437]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive - InvariantResult [Line: 944]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) || tmp == 0) && ((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) - InvariantResult [Line: 898]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 == systemActive) - InvariantResult [Line: 522]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 533]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 662]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && tmp == systemActive) && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0 - InvariantResult [Line: 456]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 641]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 == systemActive) - InvariantResult [Line: 853]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || (pumpRunning == 0 && \result == 0)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(methaneLevelCritical == 0)) - InvariantResult [Line: 564]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 == systemActive) - InvariantResult [Line: 926]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 == systemActive) - InvariantResult [Line: 652]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 466]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 430]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive - InvariantResult [Line: 513]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && tmp == systemActive) && methaneLevelCritical == 0) && 1 == systemActive) && \result == systemActive RESULT: Ultimate proved your program to be correct! [2022-07-22 17:37:40,676 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE