./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec4_product30.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 791161d1 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec4_product30.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 57b9da01117a2ba17baea08a2ca63a083a2352f35e4a8b92086e48b0ce29e696 --- Real Ultimate output --- This is Ultimate 0.2.2-?-791161d [2022-07-22 17:39:00,386 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-07-22 17:39:00,388 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-07-22 17:39:00,434 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-07-22 17:39:00,434 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-07-22 17:39:00,436 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-07-22 17:39:00,439 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-07-22 17:39:00,442 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-07-22 17:39:00,444 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-07-22 17:39:00,448 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-07-22 17:39:00,449 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-07-22 17:39:00,451 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-07-22 17:39:00,452 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-07-22 17:39:00,454 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-07-22 17:39:00,455 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-07-22 17:39:00,456 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-07-22 17:39:00,456 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-07-22 17:39:00,458 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-07-22 17:39:00,461 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-07-22 17:39:00,466 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-07-22 17:39:00,468 INFO L181 SettingsManager]: Resetting HornVerifier preferences to default values [2022-07-22 17:39:00,470 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-07-22 17:39:00,470 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-07-22 17:39:00,471 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-07-22 17:39:00,473 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-07-22 17:39:00,479 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-07-22 17:39:00,480 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-07-22 17:39:00,480 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-07-22 17:39:00,481 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-07-22 17:39:00,482 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-07-22 17:39:00,483 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-07-22 17:39:00,483 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-07-22 17:39:00,485 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-07-22 17:39:00,486 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-07-22 17:39:00,486 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-07-22 17:39:00,487 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-07-22 17:39:00,487 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-07-22 17:39:00,488 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-07-22 17:39:00,488 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-07-22 17:39:00,488 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-07-22 17:39:00,489 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-07-22 17:39:00,491 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-07-22 17:39:00,492 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2022-07-22 17:39:00,520 INFO L113 SettingsManager]: Loading preferences was successful [2022-07-22 17:39:00,521 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-07-22 17:39:00,521 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-07-22 17:39:00,521 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-07-22 17:39:00,522 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-07-22 17:39:00,522 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-07-22 17:39:00,523 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2022-07-22 17:39:00,523 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2022-07-22 17:39:00,523 INFO L138 SettingsManager]: * Use SBE=true [2022-07-22 17:39:00,524 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-07-22 17:39:00,524 INFO L138 SettingsManager]: * sizeof long=4 [2022-07-22 17:39:00,525 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-07-22 17:39:00,525 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-07-22 17:39:00,525 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-07-22 17:39:00,525 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-07-22 17:39:00,525 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-07-22 17:39:00,526 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-07-22 17:39:00,526 INFO L138 SettingsManager]: * sizeof long double=12 [2022-07-22 17:39:00,526 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-07-22 17:39:00,526 INFO L138 SettingsManager]: * Use constant arrays=true [2022-07-22 17:39:00,527 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-07-22 17:39:00,527 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-07-22 17:39:00,527 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2022-07-22 17:39:00,527 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-07-22 17:39:00,528 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-07-22 17:39:00,528 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-07-22 17:39:00,528 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-07-22 17:39:00,528 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-07-22 17:39:00,528 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2022-07-22 17:39:00,529 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-07-22 17:39:00,529 INFO L138 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2022-07-22 17:39:00,529 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2022-07-22 17:39:00,530 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-07-22 17:39:00,530 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 57b9da01117a2ba17baea08a2ca63a083a2352f35e4a8b92086e48b0ce29e696 [2022-07-22 17:39:00,769 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-07-22 17:39:00,791 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-07-22 17:39:00,793 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-07-22 17:39:00,795 INFO L271 PluginConnector]: Initializing CDTParser... [2022-07-22 17:39:00,796 INFO L275 PluginConnector]: CDTParser initialized [2022-07-22 17:39:00,797 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec4_product30.cil.c [2022-07-22 17:39:00,866 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/724271bec/9c405ebeb3984593810f4ecbde96de5a/FLAG4c20f66f0 [2022-07-22 17:39:01,291 INFO L306 CDTParser]: Found 1 translation units. [2022-07-22 17:39:01,292 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product30.cil.c [2022-07-22 17:39:01,302 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/724271bec/9c405ebeb3984593810f4ecbde96de5a/FLAG4c20f66f0 [2022-07-22 17:39:01,659 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/724271bec/9c405ebeb3984593810f4ecbde96de5a [2022-07-22 17:39:01,661 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-07-22 17:39:01,662 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-07-22 17:39:01,664 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-07-22 17:39:01,664 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-07-22 17:39:01,669 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-07-22 17:39:01,670 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 22.07 05:39:01" (1/1) ... [2022-07-22 17:39:01,671 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@3071c83d and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:01, skipping insertion in model container [2022-07-22 17:39:01,671 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 22.07 05:39:01" (1/1) ... [2022-07-22 17:39:01,677 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-07-22 17:39:01,721 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-07-22 17:39:01,960 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product30.cil.c[18223,18236] [2022-07-22 17:39:01,967 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-07-22 17:39:01,980 INFO L203 MainTranslator]: Completed pre-run [2022-07-22 17:39:02,060 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product30.cil.c[18223,18236] [2022-07-22 17:39:02,060 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-07-22 17:39:02,088 INFO L208 MainTranslator]: Completed translation [2022-07-22 17:39:02,089 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02 WrapperNode [2022-07-22 17:39:02,089 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-07-22 17:39:02,090 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-07-22 17:39:02,090 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-07-22 17:39:02,093 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-07-22 17:39:02,099 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (1/1) ... [2022-07-22 17:39:02,120 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (1/1) ... [2022-07-22 17:39:02,146 INFO L137 Inliner]: procedures = 55, calls = 156, calls flagged for inlining = 22, calls inlined = 18, statements flattened = 246 [2022-07-22 17:39:02,147 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-07-22 17:39:02,148 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-07-22 17:39:02,149 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-07-22 17:39:02,149 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-07-22 17:39:02,155 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (1/1) ... [2022-07-22 17:39:02,155 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (1/1) ... [2022-07-22 17:39:02,157 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (1/1) ... [2022-07-22 17:39:02,157 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (1/1) ... [2022-07-22 17:39:02,162 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (1/1) ... [2022-07-22 17:39:02,166 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (1/1) ... [2022-07-22 17:39:02,177 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (1/1) ... [2022-07-22 17:39:02,179 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-07-22 17:39:02,180 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-07-22 17:39:02,180 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-07-22 17:39:02,180 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-07-22 17:39:02,188 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (1/1) ... [2022-07-22 17:39:02,205 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-07-22 17:39:02,213 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2022-07-22 17:39:02,222 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-07-22 17:39:02,223 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-07-22 17:39:02,254 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-07-22 17:39:02,254 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-07-22 17:39:02,254 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-07-22 17:39:02,255 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-07-22 17:39:02,255 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-07-22 17:39:02,255 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-07-22 17:39:02,255 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-07-22 17:39:02,255 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-07-22 17:39:02,255 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-07-22 17:39:02,256 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2022-07-22 17:39:02,256 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2022-07-22 17:39:02,256 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2022-07-22 17:39:02,256 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2022-07-22 17:39:02,256 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2022-07-22 17:39:02,256 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2022-07-22 17:39:02,256 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-07-22 17:39:02,257 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-07-22 17:39:02,257 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-07-22 17:39:02,257 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-07-22 17:39:02,257 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-07-22 17:39:02,327 INFO L234 CfgBuilder]: Building ICFG [2022-07-22 17:39:02,328 INFO L260 CfgBuilder]: Building CFG for each procedure with an implementation [2022-07-22 17:39:02,598 INFO L275 CfgBuilder]: Performing block encoding [2022-07-22 17:39:02,607 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-07-22 17:39:02,608 INFO L299 CfgBuilder]: Removed 2 assume(true) statements. [2022-07-22 17:39:02,617 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 22.07 05:39:02 BoogieIcfgContainer [2022-07-22 17:39:02,618 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-07-22 17:39:02,619 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-07-22 17:39:02,619 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-07-22 17:39:02,635 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-07-22 17:39:02,636 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 22.07 05:39:01" (1/3) ... [2022-07-22 17:39:02,636 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@463a0ca7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 22.07 05:39:02, skipping insertion in model container [2022-07-22 17:39:02,637 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 22.07 05:39:02" (2/3) ... [2022-07-22 17:39:02,637 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@463a0ca7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 22.07 05:39:02, skipping insertion in model container [2022-07-22 17:39:02,637 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 22.07 05:39:02" (3/3) ... [2022-07-22 17:39:02,638 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product30.cil.c [2022-07-22 17:39:02,650 INFO L201 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-07-22 17:39:02,651 INFO L160 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-07-22 17:39:02,694 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-07-22 17:39:02,700 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=de.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings@2a980ec6, mLbeIndependenceSettings=de.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings@22738e1a [2022-07-22 17:39:02,700 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-07-22 17:39:02,704 INFO L276 IsEmpty]: Start isEmpty. Operand has 87 states, 64 states have (on average 1.375) internal successors, (88), 72 states have internal predecessors, (88), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 9 states have call predecessors, (13), 13 states have call successors, (13) [2022-07-22 17:39:02,712 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2022-07-22 17:39:02,712 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:39:02,713 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:39:02,713 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:39:02,717 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:39:02,718 INFO L85 PathProgramCache]: Analyzing trace with hash 1651489756, now seen corresponding path program 1 times [2022-07-22 17:39:02,725 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:39:02,726 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1915644507] [2022-07-22 17:39:02,726 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:39:02,727 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:39:02,822 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:02,910 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-22 17:39:02,911 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:39:02,912 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1915644507] [2022-07-22 17:39:02,912 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1915644507] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-22 17:39:02,913 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-22 17:39:02,913 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-07-22 17:39:02,914 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1658063497] [2022-07-22 17:39:02,915 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-22 17:39:02,920 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-07-22 17:39:02,921 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:39:02,953 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-07-22 17:39:02,954 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-07-22 17:39:02,957 INFO L87 Difference]: Start difference. First operand has 87 states, 64 states have (on average 1.375) internal successors, (88), 72 states have internal predecessors, (88), 13 states have call successors, (13), 8 states have call predecessors, (13), 8 states have return successors, (13), 9 states have call predecessors, (13), 13 states have call successors, (13) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-07-22 17:39:02,995 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:39:02,995 INFO L93 Difference]: Finished difference Result 166 states and 223 transitions. [2022-07-22 17:39:02,996 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-07-22 17:39:02,997 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2022-07-22 17:39:02,997 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:39:03,003 INFO L225 Difference]: With dead ends: 166 [2022-07-22 17:39:03,004 INFO L226 Difference]: Without dead ends: 78 [2022-07-22 17:39:03,006 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-07-22 17:39:03,009 INFO L413 NwaCegarLoop]: 108 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 108 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-22 17:39:03,010 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 108 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-22 17:39:03,021 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 78 states. [2022-07-22 17:39:03,039 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 78 to 78. [2022-07-22 17:39:03,040 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 78 states, 57 states have (on average 1.2982456140350878) internal successors, (74), 64 states have internal predecessors, (74), 13 states have call successors, (13), 8 states have call predecessors, (13), 7 states have return successors, (12), 8 states have call predecessors, (12), 12 states have call successors, (12) [2022-07-22 17:39:03,042 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 78 states to 78 states and 99 transitions. [2022-07-22 17:39:03,044 INFO L78 Accepts]: Start accepts. Automaton has 78 states and 99 transitions. Word has length 19 [2022-07-22 17:39:03,044 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:39:03,044 INFO L495 AbstractCegarLoop]: Abstraction has 78 states and 99 transitions. [2022-07-22 17:39:03,045 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-07-22 17:39:03,045 INFO L276 IsEmpty]: Start isEmpty. Operand 78 states and 99 transitions. [2022-07-22 17:39:03,046 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2022-07-22 17:39:03,046 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:39:03,046 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:39:03,046 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-07-22 17:39:03,046 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:39:03,047 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:39:03,047 INFO L85 PathProgramCache]: Analyzing trace with hash -1176523386, now seen corresponding path program 1 times [2022-07-22 17:39:03,047 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:39:03,048 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [335953290] [2022-07-22 17:39:03,048 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:39:03,048 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:39:03,075 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:03,121 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-22 17:39:03,121 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:39:03,122 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [335953290] [2022-07-22 17:39:03,122 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [335953290] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-22 17:39:03,122 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-22 17:39:03,122 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-07-22 17:39:03,123 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1983608473] [2022-07-22 17:39:03,123 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-22 17:39:03,124 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-07-22 17:39:03,124 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:39:03,125 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-07-22 17:39:03,125 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-22 17:39:03,125 INFO L87 Difference]: Start difference. First operand 78 states and 99 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-07-22 17:39:03,140 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:39:03,144 INFO L93 Difference]: Finished difference Result 121 states and 153 transitions. [2022-07-22 17:39:03,144 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-07-22 17:39:03,145 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2022-07-22 17:39:03,146 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:39:03,147 INFO L225 Difference]: With dead ends: 121 [2022-07-22 17:39:03,150 INFO L226 Difference]: Without dead ends: 69 [2022-07-22 17:39:03,151 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-22 17:39:03,153 INFO L413 NwaCegarLoop]: 86 mSDtfsCounter, 13 mSDsluCounter, 69 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 155 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-22 17:39:03,154 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 155 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-22 17:39:03,156 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 69 states. [2022-07-22 17:39:03,166 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 69 to 69. [2022-07-22 17:39:03,169 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 69 states, 51 states have (on average 1.3137254901960784) internal successors, (67), 58 states have internal predecessors, (67), 10 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (10), 6 states have call predecessors, (10), 10 states have call successors, (10) [2022-07-22 17:39:03,170 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 69 states to 69 states and 87 transitions. [2022-07-22 17:39:03,175 INFO L78 Accepts]: Start accepts. Automaton has 69 states and 87 transitions. Word has length 20 [2022-07-22 17:39:03,175 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:39:03,175 INFO L495 AbstractCegarLoop]: Abstraction has 69 states and 87 transitions. [2022-07-22 17:39:03,175 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-07-22 17:39:03,176 INFO L276 IsEmpty]: Start isEmpty. Operand 69 states and 87 transitions. [2022-07-22 17:39:03,177 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2022-07-22 17:39:03,178 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:39:03,178 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:39:03,179 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-07-22 17:39:03,179 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:39:03,179 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:39:03,181 INFO L85 PathProgramCache]: Analyzing trace with hash 59160395, now seen corresponding path program 1 times [2022-07-22 17:39:03,181 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:39:03,181 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [906919656] [2022-07-22 17:39:03,182 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:39:03,182 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:39:03,222 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:03,322 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-22 17:39:03,322 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:39:03,322 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [906919656] [2022-07-22 17:39:03,323 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [906919656] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-22 17:39:03,323 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-22 17:39:03,323 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-07-22 17:39:03,323 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [121973528] [2022-07-22 17:39:03,324 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-22 17:39:03,324 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-07-22 17:39:03,324 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:39:03,325 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-07-22 17:39:03,325 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-07-22 17:39:03,325 INFO L87 Difference]: Start difference. First operand 69 states and 87 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-07-22 17:39:03,384 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:39:03,385 INFO L93 Difference]: Finished difference Result 131 states and 168 transitions. [2022-07-22 17:39:03,385 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-07-22 17:39:03,385 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2022-07-22 17:39:03,386 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:39:03,387 INFO L225 Difference]: With dead ends: 131 [2022-07-22 17:39:03,387 INFO L226 Difference]: Without dead ends: 69 [2022-07-22 17:39:03,388 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-07-22 17:39:03,389 INFO L413 NwaCegarLoop]: 80 mSDtfsCounter, 112 mSDsluCounter, 128 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 112 SdHoareTripleChecker+Valid, 208 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-22 17:39:03,389 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [112 Valid, 208 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-22 17:39:03,390 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 69 states. [2022-07-22 17:39:03,397 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 69 to 69. [2022-07-22 17:39:03,399 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 69 states, 51 states have (on average 1.2941176470588236) internal successors, (66), 58 states have internal predecessors, (66), 10 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (10), 6 states have call predecessors, (10), 10 states have call successors, (10) [2022-07-22 17:39:03,402 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 69 states to 69 states and 86 transitions. [2022-07-22 17:39:03,402 INFO L78 Accepts]: Start accepts. Automaton has 69 states and 86 transitions. Word has length 25 [2022-07-22 17:39:03,403 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:39:03,403 INFO L495 AbstractCegarLoop]: Abstraction has 69 states and 86 transitions. [2022-07-22 17:39:03,404 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-07-22 17:39:03,404 INFO L276 IsEmpty]: Start isEmpty. Operand 69 states and 86 transitions. [2022-07-22 17:39:03,405 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2022-07-22 17:39:03,406 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:39:03,406 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:39:03,406 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-07-22 17:39:03,407 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:39:03,408 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:39:03,409 INFO L85 PathProgramCache]: Analyzing trace with hash 1213028198, now seen corresponding path program 1 times [2022-07-22 17:39:03,409 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:39:03,410 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1377398137] [2022-07-22 17:39:03,411 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:39:03,411 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:39:03,439 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:03,549 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-07-22 17:39:03,554 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:03,560 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-22 17:39:03,563 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:03,565 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-22 17:39:03,565 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:39:03,566 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1377398137] [2022-07-22 17:39:03,566 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1377398137] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-22 17:39:03,566 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-22 17:39:03,566 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2022-07-22 17:39:03,567 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [214301996] [2022-07-22 17:39:03,567 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-22 17:39:03,569 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2022-07-22 17:39:03,569 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:39:03,570 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2022-07-22 17:39:03,570 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=56, Unknown=0, NotChecked=0, Total=72 [2022-07-22 17:39:03,571 INFO L87 Difference]: Start difference. First operand 69 states and 86 transitions. Second operand has 9 states, 9 states have (on average 3.3333333333333335) internal successors, (30), 8 states have internal predecessors, (30), 2 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-07-22 17:39:04,047 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:39:04,048 INFO L93 Difference]: Finished difference Result 281 states and 369 transitions. [2022-07-22 17:39:04,048 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 19 states. [2022-07-22 17:39:04,048 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 3.3333333333333335) internal successors, (30), 8 states have internal predecessors, (30), 2 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 35 [2022-07-22 17:39:04,049 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:39:04,052 INFO L225 Difference]: With dead ends: 281 [2022-07-22 17:39:04,052 INFO L226 Difference]: Without dead ends: 219 [2022-07-22 17:39:04,053 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 27 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 76 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=113, Invalid=349, Unknown=0, NotChecked=0, Total=462 [2022-07-22 17:39:04,054 INFO L413 NwaCegarLoop]: 74 mSDtfsCounter, 257 mSDsluCounter, 377 mSDsCounter, 0 mSdLazyCounter, 378 mSolverCounterSat, 83 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 261 SdHoareTripleChecker+Valid, 451 SdHoareTripleChecker+Invalid, 461 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 83 IncrementalHoareTripleChecker+Valid, 378 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2022-07-22 17:39:04,054 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [261 Valid, 451 Invalid, 461 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [83 Valid, 378 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2022-07-22 17:39:04,055 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 219 states. [2022-07-22 17:39:04,077 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 219 to 180. [2022-07-22 17:39:04,077 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 180 states, 130 states have (on average 1.2923076923076924) internal successors, (168), 148 states have internal predecessors, (168), 29 states have call successors, (29), 20 states have call predecessors, (29), 20 states have return successors, (32), 17 states have call predecessors, (32), 29 states have call successors, (32) [2022-07-22 17:39:04,079 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 180 states to 180 states and 229 transitions. [2022-07-22 17:39:04,079 INFO L78 Accepts]: Start accepts. Automaton has 180 states and 229 transitions. Word has length 35 [2022-07-22 17:39:04,080 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:39:04,080 INFO L495 AbstractCegarLoop]: Abstraction has 180 states and 229 transitions. [2022-07-22 17:39:04,080 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 3.3333333333333335) internal successors, (30), 8 states have internal predecessors, (30), 2 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-07-22 17:39:04,080 INFO L276 IsEmpty]: Start isEmpty. Operand 180 states and 229 transitions. [2022-07-22 17:39:04,082 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2022-07-22 17:39:04,082 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:39:04,083 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:39:04,083 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-07-22 17:39:04,083 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:39:04,083 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:39:04,084 INFO L85 PathProgramCache]: Analyzing trace with hash 1911530027, now seen corresponding path program 1 times [2022-07-22 17:39:04,084 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:39:04,084 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1799104664] [2022-07-22 17:39:04,084 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:39:04,084 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:39:04,100 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,134 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2022-07-22 17:39:04,136 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,138 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-22 17:39:04,138 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,139 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-22 17:39:04,140 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:39:04,140 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1799104664] [2022-07-22 17:39:04,140 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1799104664] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-22 17:39:04,140 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-22 17:39:04,140 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-07-22 17:39:04,141 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [820869587] [2022-07-22 17:39:04,141 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-22 17:39:04,141 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-07-22 17:39:04,141 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:39:04,142 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-07-22 17:39:04,142 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-07-22 17:39:04,142 INFO L87 Difference]: Start difference. First operand 180 states and 229 transitions. Second operand has 4 states, 4 states have (on average 8.0) internal successors, (32), 3 states have internal predecessors, (32), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-07-22 17:39:04,189 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:39:04,189 INFO L93 Difference]: Finished difference Result 291 states and 375 transitions. [2022-07-22 17:39:04,189 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-07-22 17:39:04,190 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 3 states have internal predecessors, (32), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 37 [2022-07-22 17:39:04,190 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:39:04,191 INFO L225 Difference]: With dead ends: 291 [2022-07-22 17:39:04,191 INFO L226 Difference]: Without dead ends: 118 [2022-07-22 17:39:04,192 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-07-22 17:39:04,193 INFO L413 NwaCegarLoop]: 46 mSDtfsCounter, 55 mSDsluCounter, 20 mSDsCounter, 0 mSdLazyCounter, 13 mSolverCounterSat, 14 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 57 SdHoareTripleChecker+Valid, 66 SdHoareTripleChecker+Invalid, 27 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 14 IncrementalHoareTripleChecker+Valid, 13 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-22 17:39:04,194 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [57 Valid, 66 Invalid, 27 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [14 Valid, 13 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-22 17:39:04,195 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 118 states. [2022-07-22 17:39:04,203 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 118 to 118. [2022-07-22 17:39:04,203 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 118 states, 89 states have (on average 1.202247191011236) internal successors, (107), 95 states have internal predecessors, (107), 14 states have call successors, (14), 14 states have call predecessors, (14), 14 states have return successors, (15), 14 states have call predecessors, (15), 14 states have call successors, (15) [2022-07-22 17:39:04,204 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 118 states to 118 states and 136 transitions. [2022-07-22 17:39:04,204 INFO L78 Accepts]: Start accepts. Automaton has 118 states and 136 transitions. Word has length 37 [2022-07-22 17:39:04,205 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:39:04,205 INFO L495 AbstractCegarLoop]: Abstraction has 118 states and 136 transitions. [2022-07-22 17:39:04,205 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 8.0) internal successors, (32), 3 states have internal predecessors, (32), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-07-22 17:39:04,205 INFO L276 IsEmpty]: Start isEmpty. Operand 118 states and 136 transitions. [2022-07-22 17:39:04,207 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 72 [2022-07-22 17:39:04,207 INFO L187 NwaCegarLoop]: Found error trace [2022-07-22 17:39:04,207 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-22 17:39:04,208 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-07-22 17:39:04,208 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-22 17:39:04,208 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-22 17:39:04,208 INFO L85 PathProgramCache]: Analyzing trace with hash -422097733, now seen corresponding path program 1 times [2022-07-22 17:39:04,209 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-22 17:39:04,209 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1436379420] [2022-07-22 17:39:04,209 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:39:04,209 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-22 17:39:04,231 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,305 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-07-22 17:39:04,308 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,319 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-07-22 17:39:04,328 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,348 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2022-07-22 17:39:04,351 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,357 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-22 17:39:04,363 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,365 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 43 [2022-07-22 17:39:04,371 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,381 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 56 [2022-07-22 17:39:04,384 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,390 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-22 17:39:04,391 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,394 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 3 proven. 1 refuted. 0 times theorem prover too weak. 25 trivial. 0 not checked. [2022-07-22 17:39:04,396 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-22 17:39:04,397 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1436379420] [2022-07-22 17:39:04,397 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1436379420] provided 0 perfect and 1 imperfect interpolant sequences [2022-07-22 17:39:04,397 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [278079411] [2022-07-22 17:39:04,398 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-22 17:39:04,398 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-07-22 17:39:04,398 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2022-07-22 17:39:04,435 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-07-22 17:39:04,445 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-07-22 17:39:04,546 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-22 17:39:04,549 INFO L263 TraceCheckSpWp]: Trace formula consists of 392 conjuncts, 9 conjunts are in the unsatisfiable core [2022-07-22 17:39:04,555 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-07-22 17:39:04,715 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 26 proven. 2 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-07-22 17:39:04,715 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-07-22 17:39:04,939 INFO L134 CoverageAnalysis]: Checked inductivity of 29 backedges. 19 proven. 3 refuted. 0 times theorem prover too weak. 7 trivial. 0 not checked. [2022-07-22 17:39:04,939 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [278079411] provided 0 perfect and 2 imperfect interpolant sequences [2022-07-22 17:39:04,940 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-07-22 17:39:04,940 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 7, 8] total 16 [2022-07-22 17:39:04,940 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [424496418] [2022-07-22 17:39:04,940 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-07-22 17:39:04,941 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 16 states [2022-07-22 17:39:04,941 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-22 17:39:04,942 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 16 interpolants. [2022-07-22 17:39:04,942 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=51, Invalid=189, Unknown=0, NotChecked=0, Total=240 [2022-07-22 17:39:04,942 INFO L87 Difference]: Start difference. First operand 118 states and 136 transitions. Second operand has 16 states, 16 states have (on average 6.5) internal successors, (104), 12 states have internal predecessors, (104), 7 states have call successors, (19), 9 states have call predecessors, (19), 8 states have return successors, (16), 6 states have call predecessors, (16), 7 states have call successors, (16) [2022-07-22 17:39:05,165 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-22 17:39:05,165 INFO L93 Difference]: Finished difference Result 157 states and 181 transitions. [2022-07-22 17:39:05,166 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-07-22 17:39:05,167 INFO L78 Accepts]: Start accepts. Automaton has has 16 states, 16 states have (on average 6.5) internal successors, (104), 12 states have internal predecessors, (104), 7 states have call successors, (19), 9 states have call predecessors, (19), 8 states have return successors, (16), 6 states have call predecessors, (16), 7 states have call successors, (16) Word has length 71 [2022-07-22 17:39:05,168 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-22 17:39:05,169 INFO L225 Difference]: With dead ends: 157 [2022-07-22 17:39:05,169 INFO L226 Difference]: Without dead ends: 0 [2022-07-22 17:39:05,171 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 171 GetRequests, 151 SyntacticMatches, 1 SemanticMatches, 19 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 51 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=105, Invalid=315, Unknown=0, NotChecked=0, Total=420 [2022-07-22 17:39:05,177 INFO L413 NwaCegarLoop]: 71 mSDtfsCounter, 167 mSDsluCounter, 356 mSDsCounter, 0 mSdLazyCounter, 241 mSolverCounterSat, 74 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 167 SdHoareTripleChecker+Valid, 427 SdHoareTripleChecker+Invalid, 315 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 74 IncrementalHoareTripleChecker+Valid, 241 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-07-22 17:39:05,178 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [167 Valid, 427 Invalid, 315 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [74 Valid, 241 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-07-22 17:39:05,180 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-07-22 17:39:05,180 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-07-22 17:39:05,181 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-07-22 17:39:05,181 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-07-22 17:39:05,181 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 71 [2022-07-22 17:39:05,181 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-22 17:39:05,181 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-07-22 17:39:05,182 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 16 states, 16 states have (on average 6.5) internal successors, (104), 12 states have internal predecessors, (104), 7 states have call successors, (19), 9 states have call predecessors, (19), 8 states have return successors, (16), 6 states have call predecessors, (16), 7 states have call successors, (16) [2022-07-22 17:39:05,182 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-07-22 17:39:05,182 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-07-22 17:39:05,185 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-07-22 17:39:05,214 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2022-07-22 17:39:05,411 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2022-07-22 17:39:05,413 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-07-22 17:39:06,383 INFO L902 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 290 297) the Hoare annotation is: true [2022-07-22 17:39:06,383 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 290 297) no Hoare annotation was computed. [2022-07-22 17:39:06,384 INFO L899 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 290 297) no Hoare annotation was computed. [2022-07-22 17:39:06,384 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 206 212) no Hoare annotation was computed. [2022-07-22 17:39:06,384 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 206 212) the Hoare annotation is: true [2022-07-22 17:39:06,384 INFO L902 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 83 94) the Hoare annotation is: true [2022-07-22 17:39:06,384 INFO L899 garLoopResultBuilder]: For program point L87-1(lines 83 94) no Hoare annotation was computed. [2022-07-22 17:39:06,384 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 83 94) no Hoare annotation was computed. [2022-07-22 17:39:06,384 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 817 846) no Hoare annotation was computed. [2022-07-22 17:39:06,384 INFO L899 garLoopResultBuilder]: For program point L831(lines 831 835) no Hoare annotation was computed. [2022-07-22 17:39:06,384 INFO L902 garLoopResultBuilder]: At program point L831-1(lines 831 835) the Hoare annotation is: true [2022-07-22 17:39:06,384 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 817 846) the Hoare annotation is: true [2022-07-22 17:39:06,384 INFO L899 garLoopResultBuilder]: For program point L828(line 828) no Hoare annotation was computed. [2022-07-22 17:39:06,385 INFO L902 garLoopResultBuilder]: At program point L827-2(lines 827 841) the Hoare annotation is: true [2022-07-22 17:39:06,385 INFO L902 garLoopResultBuilder]: At program point L823(line 823) the Hoare annotation is: true [2022-07-22 17:39:06,385 INFO L899 garLoopResultBuilder]: For program point L823-1(line 823) no Hoare annotation was computed. [2022-07-22 17:39:06,385 INFO L902 garLoopResultBuilder]: At program point L842(lines 817 846) the Hoare annotation is: true [2022-07-22 17:39:06,385 INFO L899 garLoopResultBuilder]: For program point L838(line 838) no Hoare annotation was computed. [2022-07-22 17:39:06,385 INFO L895 garLoopResultBuilder]: At program point L254(line 254) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|)) (= 0 ~systemActive~0)) [2022-07-22 17:39:06,385 INFO L895 garLoopResultBuilder]: At program point L250(line 250) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|)) (= 0 ~systemActive~0)) [2022-07-22 17:39:06,385 INFO L895 garLoopResultBuilder]: At program point L246(line 246) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|)) (= 0 ~systemActive~0)) [2022-07-22 17:39:06,385 INFO L899 garLoopResultBuilder]: For program point L246-1(line 246) no Hoare annotation was computed. [2022-07-22 17:39:06,385 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 182 205) no Hoare annotation was computed. [2022-07-22 17:39:06,386 INFO L895 garLoopResultBuilder]: At program point L259(line 259) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 (and .cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse2 (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 (= ~waterLevel~0 1)) .cse2))) [2022-07-22 17:39:06,386 INFO L895 garLoopResultBuilder]: At program point L259-1(lines 240 264) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 (and .cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse2 (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 (= ~waterLevel~0 1)) .cse2))) [2022-07-22 17:39:06,386 INFO L899 garLoopResultBuilder]: For program point L193-1(lines 193 199) no Hoare annotation was computed. [2022-07-22 17:39:06,386 INFO L899 garLoopResultBuilder]: For program point L160(lines 160 166) no Hoare annotation was computed. [2022-07-22 17:39:06,386 INFO L899 garLoopResultBuilder]: For program point L156(lines 156 169) no Hoare annotation was computed. [2022-07-22 17:39:06,386 INFO L895 garLoopResultBuilder]: At program point L156-1(lines 148 172) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= |timeShift___utac_acc__Specification4_spec__1_~tmp~0#1| 0))) (.cse3 (not (= |timeShift_getWaterLevel_#res#1| 0))) (.cse4 (= 0 ~systemActive~0))) (and (or .cse0 (and .cse1 .cse2 .cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse4 (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 (and .cse1 .cse2 .cse3 (= ~waterLevel~0 1)) (not (= |old(~waterLevel~0)| 1)) .cse4))) [2022-07-22 17:39:06,386 INFO L895 garLoopResultBuilder]: At program point L132(lines 127 135) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= |timeShift_getWaterLevel_#res#1| 0))) (.cse3 (= 0 ~systemActive~0))) (and (or .cse0 (and .cse1 .cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse3 (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 .cse2 (= ~waterLevel~0 1)) .cse3))) [2022-07-22 17:39:06,386 INFO L895 garLoopResultBuilder]: At program point L314(lines 309 317) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|)) (= 0 ~systemActive~0)) [2022-07-22 17:39:06,386 INFO L899 garLoopResultBuilder]: For program point L954(line 954) no Hoare annotation was computed. [2022-07-22 17:39:06,387 INFO L899 garLoopResultBuilder]: For program point L186-1(lines 185 204) no Hoare annotation was computed. [2022-07-22 17:39:06,387 INFO L899 garLoopResultBuilder]: For program point L248(lines 248 256) no Hoare annotation was computed. [2022-07-22 17:39:06,387 INFO L899 garLoopResultBuilder]: For program point L244(lines 244 261) no Hoare annotation was computed. [2022-07-22 17:39:06,387 INFO L899 garLoopResultBuilder]: For program point L63(lines 63 67) no Hoare annotation was computed. [2022-07-22 17:39:06,387 INFO L895 garLoopResultBuilder]: At program point L63-2(lines 59 70) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|)) (= 0 ~systemActive~0)) [2022-07-22 17:39:06,387 INFO L895 garLoopResultBuilder]: At program point L955(lines 950 957) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|)) (= 0 ~systemActive~0)) [2022-07-22 17:39:06,387 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 182 205) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 (and .cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse2 (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse1 (= ~waterLevel~0 1)) .cse2))) [2022-07-22 17:39:06,387 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 182 205) no Hoare annotation was computed. [2022-07-22 17:39:06,387 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 954) no Hoare annotation was computed. [2022-07-22 17:39:06,387 INFO L895 garLoopResultBuilder]: At program point L415(line 415) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~9#1|) (= ~waterLevel~0 1) .cse3) (and .cse0 .cse1 (<= 2 ~waterLevel~0) (= |ULTIMATE.start_main_~tmp~9#1| 1) .cse2 .cse3))) [2022-07-22 17:39:06,388 INFO L902 garLoopResultBuilder]: At program point L444(lines 383 448) the Hoare annotation is: true [2022-07-22 17:39:06,388 INFO L895 garLoopResultBuilder]: At program point L378(lines 373 380) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~9#1|) (= ~waterLevel~0 1) .cse3) (and .cse0 .cse1 (<= 2 ~waterLevel~0) (= |ULTIMATE.start_main_~tmp~9#1| 1) .cse2 .cse3))) [2022-07-22 17:39:06,388 INFO L899 garLoopResultBuilder]: For program point L403(lines 403 409) no Hoare annotation was computed. [2022-07-22 17:39:06,388 INFO L899 garLoopResultBuilder]: For program point L403-1(lines 403 409) no Hoare annotation was computed. [2022-07-22 17:39:06,388 INFO L899 garLoopResultBuilder]: For program point L395(lines 395 399) no Hoare annotation was computed. [2022-07-22 17:39:06,388 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2022-07-22 17:39:06,388 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2022-07-22 17:39:06,388 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2022-07-22 17:39:06,388 INFO L895 garLoopResultBuilder]: At program point L441(lines 392 442) the Hoare annotation is: false [2022-07-22 17:39:06,388 INFO L895 garLoopResultBuilder]: At program point L945(lines 940 948) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-07-22 17:39:06,388 INFO L895 garLoopResultBuilder]: At program point L875(lines 871 877) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~9#1|) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-07-22 17:39:06,389 INFO L895 garLoopResultBuilder]: At program point L937(lines 933 939) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-07-22 17:39:06,389 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-07-22 17:39:06,389 INFO L899 garLoopResultBuilder]: For program point L413(lines 413 419) no Hoare annotation was computed. [2022-07-22 17:39:06,389 INFO L899 garLoopResultBuilder]: For program point L413-1(lines 413 419) no Hoare annotation was computed. [2022-07-22 17:39:06,389 INFO L895 garLoopResultBuilder]: At program point L438(lines 393 440) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~9#1|) (= ~waterLevel~0 1) .cse3) (and .cse0 .cse1 (<= 2 ~waterLevel~0) (= |ULTIMATE.start_main_~tmp~9#1| 1) .cse2 .cse3))) [2022-07-22 17:39:06,389 INFO L895 garLoopResultBuilder]: At program point L405(line 405) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~9#1|) (= ~waterLevel~0 1) .cse3) (and .cse0 .cse1 (<= 2 ~waterLevel~0) (= |ULTIMATE.start_main_~tmp~9#1| 1) .cse2 .cse3))) [2022-07-22 17:39:06,389 INFO L899 garLoopResultBuilder]: For program point L901(lines 901 908) no Hoare annotation was computed. [2022-07-22 17:39:06,389 INFO L899 garLoopResultBuilder]: For program point L901-2(lines 901 908) no Hoare annotation was computed. [2022-07-22 17:39:06,389 INFO L895 garLoopResultBuilder]: At program point L930(lines 926 932) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-07-22 17:39:06,389 INFO L902 garLoopResultBuilder]: At program point L885(lines 878 887) the Hoare annotation is: true [2022-07-22 17:39:06,390 INFO L899 garLoopResultBuilder]: For program point L431(lines 431 435) no Hoare annotation was computed. [2022-07-22 17:39:06,390 INFO L902 garLoopResultBuilder]: At program point L910(lines 891 913) the Hoare annotation is: true [2022-07-22 17:39:06,390 INFO L895 garLoopResultBuilder]: At program point L431-2(lines 423 436) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~9#1|) (= ~waterLevel~0 1) .cse3) (and .cse0 .cse1 (<= 2 ~waterLevel~0) (= |ULTIMATE.start_main_~tmp~9#1| 1) .cse2 .cse3))) [2022-07-22 17:39:06,390 INFO L899 garLoopResultBuilder]: For program point L394(lines 393 440) no Hoare annotation was computed. [2022-07-22 17:39:06,390 INFO L899 garLoopResultBuilder]: For program point L423(lines 423 436) no Hoare annotation was computed. [2022-07-22 17:39:06,390 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 71 82) no Hoare annotation was computed. [2022-07-22 17:39:06,390 INFO L899 garLoopResultBuilder]: For program point L75-1(lines 71 82) no Hoare annotation was computed. [2022-07-22 17:39:06,390 INFO L895 garLoopResultBuilder]: At program point waterRiseENTRY(lines 71 82) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1 (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (= ~waterLevel~0 1)))) [2022-07-22 17:39:06,390 INFO L895 garLoopResultBuilder]: At program point L141(lines 136 144) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0)) [2022-07-22 17:39:06,390 INFO L895 garLoopResultBuilder]: At program point L228(line 228) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0)) [2022-07-22 17:39:06,390 INFO L895 garLoopResultBuilder]: At program point L224(line 224) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0)) [2022-07-22 17:39:06,391 INFO L899 garLoopResultBuilder]: For program point L222(lines 222 230) no Hoare annotation was computed. [2022-07-22 17:39:06,391 INFO L899 garLoopResultBuilder]: For program point L218(lines 218 235) no Hoare annotation was computed. [2022-07-22 17:39:06,391 INFO L895 garLoopResultBuilder]: At program point L369(lines 354 372) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0)) [2022-07-22 17:39:06,398 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__methaneQueryENTRY(lines 214 238) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (<= 2 ~waterLevel~0)) .cse2) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2))) [2022-07-22 17:39:06,398 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 214 238) no Hoare annotation was computed. [2022-07-22 17:39:06,399 INFO L899 garLoopResultBuilder]: For program point L363(lines 363 367) no Hoare annotation was computed. [2022-07-22 17:39:06,399 INFO L899 garLoopResultBuilder]: For program point L363-2(lines 363 367) no Hoare annotation was computed. [2022-07-22 17:39:06,400 INFO L895 garLoopResultBuilder]: At program point L233(line 233) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (<= 2 ~waterLevel~0)) .cse2) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2))) [2022-07-22 17:39:06,400 INFO L899 garLoopResultBuilder]: For program point L233-1(lines 214 238) no Hoare annotation was computed. [2022-07-22 17:39:06,400 INFO L902 garLoopResultBuilder]: At program point isMethaneAlarmENTRY(lines 298 308) the Hoare annotation is: true [2022-07-22 17:39:06,400 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 298 308) no Hoare annotation was computed. [2022-07-22 17:39:06,400 INFO L899 garLoopResultBuilder]: For program point isMethaneAlarmFINAL(lines 298 308) no Hoare annotation was computed. [2022-07-22 17:39:06,401 INFO L902 garLoopResultBuilder]: At program point L100(lines 95 103) the Hoare annotation is: true [2022-07-22 17:39:06,403 INFO L356 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1] [2022-07-22 17:39:06,406 INFO L176 ceAbstractionStarter]: Computing trace abstraction results [2022-07-22 17:39:06,436 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 22.07 05:39:06 BoogieIcfgContainer [2022-07-22 17:39:06,439 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-07-22 17:39:06,440 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-07-22 17:39:06,440 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-07-22 17:39:06,441 INFO L275 PluginConnector]: Witness Printer initialized [2022-07-22 17:39:06,441 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 22.07 05:39:02" (3/4) ... [2022-07-22 17:39:06,452 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-07-22 17:39:06,457 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2022-07-22 17:39:06,457 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-07-22 17:39:06,457 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-07-22 17:39:06,458 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-07-22 17:39:06,458 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-07-22 17:39:06,458 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-07-22 17:39:06,458 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2022-07-22 17:39:06,458 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2022-07-22 17:39:06,469 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 51 nodes and edges [2022-07-22 17:39:06,470 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2022-07-22 17:39:06,471 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2022-07-22 17:39:06,471 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2022-07-22 17:39:06,471 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2022-07-22 17:39:06,472 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-07-22 17:39:06,472 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-07-22 17:39:06,492 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2022-07-22 17:39:06,493 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && \result == 1) && waterLevel == tmp) && waterLevel == 1) && !(0 == systemActive) [2022-07-22 17:39:06,493 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && waterLevel == tmp) && waterLevel == 1) && !(0 == systemActive)) || (((((pumpRunning == 0 && \result == 1) && 2 <= waterLevel) && tmp == 1) && splverifierCounter == 0) && !(0 == systemActive)) [2022-07-22 17:39:06,494 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || 0 == systemActive [2022-07-22 17:39:06,495 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1)) || 0 == systemActive) [2022-07-22 17:39:06,496 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && waterLevel == tmp) && waterLevel == 1) && !(0 == systemActive)) || (((((pumpRunning == 0 && \result == 1) && 2 <= waterLevel) && tmp == 1) && splverifierCounter == 0) && !(0 == systemActive)) [2022-07-22 17:39:06,496 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || ((pumpRunning == 0 && !(\result == 0)) && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && !(\result == 0)) && waterLevel == 1)) || 0 == systemActive) [2022-07-22 17:39:06,497 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(tmp == 0)) && !(\result == 0)) && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(tmp == 0)) && !(\result == 0)) && waterLevel == 1)) || !(\old(waterLevel) == 1)) || 0 == systemActive) [2022-07-22 17:39:06,497 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || 0 == systemActive [2022-07-22 17:39:06,497 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || 0 == systemActive [2022-07-22 17:39:06,497 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || 0 == systemActive [2022-07-22 17:39:06,498 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || 0 == systemActive [2022-07-22 17:39:06,531 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2022-07-22 17:39:06,531 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-07-22 17:39:06,532 INFO L158 Benchmark]: Toolchain (without parser) took 4869.59ms. Allocated memory was 102.8MB in the beginning and 151.0MB in the end (delta: 48.2MB). Free memory was 70.3MB in the beginning and 120.1MB in the end (delta: -49.7MB). Peak memory consumption was 62.4MB. Max. memory is 16.1GB. [2022-07-22 17:39:06,532 INFO L158 Benchmark]: CDTParser took 0.21ms. Allocated memory is still 102.8MB. Free memory is still 57.2MB. There was no memory consumed. Max. memory is 16.1GB. [2022-07-22 17:39:06,533 INFO L158 Benchmark]: CACSL2BoogieTranslator took 425.77ms. Allocated memory is still 102.8MB. Free memory was 70.1MB in the beginning and 69.9MB in the end (delta: 158.1kB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2022-07-22 17:39:06,533 INFO L158 Benchmark]: Boogie Procedure Inliner took 57.74ms. Allocated memory is still 102.8MB. Free memory was 69.9MB in the beginning and 67.8MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-07-22 17:39:06,533 INFO L158 Benchmark]: Boogie Preprocessor took 30.73ms. Allocated memory is still 102.8MB. Free memory was 67.4MB in the beginning and 66.1MB in the end (delta: 1.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-07-22 17:39:06,534 INFO L158 Benchmark]: RCFGBuilder took 438.20ms. Allocated memory was 102.8MB in the beginning and 125.8MB in the end (delta: 23.1MB). Free memory was 66.1MB in the beginning and 101.6MB in the end (delta: -35.5MB). Peak memory consumption was 21.5MB. Max. memory is 16.1GB. [2022-07-22 17:39:06,534 INFO L158 Benchmark]: TraceAbstraction took 3819.81ms. Allocated memory was 125.8MB in the beginning and 151.0MB in the end (delta: 25.2MB). Free memory was 101.0MB in the beginning and 56.4MB in the end (delta: 44.6MB). Peak memory consumption was 68.9MB. Max. memory is 16.1GB. [2022-07-22 17:39:06,535 INFO L158 Benchmark]: Witness Printer took 91.62ms. Allocated memory is still 151.0MB. Free memory was 56.4MB in the beginning and 120.1MB in the end (delta: -63.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-07-22 17:39:06,537 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.21ms. Allocated memory is still 102.8MB. Free memory is still 57.2MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 425.77ms. Allocated memory is still 102.8MB. Free memory was 70.1MB in the beginning and 69.9MB in the end (delta: 158.1kB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 57.74ms. Allocated memory is still 102.8MB. Free memory was 69.9MB in the beginning and 67.8MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 30.73ms. Allocated memory is still 102.8MB. Free memory was 67.4MB in the beginning and 66.1MB in the end (delta: 1.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 438.20ms. Allocated memory was 102.8MB in the beginning and 125.8MB in the end (delta: 23.1MB). Free memory was 66.1MB in the beginning and 101.6MB in the end (delta: -35.5MB). Peak memory consumption was 21.5MB. Max. memory is 16.1GB. * TraceAbstraction took 3819.81ms. Allocated memory was 125.8MB in the beginning and 151.0MB in the end (delta: 25.2MB). Free memory was 101.0MB in the beginning and 56.4MB in the end (delta: 44.6MB). Peak memory consumption was 68.9MB. Max. memory is 16.1GB. * Witness Printer took 91.62ms. Allocated memory is still 151.0MB. Free memory was 56.4MB in the beginning and 120.1MB in the end (delta: -63.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 954]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 87 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 3.7s, OverallIterations: 6, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.0s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 1.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 613 SdHoareTripleChecker+Valid, 0.5s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 604 mSDsluCounter, 1415 SdHoareTripleChecker+Invalid, 0.4s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 950 mSDsCounter, 180 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 642 IncrementalHoareTripleChecker+Invalid, 822 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 180 mSolverCounterUnsat, 465 mSDtfsCounter, 642 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 221 GetRequests, 172 SyntacticMatches, 1 SemanticMatches, 48 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 127 ImplicationChecksByTransitivity, 0.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=180occurred in iteration=4, InterpolantAutomatonStates: 40, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 6 MinimizatonAttempts, 39 StatesRemovedByMinimization, 1 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 41 LocationsWithAnnotation, 349 PreInvPairs, 371 NumberOfFragments, 704 HoareAnnotationTreeSize, 349 FomulaSimplifications, 88 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 41 FomulaSimplificationsInter, 728 FormulaSimplificationTreeSizeReductionInter, 0.9s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 0.9s InterpolantComputationTime, 278 NumberOfCodeBlocks, 278 NumberOfCodeBlocksAsserted, 7 NumberOfCheckSat, 341 ConstructedInterpolants, 0 QuantifiedInterpolants, 814 SizeOfPredicates, 0 NumberOfNonLiveVariables, 392 ConjunctsInSsa, 9 ConjunctsInUnsatCore, 8 InterpolantComputations, 5 PerfectInterpolantSequences, 81/87 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 95]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 136]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || 0 == systemActive - InvariantResult [Line: 354]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || 0 == systemActive - InvariantResult [Line: 392]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 878]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 148]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(tmp == 0)) && !(\result == 0)) && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(tmp == 0)) && !(\result == 0)) && waterLevel == 1)) || !(\old(waterLevel) == 1)) || 0 == systemActive) - InvariantResult [Line: 950]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || 0 == systemActive - InvariantResult [Line: 127]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || ((pumpRunning == 0 && !(\result == 0)) && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && !(\result == 0)) && waterLevel == 1)) || 0 == systemActive) - InvariantResult [Line: 827]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 817]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 393]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && waterLevel == tmp) && waterLevel == 1) && !(0 == systemActive)) || (((((pumpRunning == 0 && \result == 1) && 2 <= waterLevel) && tmp == 1) && splverifierCounter == 0) && !(0 == systemActive)) - InvariantResult [Line: 309]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || 0 == systemActive - InvariantResult [Line: 926]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 871]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && \result == 1) && waterLevel == tmp) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 373]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && waterLevel == tmp) && waterLevel == 1) && !(0 == systemActive)) || (((((pumpRunning == 0 && \result == 1) && 2 <= waterLevel) && tmp == 1) && splverifierCounter == 0) && !(0 == systemActive)) - InvariantResult [Line: 383]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 59]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || 0 == systemActive - InvariantResult [Line: 940]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 891]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 933]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 240]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || 0 == systemActive) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (pumpRunning == 0 && waterLevel == 1)) || 0 == systemActive) RESULT: Ultimate proved your program to be correct! [2022-07-22 17:39:06,597 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE