./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version c3fed411 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 5ed8e4dea18b15d78522f05bcbacefb8bf743c0552ef5a7415602905a04fdc4c --- Real Ultimate output --- This is Ultimate 0.2.2-tmp.no-commuhash-c3fed41 [2021-12-16 00:58:40,167 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-16 00:58:40,168 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-16 00:58:40,196 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-16 00:58:40,196 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-16 00:58:40,197 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-16 00:58:40,198 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-16 00:58:40,199 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-16 00:58:40,200 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-16 00:58:40,201 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-16 00:58:40,202 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-16 00:58:40,203 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-16 00:58:40,203 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-16 00:58:40,204 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-16 00:58:40,205 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-16 00:58:40,209 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-16 00:58:40,210 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-16 00:58:40,214 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-16 00:58:40,218 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-16 00:58:40,222 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-16 00:58:40,225 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-16 00:58:40,227 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-16 00:58:40,228 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-16 00:58:40,228 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-16 00:58:40,232 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-16 00:58:40,232 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-16 00:58:40,232 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-16 00:58:40,233 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-16 00:58:40,233 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-16 00:58:40,234 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-16 00:58:40,235 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-16 00:58:40,235 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-16 00:58:40,236 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-16 00:58:40,237 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-16 00:58:40,238 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-16 00:58:40,238 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-16 00:58:40,238 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-16 00:58:40,239 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-16 00:58:40,239 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-16 00:58:40,239 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-16 00:58:40,240 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-16 00:58:40,240 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-16 00:58:40,268 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-16 00:58:40,269 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-16 00:58:40,269 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-16 00:58:40,269 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-16 00:58:40,270 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-16 00:58:40,270 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-16 00:58:40,271 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-16 00:58:40,271 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-16 00:58:40,271 INFO L138 SettingsManager]: * Use SBE=true [2021-12-16 00:58:40,271 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-16 00:58:40,272 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-16 00:58:40,272 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-16 00:58:40,272 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-16 00:58:40,272 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-16 00:58:40,272 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-16 00:58:40,272 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-16 00:58:40,273 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-16 00:58:40,273 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-16 00:58:40,273 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-16 00:58:40,273 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-16 00:58:40,273 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-16 00:58:40,273 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-16 00:58:40,273 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-16 00:58:40,273 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-16 00:58:40,274 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-16 00:58:40,274 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-16 00:58:40,274 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-16 00:58:40,274 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-16 00:58:40,274 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-16 00:58:40,274 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-16 00:58:40,274 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-16 00:58:40,275 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-16 00:58:40,275 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-16 00:58:40,275 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-16 00:58:40,275 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 5ed8e4dea18b15d78522f05bcbacefb8bf743c0552ef5a7415602905a04fdc4c [2021-12-16 00:58:40,445 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-16 00:58:40,463 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-16 00:58:40,465 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-16 00:58:40,466 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-16 00:58:40,466 INFO L275 PluginConnector]: CDTParser initialized [2021-12-16 00:58:40,467 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c [2021-12-16 00:58:40,532 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/7b2ccd0d0/dce3a3525de043a69786e6487dec53b6/FLAGf503a517e [2021-12-16 00:58:40,848 INFO L306 CDTParser]: Found 1 translation units. [2021-12-16 00:58:40,850 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c [2021-12-16 00:58:40,864 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/7b2ccd0d0/dce3a3525de043a69786e6487dec53b6/FLAGf503a517e [2021-12-16 00:58:41,267 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/7b2ccd0d0/dce3a3525de043a69786e6487dec53b6 [2021-12-16 00:58:41,269 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-16 00:58:41,270 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-16 00:58:41,271 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-16 00:58:41,271 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-16 00:58:41,275 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-16 00:58:41,275 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,276 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@32a6572 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41, skipping insertion in model container [2021-12-16 00:58:41,277 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,281 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-16 00:58:41,306 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-16 00:58:41,421 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c[1605,1618] [2021-12-16 00:58:41,499 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-16 00:58:41,505 INFO L203 MainTranslator]: Completed pre-run [2021-12-16 00:58:41,513 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec1_product58.cil.c[1605,1618] [2021-12-16 00:58:41,551 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-16 00:58:41,572 INFO L208 MainTranslator]: Completed translation [2021-12-16 00:58:41,572 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41 WrapperNode [2021-12-16 00:58:41,573 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-16 00:58:41,574 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-16 00:58:41,574 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-16 00:58:41,574 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-16 00:58:41,579 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,601 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,625 INFO L137 Inliner]: procedures = 57, calls = 157, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 271 [2021-12-16 00:58:41,626 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-16 00:58:41,626 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-16 00:58:41,626 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-16 00:58:41,627 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-16 00:58:41,632 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,633 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,641 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,643 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,647 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,661 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,662 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,663 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-16 00:58:41,664 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-16 00:58:41,664 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-16 00:58:41,664 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-16 00:58:41,665 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (1/1) ... [2021-12-16 00:58:41,673 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-16 00:58:41,683 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 00:58:41,694 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-16 00:58:41,696 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-16 00:58:41,724 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-16 00:58:41,724 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-16 00:58:41,725 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-16 00:58:41,725 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-16 00:58:41,725 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-16 00:58:41,725 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-16 00:58:41,725 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-16 00:58:41,725 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2021-12-16 00:58:41,726 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2021-12-16 00:58:41,726 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2021-12-16 00:58:41,726 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2021-12-16 00:58:41,727 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-16 00:58:41,727 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-16 00:58:41,727 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-16 00:58:41,727 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-16 00:58:41,727 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-16 00:58:41,727 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-16 00:58:41,727 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-16 00:58:41,802 INFO L236 CfgBuilder]: Building ICFG [2021-12-16 00:58:41,816 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-16 00:58:42,014 INFO L277 CfgBuilder]: Performing block encoding [2021-12-16 00:58:42,019 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-16 00:58:42,020 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-16 00:58:42,026 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 12:58:42 BoogieIcfgContainer [2021-12-16 00:58:42,027 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-16 00:58:42,028 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-16 00:58:42,028 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-16 00:58:42,033 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-16 00:58:42,033 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 16.12 12:58:41" (1/3) ... [2021-12-16 00:58:42,034 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3e7eb169 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.12 12:58:42, skipping insertion in model container [2021-12-16 00:58:42,034 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 12:58:41" (2/3) ... [2021-12-16 00:58:42,034 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3e7eb169 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.12 12:58:42, skipping insertion in model container [2021-12-16 00:58:42,035 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 12:58:42" (3/3) ... [2021-12-16 00:58:42,037 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec1_product58.cil.c [2021-12-16 00:58:42,041 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-16 00:58:42,041 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-16 00:58:42,077 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-16 00:58:42,082 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-16 00:58:42,082 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-16 00:58:42,102 INFO L276 IsEmpty]: Start isEmpty. Operand has 92 states, 71 states have (on average 1.380281690140845) internal successors, (98), 79 states have internal predecessors, (98), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) [2021-12-16 00:58:42,111 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 24 [2021-12-16 00:58:42,112 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:42,113 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:42,113 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:42,120 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:42,120 INFO L85 PathProgramCache]: Analyzing trace with hash 528843452, now seen corresponding path program 1 times [2021-12-16 00:58:42,126 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:42,127 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [518622431] [2021-12-16 00:58:42,127 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:42,127 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:42,248 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:42,312 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2021-12-16 00:58:42,317 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:42,322 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 00:58:42,323 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:42,324 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [518622431] [2021-12-16 00:58:42,324 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [518622431] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:42,325 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 00:58:42,325 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-16 00:58:42,326 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [871124696] [2021-12-16 00:58:42,326 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:42,331 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-16 00:58:42,331 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:42,353 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-16 00:58:42,354 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-16 00:58:42,357 INFO L87 Difference]: Start difference. First operand has 92 states, 71 states have (on average 1.380281690140845) internal successors, (98), 79 states have internal predecessors, (98), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) Second operand has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 00:58:42,395 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:42,396 INFO L93 Difference]: Finished difference Result 176 states and 239 transitions. [2021-12-16 00:58:42,396 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-16 00:58:42,397 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 23 [2021-12-16 00:58:42,398 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:42,407 INFO L225 Difference]: With dead ends: 176 [2021-12-16 00:58:42,407 INFO L226 Difference]: Without dead ends: 83 [2021-12-16 00:58:42,413 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-16 00:58:42,416 INFO L933 BasicCegarLoop]: 116 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 116 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:42,417 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 116 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 00:58:42,428 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 83 states. [2021-12-16 00:58:42,451 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 83 to 83. [2021-12-16 00:58:42,452 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 83 states, 64 states have (on average 1.3125) internal successors, (84), 71 states have internal predecessors, (84), 12 states have call successors, (12), 7 states have call predecessors, (12), 6 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2021-12-16 00:58:42,458 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 83 states to 83 states and 107 transitions. [2021-12-16 00:58:42,460 INFO L78 Accepts]: Start accepts. Automaton has 83 states and 107 transitions. Word has length 23 [2021-12-16 00:58:42,460 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:42,461 INFO L470 AbstractCegarLoop]: Abstraction has 83 states and 107 transitions. [2021-12-16 00:58:42,461 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 9.5) internal successors, (19), 2 states have internal predecessors, (19), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 00:58:42,461 INFO L276 IsEmpty]: Start isEmpty. Operand 83 states and 107 transitions. [2021-12-16 00:58:42,464 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-12-16 00:58:42,465 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:42,465 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:42,465 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-16 00:58:42,466 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:42,469 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:42,469 INFO L85 PathProgramCache]: Analyzing trace with hash 1324255922, now seen corresponding path program 1 times [2021-12-16 00:58:42,469 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:42,470 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [757566215] [2021-12-16 00:58:42,470 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:42,470 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:42,497 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:42,560 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2021-12-16 00:58:42,565 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:42,571 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 00:58:42,571 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:42,572 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [757566215] [2021-12-16 00:58:42,572 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [757566215] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:42,572 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 00:58:42,572 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-16 00:58:42,573 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [920588055] [2021-12-16 00:58:42,573 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:42,574 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-16 00:58:42,575 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:42,576 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-16 00:58:42,576 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 00:58:42,576 INFO L87 Difference]: Start difference. First operand 83 states and 107 transitions. Second operand has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 00:58:42,591 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:42,594 INFO L93 Difference]: Finished difference Result 131 states and 169 transitions. [2021-12-16 00:58:42,595 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-16 00:58:42,596 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2021-12-16 00:58:42,598 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:42,599 INFO L225 Difference]: With dead ends: 131 [2021-12-16 00:58:42,600 INFO L226 Difference]: Without dead ends: 74 [2021-12-16 00:58:42,602 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 00:58:42,603 INFO L933 BasicCegarLoop]: 94 mSDtfsCounter, 13 mSDsluCounter, 77 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 171 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:42,605 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [16 Valid, 171 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 00:58:42,606 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 74 states. [2021-12-16 00:58:42,611 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 74 to 74. [2021-12-16 00:58:42,613 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 74 states, 58 states have (on average 1.3275862068965518) internal successors, (77), 65 states have internal predecessors, (77), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-16 00:58:42,614 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 74 states to 74 states and 95 transitions. [2021-12-16 00:58:42,615 INFO L78 Accepts]: Start accepts. Automaton has 74 states and 95 transitions. Word has length 24 [2021-12-16 00:58:42,615 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:42,615 INFO L470 AbstractCegarLoop]: Abstraction has 74 states and 95 transitions. [2021-12-16 00:58:42,616 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.666666666666667) internal successors, (20), 3 states have internal predecessors, (20), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 00:58:42,616 INFO L276 IsEmpty]: Start isEmpty. Operand 74 states and 95 transitions. [2021-12-16 00:58:42,617 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2021-12-16 00:58:42,617 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:42,618 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:42,618 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-16 00:58:42,618 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:42,618 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:42,619 INFO L85 PathProgramCache]: Analyzing trace with hash -398467318, now seen corresponding path program 1 times [2021-12-16 00:58:42,619 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:42,619 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1553252108] [2021-12-16 00:58:42,619 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:42,619 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:42,647 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:42,680 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-16 00:58:42,682 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:42,684 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 00:58:42,684 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:42,684 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1553252108] [2021-12-16 00:58:42,684 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1553252108] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:42,685 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 00:58:42,685 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-16 00:58:42,685 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [486634620] [2021-12-16 00:58:42,685 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:42,685 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-16 00:58:42,686 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:42,686 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-16 00:58:42,686 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-12-16 00:58:42,686 INFO L87 Difference]: Start difference. First operand 74 states and 95 transitions. Second operand has 6 states, 6 states have (on average 4.333333333333333) internal successors, (26), 6 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 00:58:42,775 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:42,775 INFO L93 Difference]: Finished difference Result 141 states and 184 transitions. [2021-12-16 00:58:42,775 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-16 00:58:42,776 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.333333333333333) internal successors, (26), 6 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 29 [2021-12-16 00:58:42,776 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:42,777 INFO L225 Difference]: With dead ends: 141 [2021-12-16 00:58:42,777 INFO L226 Difference]: Without dead ends: 74 [2021-12-16 00:58:42,777 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-12-16 00:58:42,778 INFO L933 BasicCegarLoop]: 88 mSDtfsCounter, 120 mSDsluCounter, 112 mSDsCounter, 0 mSdLazyCounter, 41 mSolverCounterSat, 13 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 120 SdHoareTripleChecker+Valid, 200 SdHoareTripleChecker+Invalid, 54 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 13 IncrementalHoareTripleChecker+Valid, 41 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:42,779 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [120 Valid, 200 Invalid, 54 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [13 Valid, 41 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 00:58:42,779 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 74 states. [2021-12-16 00:58:42,784 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 74 to 74. [2021-12-16 00:58:42,787 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 74 states, 58 states have (on average 1.3103448275862069) internal successors, (76), 65 states have internal predecessors, (76), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-16 00:58:42,787 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 74 states to 74 states and 94 transitions. [2021-12-16 00:58:42,788 INFO L78 Accepts]: Start accepts. Automaton has 74 states and 94 transitions. Word has length 29 [2021-12-16 00:58:42,788 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:42,788 INFO L470 AbstractCegarLoop]: Abstraction has 74 states and 94 transitions. [2021-12-16 00:58:42,788 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.333333333333333) internal successors, (26), 6 states have internal predecessors, (26), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 00:58:42,788 INFO L276 IsEmpty]: Start isEmpty. Operand 74 states and 94 transitions. [2021-12-16 00:58:42,789 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2021-12-16 00:58:42,791 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:42,791 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:42,791 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-16 00:58:42,791 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:42,792 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:42,792 INFO L85 PathProgramCache]: Analyzing trace with hash 1454809844, now seen corresponding path program 1 times [2021-12-16 00:58:42,792 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:42,793 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [111142430] [2021-12-16 00:58:42,793 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:42,793 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:42,801 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:42,846 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-16 00:58:42,848 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:42,858 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 00:58:42,859 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:42,861 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2021-12-16 00:58:42,862 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:42,864 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 00:58:42,864 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:42,864 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [111142430] [2021-12-16 00:58:42,864 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [111142430] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:42,865 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 00:58:42,865 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-16 00:58:42,865 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [224249010] [2021-12-16 00:58:42,865 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:42,865 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-16 00:58:42,866 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:42,866 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-16 00:58:42,866 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-16 00:58:42,866 INFO L87 Difference]: Start difference. First operand 74 states and 94 transitions. Second operand has 5 states, 5 states have (on average 6.4) internal successors, (32), 5 states have internal predecessors, (32), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-16 00:58:42,971 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:42,971 INFO L93 Difference]: Finished difference Result 214 states and 271 transitions. [2021-12-16 00:58:42,972 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-16 00:58:42,972 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 5 states have internal predecessors, (32), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 39 [2021-12-16 00:58:42,972 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:42,973 INFO L225 Difference]: With dead ends: 214 [2021-12-16 00:58:42,973 INFO L226 Difference]: Without dead ends: 147 [2021-12-16 00:58:42,974 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 8 SyntacticMatches, 1 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2021-12-16 00:58:42,975 INFO L933 BasicCegarLoop]: 122 mSDtfsCounter, 167 mSDsluCounter, 165 mSDsCounter, 0 mSdLazyCounter, 91 mSolverCounterSat, 46 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 169 SdHoareTripleChecker+Valid, 287 SdHoareTripleChecker+Invalid, 137 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 46 IncrementalHoareTripleChecker+Valid, 91 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:42,975 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [169 Valid, 287 Invalid, 137 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [46 Valid, 91 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 00:58:42,976 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 147 states. [2021-12-16 00:58:42,985 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 147 to 141. [2021-12-16 00:58:42,985 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 141 states, 109 states have (on average 1.2568807339449541) internal successors, (137), 117 states have internal predecessors, (137), 15 states have call successors, (15), 13 states have call predecessors, (15), 16 states have return successors, (20), 16 states have call predecessors, (20), 15 states have call successors, (20) [2021-12-16 00:58:42,986 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 141 states to 141 states and 172 transitions. [2021-12-16 00:58:42,986 INFO L78 Accepts]: Start accepts. Automaton has 141 states and 172 transitions. Word has length 39 [2021-12-16 00:58:42,986 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:42,987 INFO L470 AbstractCegarLoop]: Abstraction has 141 states and 172 transitions. [2021-12-16 00:58:42,987 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.4) internal successors, (32), 5 states have internal predecessors, (32), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-16 00:58:42,987 INFO L276 IsEmpty]: Start isEmpty. Operand 141 states and 172 transitions. [2021-12-16 00:58:42,988 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2021-12-16 00:58:42,988 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:42,988 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:42,988 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-16 00:58:42,988 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:42,989 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:42,989 INFO L85 PathProgramCache]: Analyzing trace with hash 2113308012, now seen corresponding path program 1 times [2021-12-16 00:58:42,989 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:42,989 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [851443937] [2021-12-16 00:58:42,989 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:42,990 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:42,999 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,026 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-16 00:58:43,029 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,032 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-16 00:58:43,033 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,036 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2021-12-16 00:58:43,038 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,048 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 00:58:43,049 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:43,049 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [851443937] [2021-12-16 00:58:43,049 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [851443937] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:43,049 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 00:58:43,049 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-16 00:58:43,049 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [610130185] [2021-12-16 00:58:43,050 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:43,050 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 00:58:43,050 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:43,050 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 00:58:43,051 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-16 00:58:43,051 INFO L87 Difference]: Start difference. First operand 141 states and 172 transitions. Second operand has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-16 00:58:43,231 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:43,231 INFO L93 Difference]: Finished difference Result 413 states and 514 transitions. [2021-12-16 00:58:43,232 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2021-12-16 00:58:43,232 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) Word has length 45 [2021-12-16 00:58:43,232 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:43,234 INFO L225 Difference]: With dead ends: 413 [2021-12-16 00:58:43,234 INFO L226 Difference]: Without dead ends: 279 [2021-12-16 00:58:43,235 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 23 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=53, Invalid=157, Unknown=0, NotChecked=0, Total=210 [2021-12-16 00:58:43,235 INFO L933 BasicCegarLoop]: 92 mSDtfsCounter, 152 mSDsluCounter, 341 mSDsCounter, 0 mSdLazyCounter, 177 mSolverCounterSat, 45 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 159 SdHoareTripleChecker+Valid, 433 SdHoareTripleChecker+Invalid, 222 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 45 IncrementalHoareTripleChecker+Valid, 177 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:43,236 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [159 Valid, 433 Invalid, 222 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [45 Valid, 177 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 00:58:43,236 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 279 states. [2021-12-16 00:58:43,250 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 279 to 265. [2021-12-16 00:58:43,251 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 265 states, 202 states have (on average 1.2277227722772277) internal successors, (248), 217 states have internal predecessors, (248), 30 states have call successors, (30), 26 states have call predecessors, (30), 32 states have return successors, (42), 32 states have call predecessors, (42), 30 states have call successors, (42) [2021-12-16 00:58:43,252 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 265 states to 265 states and 320 transitions. [2021-12-16 00:58:43,252 INFO L78 Accepts]: Start accepts. Automaton has 265 states and 320 transitions. Word has length 45 [2021-12-16 00:58:43,252 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:43,252 INFO L470 AbstractCegarLoop]: Abstraction has 265 states and 320 transitions. [2021-12-16 00:58:43,253 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-16 00:58:43,253 INFO L276 IsEmpty]: Start isEmpty. Operand 265 states and 320 transitions. [2021-12-16 00:58:43,254 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2021-12-16 00:58:43,254 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:43,254 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:43,254 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-16 00:58:43,254 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:43,255 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:43,255 INFO L85 PathProgramCache]: Analyzing trace with hash 1160176424, now seen corresponding path program 1 times [2021-12-16 00:58:43,255 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:43,255 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1925741399] [2021-12-16 00:58:43,255 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:43,255 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:43,264 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,292 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-16 00:58:43,294 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,300 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-16 00:58:43,310 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,322 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-16 00:58:43,323 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,325 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 40 [2021-12-16 00:58:43,326 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,328 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 00:58:43,328 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:43,328 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1925741399] [2021-12-16 00:58:43,328 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1925741399] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:43,329 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 00:58:43,329 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-16 00:58:43,329 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [414160474] [2021-12-16 00:58:43,329 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:43,329 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 00:58:43,330 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:43,330 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 00:58:43,330 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-16 00:58:43,330 INFO L87 Difference]: Start difference. First operand 265 states and 320 transitions. Second operand has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2021-12-16 00:58:43,627 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:43,627 INFO L93 Difference]: Finished difference Result 281 states and 336 transitions. [2021-12-16 00:58:43,627 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2021-12-16 00:58:43,627 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) Word has length 49 [2021-12-16 00:58:43,628 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:43,629 INFO L225 Difference]: With dead ends: 281 [2021-12-16 00:58:43,629 INFO L226 Difference]: Without dead ends: 279 [2021-12-16 00:58:43,629 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 28 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 34 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=84, Invalid=188, Unknown=0, NotChecked=0, Total=272 [2021-12-16 00:58:43,630 INFO L933 BasicCegarLoop]: 108 mSDtfsCounter, 169 mSDsluCounter, 143 mSDsCounter, 0 mSdLazyCounter, 332 mSolverCounterSat, 56 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 171 SdHoareTripleChecker+Valid, 251 SdHoareTripleChecker+Invalid, 388 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 56 IncrementalHoareTripleChecker+Valid, 332 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:43,630 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [171 Valid, 251 Invalid, 388 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [56 Valid, 332 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-16 00:58:43,635 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 279 states. [2021-12-16 00:58:43,651 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 279 to 265. [2021-12-16 00:58:43,667 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 265 states, 202 states have (on average 1.2178217821782178) internal successors, (246), 217 states have internal predecessors, (246), 30 states have call successors, (30), 26 states have call predecessors, (30), 32 states have return successors, (42), 32 states have call predecessors, (42), 30 states have call successors, (42) [2021-12-16 00:58:43,668 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 265 states to 265 states and 318 transitions. [2021-12-16 00:58:43,669 INFO L78 Accepts]: Start accepts. Automaton has 265 states and 318 transitions. Word has length 49 [2021-12-16 00:58:43,669 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:43,669 INFO L470 AbstractCegarLoop]: Abstraction has 265 states and 318 transitions. [2021-12-16 00:58:43,669 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 1 states have call predecessors, (4), 1 states have call successors, (4) [2021-12-16 00:58:43,669 INFO L276 IsEmpty]: Start isEmpty. Operand 265 states and 318 transitions. [2021-12-16 00:58:43,670 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2021-12-16 00:58:43,670 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:43,670 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:43,670 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-16 00:58:43,670 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:43,671 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:43,671 INFO L85 PathProgramCache]: Analyzing trace with hash -1517229435, now seen corresponding path program 1 times [2021-12-16 00:58:43,671 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:43,671 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [224984616] [2021-12-16 00:58:43,671 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:43,671 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:43,679 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,707 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-16 00:58:43,708 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,712 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-16 00:58:43,715 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,737 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-16 00:58:43,738 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,740 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2021-12-16 00:58:43,741 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,742 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-16 00:58:43,742 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:43,742 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [224984616] [2021-12-16 00:58:43,743 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [224984616] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:43,743 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 00:58:43,743 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-16 00:58:43,743 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1000584130] [2021-12-16 00:58:43,743 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:43,743 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 00:58:43,744 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:43,744 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 00:58:43,744 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-16 00:58:43,744 INFO L87 Difference]: Start difference. First operand 265 states and 318 transitions. Second operand has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 5 states have internal predecessors, (44), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-16 00:58:43,915 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:43,915 INFO L93 Difference]: Finished difference Result 541 states and 662 transitions. [2021-12-16 00:58:43,915 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-16 00:58:43,916 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 5 states have internal predecessors, (44), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 55 [2021-12-16 00:58:43,916 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:43,917 INFO L225 Difference]: With dead ends: 541 [2021-12-16 00:58:43,917 INFO L226 Difference]: Without dead ends: 283 [2021-12-16 00:58:43,918 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 20 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-12-16 00:58:43,919 INFO L933 BasicCegarLoop]: 85 mSDtfsCounter, 125 mSDsluCounter, 144 mSDsCounter, 0 mSdLazyCounter, 261 mSolverCounterSat, 46 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 126 SdHoareTripleChecker+Valid, 229 SdHoareTripleChecker+Invalid, 307 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 46 IncrementalHoareTripleChecker+Valid, 261 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:43,919 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [126 Valid, 229 Invalid, 307 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [46 Valid, 261 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 00:58:43,920 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 283 states. [2021-12-16 00:58:43,928 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 283 to 271. [2021-12-16 00:58:43,929 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 271 states, 208 states have (on average 1.2115384615384615) internal successors, (252), 223 states have internal predecessors, (252), 30 states have call successors, (30), 26 states have call predecessors, (30), 32 states have return successors, (42), 32 states have call predecessors, (42), 30 states have call successors, (42) [2021-12-16 00:58:43,930 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 271 states to 271 states and 324 transitions. [2021-12-16 00:58:43,930 INFO L78 Accepts]: Start accepts. Automaton has 271 states and 324 transitions. Word has length 55 [2021-12-16 00:58:43,931 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:43,931 INFO L470 AbstractCegarLoop]: Abstraction has 271 states and 324 transitions. [2021-12-16 00:58:43,931 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.285714285714286) internal successors, (44), 5 states have internal predecessors, (44), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-16 00:58:43,931 INFO L276 IsEmpty]: Start isEmpty. Operand 271 states and 324 transitions. [2021-12-16 00:58:43,932 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2021-12-16 00:58:43,932 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:43,932 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:43,933 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-12-16 00:58:43,933 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:43,933 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:43,933 INFO L85 PathProgramCache]: Analyzing trace with hash -1455189821, now seen corresponding path program 1 times [2021-12-16 00:58:43,933 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:43,934 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2000690612] [2021-12-16 00:58:43,934 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:43,934 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:43,941 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,952 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-16 00:58:43,953 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,957 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-16 00:58:43,960 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,971 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-16 00:58:43,973 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,975 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2021-12-16 00:58:43,975 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:43,977 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-16 00:58:43,977 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:43,978 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2000690612] [2021-12-16 00:58:43,978 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2000690612] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:43,978 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 00:58:43,978 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-16 00:58:43,978 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [936636825] [2021-12-16 00:58:43,978 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:43,979 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-16 00:58:43,979 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:43,979 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-16 00:58:43,979 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-16 00:58:43,979 INFO L87 Difference]: Start difference. First operand 271 states and 324 transitions. Second operand has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 4 states have internal predecessors, (44), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-16 00:58:44,113 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:44,114 INFO L93 Difference]: Finished difference Result 553 states and 674 transitions. [2021-12-16 00:58:44,114 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-16 00:58:44,114 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 4 states have internal predecessors, (44), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 55 [2021-12-16 00:58:44,114 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:44,115 INFO L225 Difference]: With dead ends: 553 [2021-12-16 00:58:44,115 INFO L226 Difference]: Without dead ends: 289 [2021-12-16 00:58:44,116 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-12-16 00:58:44,117 INFO L933 BasicCegarLoop]: 86 mSDtfsCounter, 128 mSDsluCounter, 110 mSDsCounter, 0 mSdLazyCounter, 191 mSolverCounterSat, 41 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 129 SdHoareTripleChecker+Valid, 196 SdHoareTripleChecker+Invalid, 232 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 41 IncrementalHoareTripleChecker+Valid, 191 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:44,117 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [129 Valid, 196 Invalid, 232 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [41 Valid, 191 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 00:58:44,118 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 289 states. [2021-12-16 00:58:44,126 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 289 to 275. [2021-12-16 00:58:44,126 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 275 states, 212 states have (on average 1.2075471698113207) internal successors, (256), 227 states have internal predecessors, (256), 30 states have call successors, (30), 26 states have call predecessors, (30), 32 states have return successors, (42), 32 states have call predecessors, (42), 30 states have call successors, (42) [2021-12-16 00:58:44,127 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 275 states to 275 states and 328 transitions. [2021-12-16 00:58:44,128 INFO L78 Accepts]: Start accepts. Automaton has 275 states and 328 transitions. Word has length 55 [2021-12-16 00:58:44,128 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:44,128 INFO L470 AbstractCegarLoop]: Abstraction has 275 states and 328 transitions. [2021-12-16 00:58:44,128 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 4 states have internal predecessors, (44), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-16 00:58:44,128 INFO L276 IsEmpty]: Start isEmpty. Operand 275 states and 328 transitions. [2021-12-16 00:58:44,129 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 56 [2021-12-16 00:58:44,129 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:44,129 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:44,129 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-12-16 00:58:44,130 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:44,130 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:44,130 INFO L85 PathProgramCache]: Analyzing trace with hash -1964662911, now seen corresponding path program 1 times [2021-12-16 00:58:44,130 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:44,130 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [401113444] [2021-12-16 00:58:44,130 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:44,131 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:44,137 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,152 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2021-12-16 00:58:44,154 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,159 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-16 00:58:44,161 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,169 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-16 00:58:44,170 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,174 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 46 [2021-12-16 00:58:44,175 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,177 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-16 00:58:44,177 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:44,177 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [401113444] [2021-12-16 00:58:44,177 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [401113444] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:44,177 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 00:58:44,177 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-16 00:58:44,178 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [140553321] [2021-12-16 00:58:44,178 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:44,178 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-16 00:58:44,178 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:44,178 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-16 00:58:44,179 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-16 00:58:44,179 INFO L87 Difference]: Start difference. First operand 275 states and 328 transitions. Second operand has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2021-12-16 00:58:44,391 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:44,391 INFO L93 Difference]: Finished difference Result 771 states and 970 transitions. [2021-12-16 00:58:44,391 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 12 states. [2021-12-16 00:58:44,392 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 55 [2021-12-16 00:58:44,392 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:44,394 INFO L225 Difference]: With dead ends: 771 [2021-12-16 00:58:44,394 INFO L226 Difference]: Without dead ends: 503 [2021-12-16 00:58:44,395 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 23 GetRequests, 13 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=92, Unknown=0, NotChecked=0, Total=132 [2021-12-16 00:58:44,395 INFO L933 BasicCegarLoop]: 131 mSDtfsCounter, 278 mSDsluCounter, 119 mSDsCounter, 0 mSdLazyCounter, 248 mSolverCounterSat, 115 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 280 SdHoareTripleChecker+Valid, 250 SdHoareTripleChecker+Invalid, 363 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 115 IncrementalHoareTripleChecker+Valid, 248 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:44,396 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [280 Valid, 250 Invalid, 363 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [115 Valid, 248 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-16 00:58:44,396 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 503 states. [2021-12-16 00:58:44,411 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 503 to 501. [2021-12-16 00:58:44,417 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 501 states, 382 states have (on average 1.1963350785340314) internal successors, (457), 405 states have internal predecessors, (457), 60 states have call successors, (60), 56 states have call predecessors, (60), 58 states have return successors, (95), 60 states have call predecessors, (95), 60 states have call successors, (95) [2021-12-16 00:58:44,421 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 501 states to 501 states and 612 transitions. [2021-12-16 00:58:44,421 INFO L78 Accepts]: Start accepts. Automaton has 501 states and 612 transitions. Word has length 55 [2021-12-16 00:58:44,421 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:44,421 INFO L470 AbstractCegarLoop]: Abstraction has 501 states and 612 transitions. [2021-12-16 00:58:44,422 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 7.333333333333333) internal successors, (44), 4 states have internal predecessors, (44), 3 states have call successors, (5), 4 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2021-12-16 00:58:44,422 INFO L276 IsEmpty]: Start isEmpty. Operand 501 states and 612 transitions. [2021-12-16 00:58:44,423 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2021-12-16 00:58:44,423 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:44,423 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:44,423 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-12-16 00:58:44,424 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:44,424 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:44,424 INFO L85 PathProgramCache]: Analyzing trace with hash -1847980005, now seen corresponding path program 1 times [2021-12-16 00:58:44,424 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:44,424 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1511254687] [2021-12-16 00:58:44,425 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:44,425 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:44,437 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,469 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 00:58:44,470 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,475 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2021-12-16 00:58:44,477 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,487 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2021-12-16 00:58:44,490 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,524 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-16 00:58:44,525 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,535 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 50 [2021-12-16 00:58:44,536 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,538 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2021-12-16 00:58:44,538 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:44,538 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1511254687] [2021-12-16 00:58:44,538 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1511254687] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-16 00:58:44,538 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1821100830] [2021-12-16 00:58:44,538 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:44,538 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-16 00:58:44,538 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 00:58:44,540 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-16 00:58:44,541 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-16 00:58:44,607 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:44,610 INFO L263 TraceCheckSpWp]: Trace formula consists of 381 conjuncts, 8 conjunts are in the unsatisfiable core [2021-12-16 00:58:44,614 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-16 00:58:44,811 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 00:58:44,811 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-16 00:58:44,811 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1821100830] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:44,811 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-16 00:58:44,811 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [14] total 18 [2021-12-16 00:58:44,812 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1724341548] [2021-12-16 00:58:44,812 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:44,812 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 00:58:44,812 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:44,813 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 00:58:44,813 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=42, Invalid=264, Unknown=0, NotChecked=0, Total=306 [2021-12-16 00:58:44,813 INFO L87 Difference]: Start difference. First operand 501 states and 612 transitions. Second operand has 7 states, 7 states have (on average 6.857142857142857) internal successors, (48), 6 states have internal predecessors, (48), 3 states have call successors, (6), 3 states have call predecessors, (6), 4 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) [2021-12-16 00:58:44,913 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:44,914 INFO L93 Difference]: Finished difference Result 974 states and 1195 transitions. [2021-12-16 00:58:44,914 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-16 00:58:44,914 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.857142857142857) internal successors, (48), 6 states have internal predecessors, (48), 3 states have call successors, (6), 3 states have call predecessors, (6), 4 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) Word has length 59 [2021-12-16 00:58:44,915 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:44,917 INFO L225 Difference]: With dead ends: 974 [2021-12-16 00:58:44,917 INFO L226 Difference]: Without dead ends: 480 [2021-12-16 00:58:44,918 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 79 GetRequests, 62 SyntacticMatches, 0 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=48, Invalid=294, Unknown=0, NotChecked=0, Total=342 [2021-12-16 00:58:44,919 INFO L933 BasicCegarLoop]: 168 mSDtfsCounter, 68 mSDsluCounter, 325 mSDsCounter, 0 mSdLazyCounter, 100 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 70 SdHoareTripleChecker+Valid, 493 SdHoareTripleChecker+Invalid, 102 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 100 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:44,920 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [70 Valid, 493 Invalid, 102 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 100 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 00:58:44,920 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 480 states. [2021-12-16 00:58:44,940 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 480 to 478. [2021-12-16 00:58:44,941 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 478 states, 364 states have (on average 1.1813186813186813) internal successors, (430), 386 states have internal predecessors, (430), 58 states have call successors, (58), 54 states have call predecessors, (58), 55 states have return successors, (82), 57 states have call predecessors, (82), 58 states have call successors, (82) [2021-12-16 00:58:44,943 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 478 states to 478 states and 570 transitions. [2021-12-16 00:58:44,943 INFO L78 Accepts]: Start accepts. Automaton has 478 states and 570 transitions. Word has length 59 [2021-12-16 00:58:44,943 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:44,943 INFO L470 AbstractCegarLoop]: Abstraction has 478 states and 570 transitions. [2021-12-16 00:58:44,944 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.857142857142857) internal successors, (48), 6 states have internal predecessors, (48), 3 states have call successors, (6), 3 states have call predecessors, (6), 4 states have return successors, (5), 4 states have call predecessors, (5), 3 states have call successors, (5) [2021-12-16 00:58:44,944 INFO L276 IsEmpty]: Start isEmpty. Operand 478 states and 570 transitions. [2021-12-16 00:58:44,945 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 99 [2021-12-16 00:58:44,945 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:44,945 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:44,966 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-16 00:58:45,163 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2021-12-16 00:58:45,163 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:45,163 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:45,164 INFO L85 PathProgramCache]: Analyzing trace with hash 1135855989, now seen corresponding path program 1 times [2021-12-16 00:58:45,164 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:45,164 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [655382107] [2021-12-16 00:58:45,164 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:45,164 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:45,177 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,228 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 00:58:45,228 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,235 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-16 00:58:45,238 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,248 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-16 00:58:45,250 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,255 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-16 00:58:45,257 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,258 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2021-12-16 00:58:45,259 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,264 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 61 [2021-12-16 00:58:45,265 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,267 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 79 [2021-12-16 00:58:45,268 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,269 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 00:58:45,270 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,271 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 89 [2021-12-16 00:58:45,271 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,273 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 17 proven. 3 refuted. 0 times theorem prover too weak. 11 trivial. 0 not checked. [2021-12-16 00:58:45,273 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:45,273 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [655382107] [2021-12-16 00:58:45,273 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [655382107] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-16 00:58:45,273 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [897559121] [2021-12-16 00:58:45,273 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:45,274 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-16 00:58:45,274 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 00:58:45,275 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-16 00:58:45,276 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2021-12-16 00:58:45,349 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,351 INFO L263 TraceCheckSpWp]: Trace formula consists of 478 conjuncts, 11 conjunts are in the unsatisfiable core [2021-12-16 00:58:45,353 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-16 00:58:45,506 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 28 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2021-12-16 00:58:45,506 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-16 00:58:45,506 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [897559121] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:45,506 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-16 00:58:45,506 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [10] total 10 [2021-12-16 00:58:45,507 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1533212011] [2021-12-16 00:58:45,507 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:45,507 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-16 00:58:45,507 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:45,508 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-16 00:58:45,508 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=20, Invalid=70, Unknown=0, NotChecked=0, Total=90 [2021-12-16 00:58:45,508 INFO L87 Difference]: Start difference. First operand 478 states and 570 transitions. Second operand has 6 states, 6 states have (on average 12.833333333333334) internal successors, (77), 6 states have internal predecessors, (77), 3 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2021-12-16 00:58:45,610 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:45,610 INFO L93 Difference]: Finished difference Result 1183 states and 1469 transitions. [2021-12-16 00:58:45,610 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-16 00:58:45,611 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 12.833333333333334) internal successors, (77), 6 states have internal predecessors, (77), 3 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) Word has length 98 [2021-12-16 00:58:45,611 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:45,615 INFO L225 Difference]: With dead ends: 1183 [2021-12-16 00:58:45,616 INFO L226 Difference]: Without dead ends: 804 [2021-12-16 00:58:45,617 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 126 GetRequests, 112 SyntacticMatches, 4 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=30, Invalid=102, Unknown=0, NotChecked=0, Total=132 [2021-12-16 00:58:45,618 INFO L933 BasicCegarLoop]: 163 mSDtfsCounter, 167 mSDsluCounter, 477 mSDsCounter, 0 mSdLazyCounter, 54 mSolverCounterSat, 28 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 169 SdHoareTripleChecker+Valid, 640 SdHoareTripleChecker+Invalid, 82 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 28 IncrementalHoareTripleChecker+Valid, 54 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:45,618 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [169 Valid, 640 Invalid, 82 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [28 Valid, 54 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 00:58:45,619 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 804 states. [2021-12-16 00:58:45,652 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 804 to 692. [2021-12-16 00:58:45,653 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 692 states, 526 states have (on average 1.182509505703422) internal successors, (622), 558 states have internal predecessors, (622), 84 states have call successors, (84), 78 states have call predecessors, (84), 81 states have return successors, (125), 79 states have call predecessors, (125), 84 states have call successors, (125) [2021-12-16 00:58:45,656 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 692 states to 692 states and 831 transitions. [2021-12-16 00:58:45,656 INFO L78 Accepts]: Start accepts. Automaton has 692 states and 831 transitions. Word has length 98 [2021-12-16 00:58:45,657 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:45,657 INFO L470 AbstractCegarLoop]: Abstraction has 692 states and 831 transitions. [2021-12-16 00:58:45,657 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 12.833333333333334) internal successors, (77), 6 states have internal predecessors, (77), 3 states have call successors, (10), 3 states have call predecessors, (10), 3 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2021-12-16 00:58:45,657 INFO L276 IsEmpty]: Start isEmpty. Operand 692 states and 831 transitions. [2021-12-16 00:58:45,662 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 99 [2021-12-16 00:58:45,663 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 00:58:45,663 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:45,680 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2021-12-16 00:58:45,877 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2021-12-16 00:58:45,877 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 00:58:45,877 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 00:58:45,877 INFO L85 PathProgramCache]: Analyzing trace with hash -669582345, now seen corresponding path program 1 times [2021-12-16 00:58:45,878 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 00:58:45,878 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [722949873] [2021-12-16 00:58:45,878 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:45,878 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 00:58:45,888 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,908 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 00:58:45,909 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,914 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-16 00:58:45,924 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,934 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-16 00:58:45,935 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,937 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-16 00:58:45,938 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,940 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2021-12-16 00:58:45,941 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,945 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 61 [2021-12-16 00:58:45,946 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,947 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 79 [2021-12-16 00:58:45,948 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,950 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 00:58:45,950 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,952 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 89 [2021-12-16 00:58:45,952 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:45,953 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 5 proven. 1 refuted. 0 times theorem prover too weak. 25 trivial. 0 not checked. [2021-12-16 00:58:45,953 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 00:58:45,954 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [722949873] [2021-12-16 00:58:45,954 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [722949873] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-16 00:58:45,954 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1065973864] [2021-12-16 00:58:45,954 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 00:58:45,954 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-16 00:58:45,954 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 00:58:45,955 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-16 00:58:45,971 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2021-12-16 00:58:46,046 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 00:58:46,048 INFO L263 TraceCheckSpWp]: Trace formula consists of 479 conjuncts, 5 conjunts are in the unsatisfiable core [2021-12-16 00:58:46,050 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-16 00:58:46,156 INFO L134 CoverageAnalysis]: Checked inductivity of 31 backedges. 15 proven. 0 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2021-12-16 00:58:46,156 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-16 00:58:46,156 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1065973864] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 00:58:46,157 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-16 00:58:46,157 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [9] total 12 [2021-12-16 00:58:46,157 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [925458482] [2021-12-16 00:58:46,157 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 00:58:46,157 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-16 00:58:46,157 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 00:58:46,158 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-16 00:58:46,158 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=26, Invalid=106, Unknown=0, NotChecked=0, Total=132 [2021-12-16 00:58:46,158 INFO L87 Difference]: Start difference. First operand 692 states and 831 transitions. Second operand has 5 states, 5 states have (on average 13.8) internal successors, (69), 5 states have internal predecessors, (69), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) [2021-12-16 00:58:46,190 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 00:58:46,190 INFO L93 Difference]: Finished difference Result 979 states and 1173 transitions. [2021-12-16 00:58:46,191 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-16 00:58:46,191 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 13.8) internal successors, (69), 5 states have internal predecessors, (69), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) Word has length 98 [2021-12-16 00:58:46,191 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 00:58:46,191 INFO L225 Difference]: With dead ends: 979 [2021-12-16 00:58:46,191 INFO L226 Difference]: Without dead ends: 0 [2021-12-16 00:58:46,193 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 123 GetRequests, 110 SyntacticMatches, 1 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=36, Invalid=146, Unknown=0, NotChecked=0, Total=182 [2021-12-16 00:58:46,193 INFO L933 BasicCegarLoop]: 93 mSDtfsCounter, 36 mSDsluCounter, 242 mSDsCounter, 0 mSdLazyCounter, 7 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 36 SdHoareTripleChecker+Valid, 335 SdHoareTripleChecker+Invalid, 10 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 7 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 00:58:46,194 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [36 Valid, 335 Invalid, 10 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 7 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 00:58:46,194 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-16 00:58:46,194 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-16 00:58:46,194 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 00:58:46,194 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-16 00:58:46,195 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 98 [2021-12-16 00:58:46,195 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 00:58:46,195 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-16 00:58:46,195 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 13.8) internal successors, (69), 5 states have internal predecessors, (69), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) [2021-12-16 00:58:46,195 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-16 00:58:46,195 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-16 00:58:46,197 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-16 00:58:46,215 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2021-12-16 00:58:46,427 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,4 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-16 00:58:46,429 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-16 00:58:49,101 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 304 310) no Hoare annotation was computed. [2021-12-16 00:58:49,101 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 304 310) the Hoare annotation is: true [2021-12-16 00:58:49,101 INFO L858 garLoopResultBuilder]: For program point L97-1(lines 93 104) no Hoare annotation was computed. [2021-12-16 00:58:49,101 INFO L854 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 93 104) the Hoare annotation is: (let ((.cse2 (not (= |old(~methaneLevelCritical~0)| 0))) (.cse0 (not (= ~pumpRunning~0 0))) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse1 (not (= ~systemActive~0 1)))) (and (or .cse0 (= ~methaneLevelCritical~0 |old(~methaneLevelCritical~0)|) (not (<= 1 ~waterLevel~0)) (not (<= 1 |old(~methaneLevelCritical~0)|)) .cse1) (or .cse2 .cse3 .cse1 (not (<= 2 ~waterLevel~0))) (or .cse2 (not (= ~waterLevel~0 1)) .cse0 .cse3 .cse1))) [2021-12-16 00:58:49,101 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 93 104) no Hoare annotation was computed. [2021-12-16 00:58:49,101 INFO L858 garLoopResultBuilder]: For program point L481(lines 481 485) no Hoare annotation was computed. [2021-12-16 00:58:49,101 INFO L858 garLoopResultBuilder]: For program point L481-2(lines 481 485) no Hoare annotation was computed. [2021-12-16 00:58:49,102 INFO L854 garLoopResultBuilder]: At program point L506(line 506) the Hoare annotation is: (let ((.cse12 (= ~methaneLevelCritical~0 0)) (.cse13 (<= 2 ~waterLevel~0)) (.cse5 (= ~pumpRunning~0 0))) (let ((.cse4 (not (<= 1 |old(~waterLevel~0)|))) (.cse9 (not (= |old(~waterLevel~0)| 1))) (.cse10 (= ~waterLevel~0 1)) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (not (<= 1 ~methaneLevelCritical~0))) (.cse8 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse13 .cse5)) (.cse7 (not (<= 2 |old(~waterLevel~0)|))) (.cse0 (and .cse12 .cse13)) (.cse11 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1)) (<= 1 |timeShift_processEnvironment_~tmp~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0) .cse5)) (.cse2 (not .cse12)) (.cse3 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (or .cse6 .cse1 .cse3 .cse4 .cse5) (or .cse7 .cse6 .cse1 .cse8 .cse3) (or .cse9 .cse10 .cse6 .cse1 .cse3) (or .cse7 .cse0 .cse1 .cse2 .cse3) (or .cse9 .cse10 .cse1 .cse2 .cse3) (or .cse7 .cse6 .cse11 .cse8 .cse3) (or .cse7 .cse0 .cse11 .cse2 .cse3)))) [2021-12-16 00:58:49,102 INFO L858 garLoopResultBuilder]: For program point L506-1(line 506) no Hoare annotation was computed. [2021-12-16 00:58:49,102 INFO L858 garLoopResultBuilder]: For program point L73(lines 73 77) no Hoare annotation was computed. [2021-12-16 00:58:49,102 INFO L854 garLoopResultBuilder]: At program point L73-2(lines 69 80) the Hoare annotation is: (let ((.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse2 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0))) (.cse5 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (<= 1 ~methaneLevelCritical~0))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= ~systemActive~0 1))) (.cse6 (not (<= 1 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse3 .cse6) (or .cse0 .cse2 .cse5 .cse3) (or .cse1 .cse4 .cse3 .cse6))) [2021-12-16 00:58:49,102 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 280 303) no Hoare annotation was computed. [2021-12-16 00:58:49,102 INFO L858 garLoopResultBuilder]: For program point L284-1(lines 283 302) no Hoare annotation was computed. [2021-12-16 00:58:49,102 INFO L858 garLoopResultBuilder]: For program point L346(lines 346 354) no Hoare annotation was computed. [2021-12-16 00:58:49,102 INFO L858 garLoopResultBuilder]: For program point L342(lines 342 359) no Hoare annotation was computed. [2021-12-16 00:58:49,103 INFO L854 garLoopResultBuilder]: At program point L487(lines 472 490) the Hoare annotation is: (let ((.cse1 (not (<= 1 ~methaneLevelCritical~0))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (not (<= 1 |old(~waterLevel~0)|))) (.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse5 (not (= ~methaneLevelCritical~0 0))) (.cse2 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1)) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0))) (.cse3 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse3 .cse6) (or .cse1 .cse4 .cse3 .cse6) (or .cse0 .cse5 .cse2 .cse3))) [2021-12-16 00:58:49,103 INFO L854 garLoopResultBuilder]: At program point L165(lines 160 168) the Hoare annotation is: (let ((.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse3 (and (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0))) (.cse4 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (<= 1 ~methaneLevelCritical~0))) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~systemActive~0 1))) (.cse6 (not (<= 1 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse4 .cse2 .cse3) (or .cse5 .cse4 .cse2 .cse6) (or .cse1 .cse5 .cse2 .cse6))) [2021-12-16 00:58:49,103 INFO L858 garLoopResultBuilder]: For program point L512(lines 512 518) no Hoare annotation was computed. [2021-12-16 00:58:49,103 INFO L854 garLoopResultBuilder]: At program point L413(lines 408 416) the Hoare annotation is: (let ((.cse0 (= |timeShift_isPumpRunning_#res#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (let ((.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (not (= ~methaneLevelCritical~0 0))) (.cse5 (not (<= 1 |old(~waterLevel~0)|))) (.cse6 (not (<= 2 |old(~waterLevel~0)|))) (.cse8 (and .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 2 ~waterLevel~0) .cse1)) (.cse2 (not (<= 1 ~methaneLevelCritical~0))) (.cse4 (not (= ~systemActive~0 1)))) (and (or (and .cse0 .cse1) .cse2 .cse3 .cse4 .cse5) (or .cse6 .cse7 .cse4) (or (not (= |old(~waterLevel~0)| 1)) (= ~waterLevel~0 1) .cse2 .cse3 .cse4) (or .cse6 .cse8 .cse2 .cse3 .cse4) (or .cse3 .cse7 .cse4 .cse5) (or .cse6 .cse8 .cse2 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) .cse0 (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1)) (<= 1 |timeShift_processEnvironment_~tmp~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0) .cse1) .cse4)))) [2021-12-16 00:58:49,103 INFO L858 garLoopResultBuilder]: For program point L508(lines 508 521) no Hoare annotation was computed. [2021-12-16 00:58:49,103 INFO L854 garLoopResultBuilder]: At program point L508-1(lines 500 524) the Hoare annotation is: (let ((.cse20 (= ~methaneLevelCritical~0 0)) (.cse10 (= |timeShift___utac_acc__Specification1_spec__1_~tmp~6#1| 0)) (.cse16 (<= 2 ~waterLevel~0))) (let ((.cse3 (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|)) (.cse4 (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0)) (.cse5 (<= 0 |timeShift_isLowWaterSensorDry_#res#1|)) (.cse7 (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1))) (.cse6 (<= |timeShift_isLowWaterSensorDry_#res#1| 0)) (.cse8 (<= 1 |timeShift_processEnvironment_~tmp~2#1|)) (.cse9 (<= 1 |timeShift_isLowWaterLevel_#res#1|)) (.cse11 (<= 1 ~waterLevel~0)) (.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse1 (and .cse20 .cse10 .cse16)) (.cse17 (not (= |old(~waterLevel~0)| 1))) (.cse18 (= ~waterLevel~0 1)) (.cse12 (= ~pumpRunning~0 0)) (.cse2 (not .cse20)) (.cse14 (not (<= 1 ~methaneLevelCritical~0))) (.cse15 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse19 (not (= |old(~pumpRunning~0)| 0))) (.cse13 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 (and .cse3 .cse4 .cse5 .cse6 .cse7 .cse8 .cse9 .cse10 .cse11 .cse12) .cse13) (or .cse0 .cse14 (and .cse3 .cse4 (not (= 0 |old(~pumpRunning~0)|)) .cse5 .cse7 .cse6 .cse8 .cse9 .cse11 .cse12) (and .cse15 .cse16 .cse12) .cse13) (or .cse17 .cse18 .cse14 .cse19 .cse13) (or .cse0 .cse1 .cse19 .cse2 .cse13) (or .cse17 (and .cse18 .cse10 .cse12) .cse19 .cse2 .cse13) (or .cse14 .cse15 .cse19 .cse13 (not (<= 1 |old(~waterLevel~0)|)))))) [2021-12-16 00:58:49,103 INFO L858 garLoopResultBuilder]: For program point L54(line 54) no Hoare annotation was computed. [2021-12-16 00:58:49,104 INFO L854 garLoopResultBuilder]: At program point L352(line 352) the Hoare annotation is: (let ((.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (<= 1 ~methaneLevelCritical~0))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~systemActive~0 1))) (.cse5 (not (<= 1 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2) (or .cse0 .cse3 .cse2) (or .cse4 .cse3 .cse2 .cse5) (or .cse1 .cse4 .cse2 .cse5))) [2021-12-16 00:58:49,104 INFO L854 garLoopResultBuilder]: At program point L55(lines 50 57) the Hoare annotation is: (let ((.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (<= 1 ~methaneLevelCritical~0))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~systemActive~0 1))) (.cse5 (not (<= 1 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2) (or .cse0 .cse3 .cse2) (or .cse4 .cse3 .cse2 .cse5) (or .cse1 .cse4 .cse2 .cse5))) [2021-12-16 00:58:49,104 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 280 303) the Hoare annotation is: (let ((.cse6 (= ~pumpRunning~0 0)) (.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse7 (not (= |old(~waterLevel~0)| 1))) (.cse8 (= ~waterLevel~0 1)) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 2 ~waterLevel~0))) (.cse4 (not (<= 1 ~methaneLevelCritical~0))) (.cse3 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse3 (not (<= 1 |old(~waterLevel~0)|)) .cse6) (or .cse7 .cse5 (and .cse8 .cse6) .cse2 .cse3) (or .cse7 .cse8 .cse4 .cse5 .cse3) (or .cse0 .cse1 .cse4 .cse3))) [2021-12-16 00:58:49,104 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 280 303) no Hoare annotation was computed. [2021-12-16 00:58:49,104 INFO L854 garLoopResultBuilder]: At program point L394(lines 389 396) the Hoare annotation is: (let ((.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse2 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1)) (<= 1 |timeShift_processEnvironment_~tmp~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0) (= ~pumpRunning~0 0))) (.cse4 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (<= 1 ~methaneLevelCritical~0))) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= ~systemActive~0 1))) (.cse6 (not (<= 1 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse2 .cse4 .cse3) (or .cse5 .cse4 .cse3 .cse6) (or .cse1 .cse5 .cse3 .cse6))) [2021-12-16 00:58:49,104 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 54) no Hoare annotation was computed. [2021-12-16 00:58:49,104 INFO L854 garLoopResultBuilder]: At program point L357(line 357) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 0))) (let ((.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse2 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 2 ~waterLevel~0) .cse5)) (.cse8 (not (= ~methaneLevelCritical~0 0))) (.cse6 (not (= |old(~waterLevel~0)| 1))) (.cse7 (= ~waterLevel~0 1)) (.cse1 (not (<= 1 ~methaneLevelCritical~0))) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse4 .cse3 (not (<= 1 |old(~waterLevel~0)|)) .cse5) (or .cse6 .cse4 (and .cse7 .cse5) .cse8 .cse3) (or .cse0 .cse2 .cse8 .cse3) (or .cse6 .cse7 .cse1 .cse4 .cse3)))) [2021-12-16 00:58:49,105 INFO L854 garLoopResultBuilder]: At program point L357-1(lines 338 362) the Hoare annotation is: (let ((.cse12 (= ~methaneLevelCritical~0 0)) (.cse13 (<= 2 ~waterLevel~0)) (.cse5 (= ~pumpRunning~0 0))) (let ((.cse4 (not (<= 1 |old(~waterLevel~0)|))) (.cse9 (not (= |old(~waterLevel~0)| 1))) (.cse10 (= ~waterLevel~0 1)) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse6 (not (<= 1 ~methaneLevelCritical~0))) (.cse8 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse13 .cse5)) (.cse7 (not (<= 2 |old(~waterLevel~0)|))) (.cse0 (and .cse12 .cse13)) (.cse11 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 0 |timeShift_isLowWaterSensorDry_#res#1|) (<= |timeShift_isLowWaterSensorDry_#res#1| 0) (< 0 (+ |timeShift_isLowWaterLevel_~tmp~5#1| 1)) (<= 1 |timeShift_processEnvironment_~tmp~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 ~waterLevel~0) .cse5)) (.cse2 (not .cse12)) (.cse3 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (or .cse6 .cse1 .cse3 .cse4 .cse5) (or .cse7 .cse6 .cse1 .cse8 .cse3) (or .cse9 .cse10 .cse6 .cse1 .cse3) (or .cse7 .cse0 .cse1 .cse2 .cse3) (or .cse9 .cse10 .cse1 .cse2 .cse3) (or .cse7 .cse6 .cse11 .cse8 .cse3) (or .cse7 .cse0 .cse11 .cse2 .cse3)))) [2021-12-16 00:58:49,105 INFO L858 garLoopResultBuilder]: For program point L291-1(lines 291 297) no Hoare annotation was computed. [2021-12-16 00:58:49,105 INFO L858 garLoopResultBuilder]: For program point L193(line 193) no Hoare annotation was computed. [2021-12-16 00:58:49,105 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 172 201) no Hoare annotation was computed. [2021-12-16 00:58:49,105 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 172 201) the Hoare annotation is: true [2021-12-16 00:58:49,105 INFO L858 garLoopResultBuilder]: For program point L186(lines 186 190) no Hoare annotation was computed. [2021-12-16 00:58:49,105 INFO L861 garLoopResultBuilder]: At program point L186-1(lines 186 190) the Hoare annotation is: true [2021-12-16 00:58:49,105 INFO L858 garLoopResultBuilder]: For program point L183(line 183) no Hoare annotation was computed. [2021-12-16 00:58:49,106 INFO L861 garLoopResultBuilder]: At program point L182-2(lines 182 196) the Hoare annotation is: true [2021-12-16 00:58:49,106 INFO L861 garLoopResultBuilder]: At program point L178(line 178) the Hoare annotation is: true [2021-12-16 00:58:49,106 INFO L858 garLoopResultBuilder]: For program point L178-1(line 178) no Hoare annotation was computed. [2021-12-16 00:58:49,106 INFO L861 garLoopResultBuilder]: At program point L197(lines 172 201) the Hoare annotation is: true [2021-12-16 00:58:49,106 INFO L861 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 105 113) the Hoare annotation is: true [2021-12-16 00:58:49,106 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 105 113) no Hoare annotation was computed. [2021-12-16 00:58:49,106 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 105 113) no Hoare annotation was computed. [2021-12-16 00:58:49,106 INFO L858 garLoopResultBuilder]: For program point L258-2(lines 258 265) no Hoare annotation was computed. [2021-12-16 00:58:49,106 INFO L861 garLoopResultBuilder]: At program point L242(lines 235 244) the Hoare annotation is: true [2021-12-16 00:58:49,106 INFO L858 garLoopResultBuilder]: For program point L556(lines 556 562) no Hoare annotation was computed. [2021-12-16 00:58:49,107 INFO L858 garLoopResultBuilder]: For program point L556-1(lines 556 562) no Hoare annotation was computed. [2021-12-16 00:58:49,107 INFO L861 garLoopResultBuilder]: At program point L267(lines 248 270) the Hoare annotation is: true [2021-12-16 00:58:49,107 INFO L854 garLoopResultBuilder]: At program point L581(lines 536 583) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 |ULTIMATE.start_main_~tmp~0#1|)) (.cse2 (= ~systemActive~0 |ULTIMATE.start_valid_product_#res#1|)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 1 ~waterLevel~0)) (.cse4 (= ~systemActive~0 1)) (.cse6 (= ~pumpRunning~0 0))) (or (and .cse0 .cse1 .cse2 .cse3 (<= 2 ~waterLevel~0) .cse4) (and .cse0 .cse1 .cse2 (<= 1 ~methaneLevelCritical~0) .cse5 .cse4 .cse6) (and .cse0 .cse1 .cse2 .cse3 .cse5 .cse4 .cse6))) [2021-12-16 00:58:49,107 INFO L854 garLoopResultBuilder]: At program point L548(line 548) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 |ULTIMATE.start_main_~tmp~0#1|)) (.cse2 (= ~systemActive~0 |ULTIMATE.start_valid_product_#res#1|)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 1 ~waterLevel~0)) (.cse4 (= ~systemActive~0 1)) (.cse6 (= ~pumpRunning~0 0))) (or (and .cse0 .cse1 .cse2 .cse3 (<= 2 ~waterLevel~0) .cse4) (and .cse0 .cse1 .cse2 (<= 1 ~methaneLevelCritical~0) .cse5 .cse4 .cse6) (and .cse0 .cse1 .cse2 .cse3 .cse5 .cse4 .cse6))) [2021-12-16 00:58:49,107 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-16 00:58:49,107 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-16 00:58:49,107 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-16 00:58:49,107 INFO L854 garLoopResultBuilder]: At program point L623(lines 618 626) the Hoare annotation is: (and (= ~systemActive~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~methaneLevelCritical~0 0) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 00:58:49,108 INFO L854 garLoopResultBuilder]: At program point L615(lines 611 617) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~methaneLevelCritical~0 0) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 00:58:49,108 INFO L854 garLoopResultBuilder]: At program point L231(lines 227 233) the Hoare annotation is: (and (= ~systemActive~0 |ULTIMATE.start_main_~tmp~0#1|) (= ~systemActive~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~methaneLevelCritical~0 0) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 00:58:49,108 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-16 00:58:49,108 INFO L858 garLoopResultBuilder]: For program point L574(lines 574 578) no Hoare annotation was computed. [2021-12-16 00:58:49,108 INFO L854 garLoopResultBuilder]: At program point L574-2(lines 566 579) the Hoare annotation is: (let ((.cse4 (<= 2 ~waterLevel~0)) (.cse6 (<= 1 ~methaneLevelCritical~0)) (.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 |ULTIMATE.start_main_~tmp~0#1|)) (.cse2 (= ~systemActive~0 |ULTIMATE.start_valid_product_#res#1|)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 1 ~waterLevel~0)) (.cse5 (= ~systemActive~0 1)) (.cse8 (= ~pumpRunning~0 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse4 .cse6 .cse5) (and .cse0 .cse1 .cse2 .cse6 .cse7 .cse5 .cse8) (and .cse0 .cse1 .cse2 .cse3 .cse7 .cse5 .cse8))) [2021-12-16 00:58:49,108 INFO L858 garLoopResultBuilder]: For program point L537(lines 536 583) no Hoare annotation was computed. [2021-12-16 00:58:49,108 INFO L858 garLoopResultBuilder]: For program point L566(lines 566 579) no Hoare annotation was computed. [2021-12-16 00:58:49,108 INFO L854 garLoopResultBuilder]: At program point L496(lines 491 498) the Hoare annotation is: (let ((.cse4 (<= 2 ~waterLevel~0)) (.cse6 (<= 1 ~methaneLevelCritical~0)) (.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 |ULTIMATE.start_main_~tmp~0#1|)) (.cse2 (= ~systemActive~0 |ULTIMATE.start_valid_product_#res#1|)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse7 (<= 1 ~waterLevel~0)) (.cse5 (= ~systemActive~0 1)) (.cse8 (= ~pumpRunning~0 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4 .cse5) (and .cse0 .cse1 .cse2 .cse4 .cse6 .cse5) (and .cse0 .cse1 .cse2 .cse6 .cse7 .cse5 .cse8) (and .cse0 .cse1 .cse2 .cse3 .cse7 .cse5 .cse8))) [2021-12-16 00:58:49,109 INFO L854 garLoopResultBuilder]: At program point L558(line 558) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 |ULTIMATE.start_main_~tmp~0#1|)) (.cse2 (= ~systemActive~0 |ULTIMATE.start_valid_product_#res#1|)) (.cse3 (= ~methaneLevelCritical~0 0)) (.cse5 (<= 1 ~waterLevel~0)) (.cse4 (= ~systemActive~0 1)) (.cse6 (= ~pumpRunning~0 0))) (or (and .cse0 .cse1 .cse2 .cse3 (<= 2 ~waterLevel~0) .cse4) (and .cse0 .cse1 .cse2 (<= 1 ~methaneLevelCritical~0) .cse5 .cse4 .cse6) (and .cse0 .cse1 .cse2 .cse3 .cse5 .cse4 .cse6))) [2021-12-16 00:58:49,109 INFO L861 garLoopResultBuilder]: At program point L587(lines 526 591) the Hoare annotation is: true [2021-12-16 00:58:49,109 INFO L858 garLoopResultBuilder]: For program point L546(lines 546 552) no Hoare annotation was computed. [2021-12-16 00:58:49,109 INFO L858 garLoopResultBuilder]: For program point L546-1(lines 546 552) no Hoare annotation was computed. [2021-12-16 00:58:49,109 INFO L854 garLoopResultBuilder]: At program point L608(lines 604 610) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~methaneLevelCritical~0 0) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 00:58:49,109 INFO L858 garLoopResultBuilder]: For program point L538(lines 538 542) no Hoare annotation was computed. [2021-12-16 00:58:49,109 INFO L854 garLoopResultBuilder]: At program point L584(lines 535 585) the Hoare annotation is: false [2021-12-16 00:58:49,109 INFO L858 garLoopResultBuilder]: For program point L258(lines 258 265) no Hoare annotation was computed. [2021-12-16 00:58:49,109 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 312 336) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse1 (not (= ~systemActive~0 1))) (.cse2 (= ~pumpRunning~0 0))) (and (or (not (<= 1 ~waterLevel~0)) (not (<= 1 ~methaneLevelCritical~0)) .cse0 .cse1 .cse2) (or (not (= ~waterLevel~0 1)) .cse0 .cse3 .cse1 .cse2) (or .cse0 .cse3 .cse1 (not (<= 2 ~waterLevel~0)) .cse2))) [2021-12-16 00:58:49,110 INFO L858 garLoopResultBuilder]: For program point L320(lines 320 328) no Hoare annotation was computed. [2021-12-16 00:58:49,110 INFO L858 garLoopResultBuilder]: For program point L316(lines 316 333) no Hoare annotation was computed. [2021-12-16 00:58:49,110 INFO L854 garLoopResultBuilder]: At program point L155(lines 146 159) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 0))) (let ((.cse0 (and (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1|) .cse5)) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~methaneLevelCritical~0 0))) (.cse3 (not (= ~systemActive~0 1))) (.cse4 (<= 2 ~waterLevel~0))) (and (or .cse0 (not (= ~waterLevel~0 1)) .cse1 .cse2 .cse3) (or (and .cse4 .cse5) .cse0 (not (<= 1 ~waterLevel~0)) (not (<= 1 ~methaneLevelCritical~0)) .cse1 .cse3) (or .cse1 .cse2 .cse3 (not .cse4) .cse5)))) [2021-12-16 00:58:49,110 INFO L854 garLoopResultBuilder]: At program point L368(lines 363 370) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or (not (<= 1 ~waterLevel~0)) (not (<= 1 ~methaneLevelCritical~0)) .cse0 .cse1) (or (not (= ~waterLevel~0 1)) .cse0 (not (= ~methaneLevelCritical~0 0)) .cse1))) [2021-12-16 00:58:49,110 INFO L854 garLoopResultBuilder]: At program point L331(line 331) the Hoare annotation is: (let ((.cse0 (not (<= 1 ~waterLevel~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~systemActive~0 1)))) (and (or .cse0 (not (<= 1 ~methaneLevelCritical~0)) .cse1 .cse2) (or .cse0 .cse1 (not (= ~methaneLevelCritical~0 0)) .cse2))) [2021-12-16 00:58:49,110 INFO L858 garLoopResultBuilder]: For program point L331-1(lines 312 336) no Hoare annotation was computed. [2021-12-16 00:58:49,110 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 312 336) no Hoare annotation was computed. [2021-12-16 00:58:49,110 INFO L858 garLoopResultBuilder]: For program point L379(lines 379 385) no Hoare annotation was computed. [2021-12-16 00:58:49,111 INFO L854 garLoopResultBuilder]: At program point L379-2(lines 372 388) the Hoare annotation is: (let ((.cse1 (not (<= 1 ~waterLevel~0))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (<= 2 ~waterLevel~0)) (.cse3 (not (= ~systemActive~0 1)))) (and (or (and (<= ~methaneLevelCritical~0 |processEnvironment__wrappee__highWaterSensor_isMethaneAlarm_#res#1|) .cse0 (= ~pumpRunning~0 0) (<= ~methaneLevelCritical~0 |processEnvironment__wrappee__highWaterSensor_activatePump_~tmp~3#1|)) .cse1 (not (<= 1 ~methaneLevelCritical~0)) .cse2 .cse3) (or .cse1 .cse2 .cse0 (not (= ~methaneLevelCritical~0 0)) .cse3))) [2021-12-16 00:58:49,111 INFO L858 garLoopResultBuilder]: For program point L150(lines 150 156) no Hoare annotation was computed. [2021-12-16 00:58:49,111 INFO L854 garLoopResultBuilder]: At program point L468(lines 453 471) the Hoare annotation is: (let ((.cse5 (= ~pumpRunning~0 0))) (let ((.cse0 (and (<= 2 ~waterLevel~0) .cse5)) (.cse1 (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~0#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) .cse5)) (.cse2 (not (<= 1 ~waterLevel~0))) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3 (not (= ~methaneLevelCritical~0 0)) .cse4) (or .cse0 .cse1 .cse2 (not (<= 1 ~methaneLevelCritical~0)) .cse3 .cse4)))) [2021-12-16 00:58:49,111 INFO L854 garLoopResultBuilder]: At program point L404(lines 397 407) the Hoare annotation is: (let ((.cse0 (not (<= 1 ~methaneLevelCritical~0))) (.cse4 (<= 2 ~waterLevel~0)) (.cse3 (= ~pumpRunning~0 0)) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~systemActive~0 1)))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2) (or (and (<= ~methaneLevelCritical~0 |processEnvironment__wrappee__highWaterSensor_isMethaneAlarm_#res#1|) .cse3) .cse0 .cse1 .cse2 (not .cse4)) (or (and .cse4 .cse3) (not (<= 1 ~waterLevel~0)) .cse1 (not (= ~methaneLevelCritical~0 0)) .cse2))) [2021-12-16 00:58:49,111 INFO L854 garLoopResultBuilder]: At program point L402(line 402) the Hoare annotation is: (let ((.cse0 (and (<= 2 ~waterLevel~0) (= ~pumpRunning~0 0))) (.cse1 (not (<= 1 ~waterLevel~0))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 (not (= ~methaneLevelCritical~0 0)) .cse3) (or .cse0 .cse1 (not (<= 1 ~methaneLevelCritical~0)) .cse2 .cse3))) [2021-12-16 00:58:49,111 INFO L858 garLoopResultBuilder]: For program point L402-1(line 402) no Hoare annotation was computed. [2021-12-16 00:58:49,111 INFO L858 garLoopResultBuilder]: For program point L462(lines 462 466) no Hoare annotation was computed. [2021-12-16 00:58:49,111 INFO L858 garLoopResultBuilder]: For program point L462-2(lines 462 466) no Hoare annotation was computed. [2021-12-16 00:58:49,112 INFO L854 garLoopResultBuilder]: At program point L326(line 326) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) (.cse5 (= |processEnvironment__wrappee__highWaterSensor_~tmp~1#1| 0)) (.cse6 (= ~methaneLevelCritical~0 0))) (let ((.cse1 (not .cse6)) (.cse2 (and .cse6 .cse4 .cse5)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3 (not (<= 2 ~waterLevel~0))) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2 .cse3) (or (and .cse4 .cse5) (not (<= 1 ~waterLevel~0)) (not (<= 1 ~methaneLevelCritical~0)) .cse0 .cse3)))) [2021-12-16 00:58:49,112 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 81 92) no Hoare annotation was computed. [2021-12-16 00:58:49,112 INFO L858 garLoopResultBuilder]: For program point L85-1(lines 81 92) no Hoare annotation was computed. [2021-12-16 00:58:49,112 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 81 92) the Hoare annotation is: (let ((.cse3 (not (= ~methaneLevelCritical~0 0))) (.cse0 (not (= |old(~waterLevel~0)| 1))) (.cse1 (= ~waterLevel~0 1)) (.cse5 (not (<= 2 |old(~waterLevel~0)|))) (.cse2 (not (= ~pumpRunning~0 0))) (.cse7 (not (<= 1 ~methaneLevelCritical~0))) (.cse6 (<= 2 ~waterLevel~0)) (.cse4 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse5 .cse6 .cse3 .cse4) (or .cse0 .cse1 .cse2 .cse7 .cse4) (or .cse5 .cse2 .cse7 .cse6 .cse4))) [2021-12-16 00:58:49,114 INFO L732 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 00:58:49,115 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-16 00:58:49,135 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 16.12 12:58:49 BoogieIcfgContainer [2021-12-16 00:58:49,135 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-16 00:58:49,136 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-16 00:58:49,136 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-16 00:58:49,136 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-16 00:58:49,137 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 12:58:42" (3/4) ... [2021-12-16 00:58:49,138 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-16 00:58:49,142 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-16 00:58:49,143 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-16 00:58:49,143 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-16 00:58:49,143 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-16 00:58:49,143 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2021-12-16 00:58:49,143 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2021-12-16 00:58:49,143 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-16 00:58:49,148 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 53 nodes and edges [2021-12-16 00:58:49,149 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-16 00:58:49,149 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-16 00:58:49,150 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-16 00:58:49,150 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-16 00:58:49,150 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-16 00:58:49,151 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-16 00:58:49,165 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((systemActive == \result && waterLevel == 1) && methaneLevelCritical == 0) && systemActive == 1) && pumpRunning == 0 [2021-12-16 00:58:49,165 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((systemActive == tmp && systemActive == \result) && waterLevel == 1) && methaneLevelCritical == 0) && systemActive == 1) && pumpRunning == 0 [2021-12-16 00:58:49,165 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && methaneLevelCritical == 0) && 2 <= waterLevel) && systemActive == 1) || ((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && 1 <= methaneLevelCritical) && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0)) || ((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && methaneLevelCritical == 0) && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0) [2021-12-16 00:58:49,166 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(systemActive == 1)) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(2 <= \old(waterLevel)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && (((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-16 00:58:49,166 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((methaneLevelCritical == 0 && 2 <= waterLevel) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) || pumpRunning == 0) && ((((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) || pumpRunning == 0)) && ((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || ((pumpRunning == \old(pumpRunning) && 2 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1))) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && ((((!(2 <= \old(waterLevel)) || (methaneLevelCritical == 0 && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && ((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || ((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || ((pumpRunning == \old(pumpRunning) && 2 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1))) && ((((!(2 <= \old(waterLevel)) || (methaneLevelCritical == 0 && 2 <= waterLevel)) || ((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) [2021-12-16 00:58:49,166 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!(2 <= \old(waterLevel)) || ((methaneLevelCritical == 0 && tmp == 0) && 2 <= waterLevel)) || !(methaneLevelCritical == 0)) || (((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && tmp == 0) && 1 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1)) && ((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || (((((((((1 <= tmp___0 && tmp <= 0) && !(0 == \old(pumpRunning))) && 0 <= \result) && 0 < tmp + 1) && \result <= 0) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || ((pumpRunning == \old(pumpRunning) && 2 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1))) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && ((((!(2 <= \old(waterLevel)) || ((methaneLevelCritical == 0 && tmp == 0) && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && ((((!(\old(waterLevel) == 1) || ((waterLevel == 1 && tmp == 0) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && ((((!(1 <= methaneLevelCritical) || pumpRunning == \old(pumpRunning)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-16 00:58:49,167 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && methaneLevelCritical == 0) && 2 <= waterLevel) && systemActive == 1) || (((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && 2 <= waterLevel) && 1 <= methaneLevelCritical) && systemActive == 1)) || ((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && 1 <= methaneLevelCritical) && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0)) || ((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && methaneLevelCritical == 0) && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0) [2021-12-16 00:58:49,167 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(waterLevel == 1) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && (((((methaneLevelCritical <= \result && pumpRunning == 0) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(2 <= waterLevel))) && (((((2 <= waterLevel && pumpRunning == 0) || !(1 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) [2021-12-16 00:58:49,167 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((((\result == 0 && pumpRunning == 0) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) && ((!(2 <= \old(waterLevel)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && ((((!(2 <= \old(waterLevel)) || (((\result == 0 && pumpRunning == \old(pumpRunning)) && 2 <= waterLevel) && pumpRunning == 0)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && ((((!(2 <= \old(waterLevel)) || (((\result == 0 && pumpRunning == \old(pumpRunning)) && 2 <= waterLevel) && pumpRunning == 0)) || !(1 <= methaneLevelCritical)) || (((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result == 0) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1)) [2021-12-16 00:58:49,167 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || !(systemActive == 1)) || (((0 <= \result && \result <= 0) && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) && (((!(2 <= \old(waterLevel)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || (((0 <= \result && \result <= 0) && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel))) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-16 00:58:49,167 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((methaneLevelCritical <= \result && 2 <= waterLevel) && pumpRunning == 0) && methaneLevelCritical <= tmp) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && ((((!(1 <= waterLevel) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) [2021-12-16 00:58:49,167 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((1 <= \result && pumpRunning == 0) || !(waterLevel == 1)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) && ((((((2 <= waterLevel && pumpRunning == 0) || (1 <= \result && pumpRunning == 0)) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && ((((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(2 <= waterLevel)) || pumpRunning == 0) [2021-12-16 00:58:49,168 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(1 <= waterLevel) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) [2021-12-16 00:58:49,168 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || !(systemActive == 1)) && ((!(2 <= \old(waterLevel)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-16 00:58:49,168 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || (((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && 0 < tmp + 1) && \result <= 0) && 1 <= \result) && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) || !(systemActive == 1)) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(2 <= \old(waterLevel)) || !(methaneLevelCritical == 0)) || (((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && 0 < tmp + 1) && \result <= 0) && 1 <= \result) && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) || !(systemActive == 1)) [2021-12-16 00:58:49,168 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((2 <= waterLevel && pumpRunning == 0) || ((tmp___0 == 0 && \result == 0) && pumpRunning == 0)) || !(1 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) && ((((((2 <= waterLevel && pumpRunning == 0) || ((tmp___0 == 0 && \result == 0) && pumpRunning == 0)) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) [2021-12-16 00:58:49,168 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || ((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1)) && (((!(2 <= \old(waterLevel)) || ((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-16 00:58:49,185 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-12-16 00:58:49,185 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-16 00:58:49,185 INFO L158 Benchmark]: Toolchain (without parser) took 7915.86ms. Allocated memory was 92.3MB in the beginning and 153.1MB in the end (delta: 60.8MB). Free memory was 58.3MB in the beginning and 91.7MB in the end (delta: -33.4MB). Peak memory consumption was 27.2MB. Max. memory is 16.1GB. [2021-12-16 00:58:49,186 INFO L158 Benchmark]: CDTParser took 0.17ms. Allocated memory is still 92.3MB. Free memory is still 51.4MB. There was no memory consumed. Max. memory is 16.1GB. [2021-12-16 00:58:49,186 INFO L158 Benchmark]: CACSL2BoogieTranslator took 302.38ms. Allocated memory was 92.3MB in the beginning and 121.6MB in the end (delta: 29.4MB). Free memory was 58.1MB in the beginning and 89.0MB in the end (delta: -30.9MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2021-12-16 00:58:49,186 INFO L158 Benchmark]: Boogie Procedure Inliner took 52.03ms. Allocated memory is still 121.6MB. Free memory was 89.0MB in the beginning and 86.3MB in the end (delta: 2.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-16 00:58:49,186 INFO L158 Benchmark]: Boogie Preprocessor took 37.27ms. Allocated memory is still 121.6MB. Free memory was 86.3MB in the beginning and 84.9MB in the end (delta: 1.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-16 00:58:49,187 INFO L158 Benchmark]: RCFGBuilder took 362.67ms. Allocated memory is still 121.6MB. Free memory was 84.9MB in the beginning and 68.1MB in the end (delta: 16.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2021-12-16 00:58:49,187 INFO L158 Benchmark]: TraceAbstraction took 7107.77ms. Allocated memory was 121.6MB in the beginning and 153.1MB in the end (delta: 31.5MB). Free memory was 67.4MB in the beginning and 98.0MB in the end (delta: -30.6MB). Peak memory consumption was 66.1MB. Max. memory is 16.1GB. [2021-12-16 00:58:49,187 INFO L158 Benchmark]: Witness Printer took 49.22ms. Allocated memory is still 153.1MB. Free memory was 98.0MB in the beginning and 91.7MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-16 00:58:49,188 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.17ms. Allocated memory is still 92.3MB. Free memory is still 51.4MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 302.38ms. Allocated memory was 92.3MB in the beginning and 121.6MB in the end (delta: 29.4MB). Free memory was 58.1MB in the beginning and 89.0MB in the end (delta: -30.9MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 52.03ms. Allocated memory is still 121.6MB. Free memory was 89.0MB in the beginning and 86.3MB in the end (delta: 2.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 37.27ms. Allocated memory is still 121.6MB. Free memory was 86.3MB in the beginning and 84.9MB in the end (delta: 1.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 362.67ms. Allocated memory is still 121.6MB. Free memory was 84.9MB in the beginning and 68.1MB in the end (delta: 16.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 7107.77ms. Allocated memory was 121.6MB in the beginning and 153.1MB in the end (delta: 31.5MB). Free memory was 67.4MB in the beginning and 98.0MB in the end (delta: -30.6MB). Peak memory consumption was 66.1MB. Max. memory is 16.1GB. * Witness Printer took 49.22ms. Allocated memory is still 153.1MB. Free memory was 98.0MB in the beginning and 91.7MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 54]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 92 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 7.0s, OverallIterations: 12, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.6s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.7s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1445 SdHoareTripleChecker+Valid, 1.0s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1423 mSDsluCounter, 3601 SdHoareTripleChecker+Invalid, 0.8s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2255 mSDsCounter, 395 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1503 IncrementalHoareTripleChecker+Invalid, 1898 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 395 mSolverCounterUnsat, 1346 mSDtfsCounter, 1503 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 468 GetRequests, 355 SyntacticMatches, 6 SemanticMatches, 107 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 114 ImplicationChecksByTransitivity, 0.4s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=692occurred in iteration=11, InterpolantAutomatonStates: 92, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 12 MinimizatonAttempts, 176 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 43 LocationsWithAnnotation, 1453 PreInvPairs, 1603 NumberOfFragments, 2677 HoareAnnotationTreeSize, 1453 FomulaSimplifications, 123 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 43 FomulaSimplificationsInter, 5973 FormulaSimplificationTreeSizeReductionInter, 2.5s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 1.2s InterpolantComputationTime, 884 NumberOfCodeBlocks, 884 NumberOfCodeBlocksAsserted, 15 NumberOfCheckSat, 869 ConstructedInterpolants, 0 QuantifiedInterpolants, 1559 SizeOfPredicates, 12 NumberOfNonLiveVariables, 1338 ConjunctsInSsa, 24 ConjunctsInUnsatCore, 15 InterpolantComputations, 12 PerfectInterpolantSequences, 133/139 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 604]: Loop Invariant Derived loop invariant: ((waterLevel == 1 && methaneLevelCritical == 0) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 618]: Loop Invariant Derived loop invariant: (((systemActive == \result && waterLevel == 1) && methaneLevelCritical == 0) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 372]: Loop Invariant Derived loop invariant: (((((((methaneLevelCritical <= \result && 2 <= waterLevel) && pumpRunning == 0) && methaneLevelCritical <= tmp) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && ((((!(1 <= waterLevel) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) - InvariantResult [Line: 453]: Loop Invariant Derived loop invariant: ((((((2 <= waterLevel && pumpRunning == 0) || ((tmp___0 == 0 && \result == 0) && pumpRunning == 0)) || !(1 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) && ((((((2 <= waterLevel && pumpRunning == 0) || ((tmp___0 == 0 && \result == 0) && pumpRunning == 0)) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) - InvariantResult [Line: 611]: Loop Invariant Derived loop invariant: ((waterLevel == 1 && methaneLevelCritical == 0) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 472]: Loop Invariant Derived loop invariant: (((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || (((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && 0 < tmp + 1) && \result <= 0) && 1 <= \result) && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) || !(systemActive == 1)) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(2 <= \old(waterLevel)) || !(methaneLevelCritical == 0)) || (((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && 0 < tmp + 1) && \result <= 0) && 1 <= \result) && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) || !(systemActive == 1)) - InvariantResult [Line: 389]: Loop Invariant Derived loop invariant: (((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || ((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1)) && (((!(2 <= \old(waterLevel)) || ((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 227]: Loop Invariant Derived loop invariant: ((((systemActive == tmp && systemActive == \result) && waterLevel == 1) && methaneLevelCritical == 0) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 160]: Loop Invariant Derived loop invariant: (((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || !(systemActive == 1)) || (((0 <= \result && \result <= 0) && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) && (((!(2 <= \old(waterLevel)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || (((0 <= \result && \result <= 0) && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel))) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 491]: Loop Invariant Derived loop invariant: (((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && methaneLevelCritical == 0) && 2 <= waterLevel) && systemActive == 1) || (((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && 2 <= waterLevel) && 1 <= methaneLevelCritical) && systemActive == 1)) || ((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && 1 <= methaneLevelCritical) && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0)) || ((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && methaneLevelCritical == 0) && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0) - InvariantResult [Line: 397]: Loop Invariant Derived loop invariant: ((((!(waterLevel == 1) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && (((((methaneLevelCritical <= \result && pumpRunning == 0) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(2 <= waterLevel))) && (((((2 <= waterLevel && pumpRunning == 0) || !(1 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) - InvariantResult [Line: 500]: Loop Invariant Derived loop invariant: ((((((((!(2 <= \old(waterLevel)) || ((methaneLevelCritical == 0 && tmp == 0) && 2 <= waterLevel)) || !(methaneLevelCritical == 0)) || (((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && tmp == 0) && 1 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1)) && ((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || (((((((((1 <= tmp___0 && tmp <= 0) && !(0 == \old(pumpRunning))) && 0 <= \result) && 0 < tmp + 1) && \result <= 0) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || ((pumpRunning == \old(pumpRunning) && 2 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1))) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && ((((!(2 <= \old(waterLevel)) || ((methaneLevelCritical == 0 && tmp == 0) && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && ((((!(\old(waterLevel) == 1) || ((waterLevel == 1 && tmp == 0) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && ((((!(1 <= methaneLevelCritical) || pumpRunning == \old(pumpRunning)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 338]: Loop Invariant Derived loop invariant: ((((((((((((methaneLevelCritical == 0 && 2 <= waterLevel) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) || pumpRunning == 0) && ((((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) || pumpRunning == 0)) && ((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || ((pumpRunning == \old(pumpRunning) && 2 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1))) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && ((((!(2 <= \old(waterLevel)) || (methaneLevelCritical == 0 && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && ((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || ((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || ((pumpRunning == \old(pumpRunning) && 2 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1))) && ((((!(2 <= \old(waterLevel)) || (methaneLevelCritical == 0 && 2 <= waterLevel)) || ((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) - InvariantResult [Line: 535]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 172]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 182]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 248]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 69]: Loop Invariant Derived loop invariant: (((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(systemActive == 1)) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(2 <= \old(waterLevel)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && (((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 408]: Loop Invariant Derived loop invariant: (((((((((\result == 0 && pumpRunning == 0) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) && ((!(2 <= \old(waterLevel)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && ((((!(\old(waterLevel) == 1) || waterLevel == 1) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && ((((!(2 <= \old(waterLevel)) || (((\result == 0 && pumpRunning == \old(pumpRunning)) && 2 <= waterLevel) && pumpRunning == 0)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && ((((!(2 <= \old(waterLevel)) || (((\result == 0 && pumpRunning == \old(pumpRunning)) && 2 <= waterLevel) && pumpRunning == 0)) || !(1 <= methaneLevelCritical)) || (((((((((1 <= tmp___0 && tmp <= 0) && 0 <= \result) && \result == 0) && \result <= 0) && 0 < tmp + 1) && 1 <= tmp) && 1 <= \result) && 1 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1)) - InvariantResult [Line: 526]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 50]: Loop Invariant Derived loop invariant: ((((!(2 <= \old(waterLevel)) || !(1 <= methaneLevelCritical)) || !(systemActive == 1)) && ((!(2 <= \old(waterLevel)) || !(methaneLevelCritical == 0)) || !(systemActive == 1))) && (((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(1 <= methaneLevelCritical) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 235]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 363]: Loop Invariant Derived loop invariant: (((!(1 <= waterLevel) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) - InvariantResult [Line: 536]: Loop Invariant Derived loop invariant: ((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && methaneLevelCritical == 0) && 2 <= waterLevel) && systemActive == 1) || ((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && 1 <= methaneLevelCritical) && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0)) || ((((((splverifierCounter == 0 && systemActive == tmp) && systemActive == \result) && methaneLevelCritical == 0) && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0) - InvariantResult [Line: 146]: Loop Invariant Derived loop invariant: ((((((1 <= \result && pumpRunning == 0) || !(waterLevel == 1)) || !(\old(pumpRunning) == 0)) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) && ((((((2 <= waterLevel && pumpRunning == 0) || (1 <= \result && pumpRunning == 0)) || !(1 <= waterLevel)) || !(1 <= methaneLevelCritical)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && ((((!(\old(pumpRunning) == 0) || !(methaneLevelCritical == 0)) || !(systemActive == 1)) || !(2 <= waterLevel)) || pumpRunning == 0) RESULT: Ultimate proved your program to be correct! [2021-12-16 00:58:49,221 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE