./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec4_product15.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version c3fed411 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec4_product15.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 3ff5e3440a113d04736761f02383989df8ff41baa6c3f7c82a502839a05f4fda --- Real Ultimate output --- This is Ultimate 0.2.2-tmp.no-commuhash-c3fed41 [2021-12-16 01:00:16,964 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-16 01:00:16,967 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-16 01:00:17,006 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-16 01:00:17,006 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-16 01:00:17,008 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-16 01:00:17,009 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-16 01:00:17,012 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-16 01:00:17,013 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-16 01:00:17,016 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-16 01:00:17,017 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-16 01:00:17,018 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-16 01:00:17,018 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-16 01:00:17,020 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-16 01:00:17,022 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-16 01:00:17,025 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-16 01:00:17,026 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-16 01:00:17,026 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-16 01:00:17,028 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-16 01:00:17,034 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-16 01:00:17,035 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-16 01:00:17,035 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-16 01:00:17,037 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-16 01:00:17,038 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-16 01:00:17,043 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-16 01:00:17,044 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-16 01:00:17,044 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-16 01:00:17,045 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-16 01:00:17,046 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-16 01:00:17,046 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-16 01:00:17,047 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-16 01:00:17,047 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-16 01:00:17,049 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-16 01:00:17,049 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-16 01:00:17,051 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-16 01:00:17,051 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-16 01:00:17,052 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-16 01:00:17,052 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-16 01:00:17,052 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-16 01:00:17,053 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-16 01:00:17,054 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-16 01:00:17,054 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-16 01:00:17,083 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-16 01:00:17,083 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-16 01:00:17,084 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-16 01:00:17,084 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-16 01:00:17,085 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-16 01:00:17,085 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-16 01:00:17,085 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-16 01:00:17,086 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-16 01:00:17,086 INFO L138 SettingsManager]: * Use SBE=true [2021-12-16 01:00:17,086 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-16 01:00:17,087 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-16 01:00:17,087 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-16 01:00:17,087 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-16 01:00:17,087 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-16 01:00:17,087 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-16 01:00:17,087 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-16 01:00:17,087 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-16 01:00:17,088 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-16 01:00:17,088 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-16 01:00:17,088 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-16 01:00:17,088 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-16 01:00:17,088 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-16 01:00:17,088 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-16 01:00:17,088 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-16 01:00:17,089 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-16 01:00:17,089 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-16 01:00:17,089 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-16 01:00:17,089 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-16 01:00:17,089 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-16 01:00:17,089 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-16 01:00:17,089 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-16 01:00:17,090 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-16 01:00:17,090 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-16 01:00:17,090 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-16 01:00:17,090 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 3ff5e3440a113d04736761f02383989df8ff41baa6c3f7c82a502839a05f4fda [2021-12-16 01:00:17,304 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-16 01:00:17,321 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-16 01:00:17,322 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-16 01:00:17,324 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-16 01:00:17,324 INFO L275 PluginConnector]: CDTParser initialized [2021-12-16 01:00:17,326 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec4_product15.cil.c [2021-12-16 01:00:17,368 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/12ae68c11/a36e085dc4604e909e1a34f600059dba/FLAGb9fc9e72b [2021-12-16 01:00:17,874 INFO L306 CDTParser]: Found 1 translation units. [2021-12-16 01:00:17,874 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product15.cil.c [2021-12-16 01:00:17,883 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/12ae68c11/a36e085dc4604e909e1a34f600059dba/FLAGb9fc9e72b [2021-12-16 01:00:18,346 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/12ae68c11/a36e085dc4604e909e1a34f600059dba [2021-12-16 01:00:18,348 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-16 01:00:18,349 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-16 01:00:18,350 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-16 01:00:18,350 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-16 01:00:18,362 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-16 01:00:18,363 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,367 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@fa5ffb4 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18, skipping insertion in model container [2021-12-16 01:00:18,367 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,372 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-16 01:00:18,399 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-16 01:00:18,510 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product15.cil.c[2141,2154] [2021-12-16 01:00:18,603 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-16 01:00:18,624 INFO L203 MainTranslator]: Completed pre-run [2021-12-16 01:00:18,635 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product15.cil.c[2141,2154] [2021-12-16 01:00:18,717 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-16 01:00:18,731 INFO L208 MainTranslator]: Completed translation [2021-12-16 01:00:18,732 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18 WrapperNode [2021-12-16 01:00:18,732 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-16 01:00:18,733 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-16 01:00:18,734 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-16 01:00:18,734 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-16 01:00:18,740 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,765 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,797 INFO L137 Inliner]: procedures = 52, calls = 152, calls flagged for inlining = 20, calls inlined = 16, statements flattened = 216 [2021-12-16 01:00:18,798 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-16 01:00:18,799 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-16 01:00:18,799 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-16 01:00:18,799 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-16 01:00:18,807 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,807 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,823 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,824 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,834 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,854 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,856 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,858 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-16 01:00:18,859 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-16 01:00:18,859 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-16 01:00:18,859 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-16 01:00:18,860 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (1/1) ... [2021-12-16 01:00:18,885 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-16 01:00:18,906 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 01:00:18,949 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-16 01:00:18,963 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-16 01:00:18,995 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-16 01:00:18,995 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-16 01:00:18,996 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-16 01:00:18,996 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-16 01:00:18,996 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-16 01:00:18,997 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-16 01:00:18,997 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-16 01:00:19,001 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__methaneQuery [2021-12-16 01:00:19,001 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__methaneQuery [2021-12-16 01:00:19,001 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneAlarm [2021-12-16 01:00:19,001 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneAlarm [2021-12-16 01:00:19,001 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2021-12-16 01:00:19,001 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2021-12-16 01:00:19,002 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-16 01:00:19,002 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-16 01:00:19,002 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-16 01:00:19,002 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-16 01:00:19,002 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-16 01:00:19,136 INFO L236 CfgBuilder]: Building ICFG [2021-12-16 01:00:19,144 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-16 01:00:19,407 INFO L277 CfgBuilder]: Performing block encoding [2021-12-16 01:00:19,415 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-16 01:00:19,427 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-16 01:00:19,430 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 01:00:19 BoogieIcfgContainer [2021-12-16 01:00:19,430 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-16 01:00:19,432 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-16 01:00:19,434 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-16 01:00:19,437 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-16 01:00:19,441 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 16.12 01:00:18" (1/3) ... [2021-12-16 01:00:19,442 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@590a76a2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.12 01:00:19, skipping insertion in model container [2021-12-16 01:00:19,442 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:18" (2/3) ... [2021-12-16 01:00:19,442 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@590a76a2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.12 01:00:19, skipping insertion in model container [2021-12-16 01:00:19,442 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 01:00:19" (3/3) ... [2021-12-16 01:00:19,444 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product15.cil.c [2021-12-16 01:00:19,448 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-16 01:00:19,449 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-16 01:00:19,539 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-16 01:00:19,555 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-16 01:00:19,559 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-16 01:00:19,589 INFO L276 IsEmpty]: Start isEmpty. Operand has 78 states, 58 states have (on average 1.3793103448275863) internal successors, (80), 65 states have internal predecessors, (80), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2021-12-16 01:00:19,602 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-12-16 01:00:19,602 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:19,603 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:19,603 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:19,606 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:19,607 INFO L85 PathProgramCache]: Analyzing trace with hash -2002568319, now seen corresponding path program 1 times [2021-12-16 01:00:19,612 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:19,612 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1782914746] [2021-12-16 01:00:19,613 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:19,613 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:19,683 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:19,726 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:19,727 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:19,727 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1782914746] [2021-12-16 01:00:19,728 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1782914746] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:19,728 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:19,728 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-16 01:00:19,729 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1576867582] [2021-12-16 01:00:19,730 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:19,733 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-16 01:00:19,733 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:19,749 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-16 01:00:19,749 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-16 01:00:19,751 INFO L87 Difference]: Start difference. First operand has 78 states, 58 states have (on average 1.3793103448275863) internal successors, (80), 65 states have internal predecessors, (80), 11 states have call successors, (11), 7 states have call predecessors, (11), 7 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:19,770 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:19,770 INFO L93 Difference]: Finished difference Result 148 states and 199 transitions. [2021-12-16 01:00:19,771 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-16 01:00:19,772 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-12-16 01:00:19,772 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:19,777 INFO L225 Difference]: With dead ends: 148 [2021-12-16 01:00:19,777 INFO L226 Difference]: Without dead ends: 69 [2021-12-16 01:00:19,779 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-16 01:00:19,781 INFO L933 BasicCegarLoop]: 96 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 96 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:19,782 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 96 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:19,793 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 69 states. [2021-12-16 01:00:19,819 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 69 to 69. [2021-12-16 01:00:19,821 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 69 states, 51 states have (on average 1.2941176470588236) internal successors, (66), 57 states have internal predecessors, (66), 11 states have call successors, (11), 7 states have call predecessors, (11), 6 states have return successors, (10), 8 states have call predecessors, (10), 10 states have call successors, (10) [2021-12-16 01:00:19,826 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 69 states to 69 states and 87 transitions. [2021-12-16 01:00:19,827 INFO L78 Accepts]: Start accepts. Automaton has 69 states and 87 transitions. Word has length 19 [2021-12-16 01:00:19,828 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:19,828 INFO L470 AbstractCegarLoop]: Abstraction has 69 states and 87 transitions. [2021-12-16 01:00:19,828 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:19,828 INFO L276 IsEmpty]: Start isEmpty. Operand 69 states and 87 transitions. [2021-12-16 01:00:19,831 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2021-12-16 01:00:19,831 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:19,831 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:19,831 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-16 01:00:19,832 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:19,834 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:19,834 INFO L85 PathProgramCache]: Analyzing trace with hash 999716962, now seen corresponding path program 1 times [2021-12-16 01:00:19,835 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:19,835 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1806642912] [2021-12-16 01:00:19,835 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:19,836 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:19,872 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:19,932 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:19,932 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:19,933 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1806642912] [2021-12-16 01:00:19,933 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1806642912] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:19,933 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:19,933 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-16 01:00:19,933 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1239975684] [2021-12-16 01:00:19,934 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:19,935 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-16 01:00:19,935 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:19,935 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-16 01:00:19,936 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:19,936 INFO L87 Difference]: Start difference. First operand 69 states and 87 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:19,946 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:19,947 INFO L93 Difference]: Finished difference Result 100 states and 124 transitions. [2021-12-16 01:00:19,947 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-16 01:00:19,947 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2021-12-16 01:00:19,949 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:19,951 INFO L225 Difference]: With dead ends: 100 [2021-12-16 01:00:19,952 INFO L226 Difference]: Without dead ends: 60 [2021-12-16 01:00:19,955 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:19,958 INFO L933 BasicCegarLoop]: 74 mSDtfsCounter, 16 mSDsluCounter, 53 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 127 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:19,959 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [20 Valid, 127 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:19,960 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 60 states. [2021-12-16 01:00:19,964 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 60 to 60. [2021-12-16 01:00:19,966 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 60 states, 45 states have (on average 1.3111111111111111) internal successors, (59), 51 states have internal predecessors, (59), 8 states have call successors, (8), 6 states have call predecessors, (8), 6 states have return successors, (8), 6 states have call predecessors, (8), 8 states have call successors, (8) [2021-12-16 01:00:19,969 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 60 states to 60 states and 75 transitions. [2021-12-16 01:00:19,970 INFO L78 Accepts]: Start accepts. Automaton has 60 states and 75 transitions. Word has length 20 [2021-12-16 01:00:19,970 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:19,971 INFO L470 AbstractCegarLoop]: Abstraction has 60 states and 75 transitions. [2021-12-16 01:00:19,973 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:19,973 INFO L276 IsEmpty]: Start isEmpty. Operand 60 states and 75 transitions. [2021-12-16 01:00:19,974 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-12-16 01:00:19,974 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:19,974 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:19,974 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-16 01:00:19,975 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:19,975 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:19,975 INFO L85 PathProgramCache]: Analyzing trace with hash -1281821319, now seen corresponding path program 1 times [2021-12-16 01:00:19,976 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:19,976 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [140263353] [2021-12-16 01:00:19,976 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:19,977 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:20,019 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:20,113 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:20,115 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:20,115 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [140263353] [2021-12-16 01:00:20,115 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [140263353] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:20,115 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:20,116 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-16 01:00:20,116 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [826440067] [2021-12-16 01:00:20,116 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:20,117 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-16 01:00:20,117 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:20,129 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-16 01:00:20,129 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-12-16 01:00:20,129 INFO L87 Difference]: Start difference. First operand 60 states and 75 transitions. Second operand has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:20,377 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:20,378 INFO L93 Difference]: Finished difference Result 203 states and 262 transitions. [2021-12-16 01:00:20,378 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-12-16 01:00:20,378 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-12-16 01:00:20,379 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:20,384 INFO L225 Difference]: With dead ends: 203 [2021-12-16 01:00:20,384 INFO L226 Difference]: Without dead ends: 150 [2021-12-16 01:00:20,387 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-12-16 01:00:20,394 INFO L933 BasicCegarLoop]: 91 mSDtfsCounter, 157 mSDsluCounter, 300 mSDsCounter, 0 mSdLazyCounter, 81 mSolverCounterSat, 14 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 157 SdHoareTripleChecker+Valid, 391 SdHoareTripleChecker+Invalid, 95 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 14 IncrementalHoareTripleChecker+Valid, 81 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:20,407 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [157 Valid, 391 Invalid, 95 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [14 Valid, 81 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:20,409 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 150 states. [2021-12-16 01:00:20,463 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 150 to 144. [2021-12-16 01:00:20,464 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 144 states, 107 states have (on average 1.355140186915888) internal successors, (145), 121 states have internal predecessors, (145), 20 states have call successors, (20), 16 states have call predecessors, (20), 16 states have return successors, (21), 14 states have call predecessors, (21), 20 states have call successors, (21) [2021-12-16 01:00:20,465 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 144 states to 144 states and 186 transitions. [2021-12-16 01:00:20,466 INFO L78 Accepts]: Start accepts. Automaton has 144 states and 186 transitions. Word has length 24 [2021-12-16 01:00:20,466 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:20,466 INFO L470 AbstractCegarLoop]: Abstraction has 144 states and 186 transitions. [2021-12-16 01:00:20,466 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:20,466 INFO L276 IsEmpty]: Start isEmpty. Operand 144 states and 186 transitions. [2021-12-16 01:00:20,471 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 30 [2021-12-16 01:00:20,472 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:20,472 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:20,472 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-16 01:00:20,473 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:20,473 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:20,473 INFO L85 PathProgramCache]: Analyzing trace with hash -1956762765, now seen corresponding path program 1 times [2021-12-16 01:00:20,474 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:20,474 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1204651126] [2021-12-16 01:00:20,474 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:20,474 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:20,508 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:20,627 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2021-12-16 01:00:20,629 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:20,633 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:20,633 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:20,633 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1204651126] [2021-12-16 01:00:20,634 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1204651126] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:20,635 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:20,635 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-12-16 01:00:20,635 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [163435232] [2021-12-16 01:00:20,636 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:20,636 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-16 01:00:20,637 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:20,637 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-16 01:00:20,637 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2021-12-16 01:00:20,637 INFO L87 Difference]: Start difference. First operand 144 states and 186 transitions. Second operand has 8 states, 8 states have (on average 3.25) internal successors, (26), 8 states have internal predecessors, (26), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 01:00:20,858 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:20,858 INFO L93 Difference]: Finished difference Result 539 states and 740 transitions. [2021-12-16 01:00:20,859 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-12-16 01:00:20,859 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 3.25) internal successors, (26), 8 states have internal predecessors, (26), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 29 [2021-12-16 01:00:20,860 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:20,868 INFO L225 Difference]: With dead ends: 539 [2021-12-16 01:00:20,868 INFO L226 Difference]: Without dead ends: 402 [2021-12-16 01:00:20,869 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 15 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=51, Invalid=131, Unknown=0, NotChecked=0, Total=182 [2021-12-16 01:00:20,870 INFO L933 BasicCegarLoop]: 83 mSDtfsCounter, 187 mSDsluCounter, 394 mSDsCounter, 0 mSdLazyCounter, 127 mSolverCounterSat, 31 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 187 SdHoareTripleChecker+Valid, 477 SdHoareTripleChecker+Invalid, 158 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 31 IncrementalHoareTripleChecker+Valid, 127 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:20,870 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [187 Valid, 477 Invalid, 158 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [31 Valid, 127 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:20,871 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 402 states. [2021-12-16 01:00:20,915 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 402 to 387. [2021-12-16 01:00:20,916 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 387 states, 284 states have (on average 1.3274647887323943) internal successors, (377), 321 states have internal predecessors, (377), 57 states have call successors, (57), 45 states have call predecessors, (57), 45 states have return successors, (71), 39 states have call predecessors, (71), 57 states have call successors, (71) [2021-12-16 01:00:20,919 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 387 states to 387 states and 505 transitions. [2021-12-16 01:00:20,919 INFO L78 Accepts]: Start accepts. Automaton has 387 states and 505 transitions. Word has length 29 [2021-12-16 01:00:20,919 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:20,920 INFO L470 AbstractCegarLoop]: Abstraction has 387 states and 505 transitions. [2021-12-16 01:00:20,920 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 3.25) internal successors, (26), 8 states have internal predecessors, (26), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 01:00:20,920 INFO L276 IsEmpty]: Start isEmpty. Operand 387 states and 505 transitions. [2021-12-16 01:00:20,921 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2021-12-16 01:00:20,921 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:20,921 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:20,922 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-16 01:00:20,922 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:20,922 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:20,922 INFO L85 PathProgramCache]: Analyzing trace with hash 2058553646, now seen corresponding path program 1 times [2021-12-16 01:00:20,922 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:20,923 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1710113024] [2021-12-16 01:00:20,923 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:20,923 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:20,932 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:20,953 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 21 [2021-12-16 01:00:20,961 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:20,963 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:20,963 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:20,963 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1710113024] [2021-12-16 01:00:20,963 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1710113024] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:20,963 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:20,963 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-16 01:00:20,964 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1478171432] [2021-12-16 01:00:20,964 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:20,964 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-16 01:00:20,964 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:20,965 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-16 01:00:20,965 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:20,965 INFO L87 Difference]: Start difference. First operand 387 states and 505 transitions. Second operand has 3 states, 3 states have (on average 9.333333333333334) internal successors, (28), 3 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 01:00:20,983 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:20,983 INFO L93 Difference]: Finished difference Result 662 states and 885 transitions. [2021-12-16 01:00:20,984 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-16 01:00:20,984 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.333333333333334) internal successors, (28), 3 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2021-12-16 01:00:20,984 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:20,985 INFO L225 Difference]: With dead ends: 662 [2021-12-16 01:00:20,986 INFO L226 Difference]: Without dead ends: 282 [2021-12-16 01:00:20,987 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:20,988 INFO L933 BasicCegarLoop]: 49 mSDtfsCounter, 37 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 4 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 49 SdHoareTripleChecker+Invalid, 6 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 4 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:20,988 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [37 Valid, 49 Invalid, 6 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 4 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:20,989 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 282 states. [2021-12-16 01:00:21,001 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 282 to 276. [2021-12-16 01:00:21,002 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 276 states, 215 states have (on average 1.2651162790697674) internal successors, (272), 231 states have internal predecessors, (272), 30 states have call successors, (30), 30 states have call predecessors, (30), 30 states have return successors, (36), 30 states have call predecessors, (36), 30 states have call successors, (36) [2021-12-16 01:00:21,003 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 276 states to 276 states and 338 transitions. [2021-12-16 01:00:21,004 INFO L78 Accepts]: Start accepts. Automaton has 276 states and 338 transitions. Word has length 31 [2021-12-16 01:00:21,004 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:21,004 INFO L470 AbstractCegarLoop]: Abstraction has 276 states and 338 transitions. [2021-12-16 01:00:21,004 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.333333333333334) internal successors, (28), 3 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 01:00:21,004 INFO L276 IsEmpty]: Start isEmpty. Operand 276 states and 338 transitions. [2021-12-16 01:00:21,006 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2021-12-16 01:00:21,006 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:21,006 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:21,006 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-16 01:00:21,007 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:21,007 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:21,007 INFO L85 PathProgramCache]: Analyzing trace with hash 536882239, now seen corresponding path program 1 times [2021-12-16 01:00:21,008 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:21,008 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1872127612] [2021-12-16 01:00:21,008 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:21,008 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:21,019 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:21,054 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:21,056 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:21,065 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-16 01:00:21,067 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:21,070 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2021-12-16 01:00:21,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:21,075 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 17 trivial. 0 not checked. [2021-12-16 01:00:21,075 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:21,075 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1872127612] [2021-12-16 01:00:21,075 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1872127612] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-16 01:00:21,076 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [460839867] [2021-12-16 01:00:21,076 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:21,076 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-16 01:00:21,076 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 01:00:21,101 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-16 01:00:21,138 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-16 01:00:21,208 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:21,211 INFO L263 TraceCheckSpWp]: Trace formula consists of 363 conjuncts, 9 conjunts are in the unsatisfiable core [2021-12-16 01:00:21,216 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-16 01:00:21,494 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 15 proven. 2 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2021-12-16 01:00:21,494 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-12-16 01:00:21,796 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 15 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:21,796 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [460839867] provided 0 perfect and 2 imperfect interpolant sequences [2021-12-16 01:00:21,796 INFO L186 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2021-12-16 01:00:21,797 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6, 7] total 15 [2021-12-16 01:00:21,797 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [124360141] [2021-12-16 01:00:21,797 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2021-12-16 01:00:21,800 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2021-12-16 01:00:21,800 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:21,800 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2021-12-16 01:00:21,801 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=48, Invalid=162, Unknown=0, NotChecked=0, Total=210 [2021-12-16 01:00:21,801 INFO L87 Difference]: Start difference. First operand 276 states and 338 transitions. Second operand has 15 states, 15 states have (on average 5.933333333333334) internal successors, (89), 12 states have internal predecessors, (89), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2021-12-16 01:00:22,015 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:22,016 INFO L93 Difference]: Finished difference Result 373 states and 455 transitions. [2021-12-16 01:00:22,016 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-16 01:00:22,017 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 5.933333333333334) internal successors, (89), 12 states have internal predecessors, (89), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) Word has length 53 [2021-12-16 01:00:22,017 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:22,017 INFO L225 Difference]: With dead ends: 373 [2021-12-16 01:00:22,017 INFO L226 Difference]: Without dead ends: 0 [2021-12-16 01:00:22,018 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 122 GetRequests, 104 SyntacticMatches, 0 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 40 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=99, Invalid=281, Unknown=0, NotChecked=0, Total=380 [2021-12-16 01:00:22,019 INFO L933 BasicCegarLoop]: 69 mSDtfsCounter, 149 mSDsluCounter, 300 mSDsCounter, 0 mSdLazyCounter, 159 mSolverCounterSat, 56 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 149 SdHoareTripleChecker+Valid, 369 SdHoareTripleChecker+Invalid, 215 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 56 IncrementalHoareTripleChecker+Valid, 159 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:22,019 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [149 Valid, 369 Invalid, 215 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [56 Valid, 159 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:22,020 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-16 01:00:22,020 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-16 01:00:22,021 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:22,021 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-16 01:00:22,021 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 53 [2021-12-16 01:00:22,022 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:22,023 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-16 01:00:22,023 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 5.933333333333334) internal successors, (89), 12 states have internal predecessors, (89), 4 states have call successors, (10), 7 states have call predecessors, (10), 7 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2021-12-16 01:00:22,023 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-16 01:00:22,023 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-16 01:00:22,025 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-16 01:00:22,071 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-16 01:00:22,242 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable5 [2021-12-16 01:00:22,245 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-16 01:00:23,049 INFO L861 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 262 269) the Hoare annotation is: true [2021-12-16 01:00:23,049 INFO L858 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 262 269) no Hoare annotation was computed. [2021-12-16 01:00:23,049 INFO L858 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 262 269) no Hoare annotation was computed. [2021-12-16 01:00:23,049 INFO L861 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 735 746) the Hoare annotation is: true [2021-12-16 01:00:23,050 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 735 746) no Hoare annotation was computed. [2021-12-16 01:00:23,050 INFO L858 garLoopResultBuilder]: For program point L739-1(lines 735 746) no Hoare annotation was computed. [2021-12-16 01:00:23,050 INFO L858 garLoopResultBuilder]: For program point L801(line 801) no Hoare annotation was computed. [2021-12-16 01:00:23,050 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 790 819) no Hoare annotation was computed. [2021-12-16 01:00:23,051 INFO L861 garLoopResultBuilder]: At program point L800-2(lines 800 814) the Hoare annotation is: true [2021-12-16 01:00:23,051 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 790 819) the Hoare annotation is: true [2021-12-16 01:00:23,051 INFO L861 garLoopResultBuilder]: At program point L796(line 796) the Hoare annotation is: true [2021-12-16 01:00:23,051 INFO L858 garLoopResultBuilder]: For program point L796-1(line 796) no Hoare annotation was computed. [2021-12-16 01:00:23,051 INFO L861 garLoopResultBuilder]: At program point L815(lines 790 819) the Hoare annotation is: true [2021-12-16 01:00:23,051 INFO L858 garLoopResultBuilder]: For program point L811(line 811) no Hoare annotation was computed. [2021-12-16 01:00:23,052 INFO L858 garLoopResultBuilder]: For program point L804(lines 804 808) no Hoare annotation was computed. [2021-12-16 01:00:23,052 INFO L861 garLoopResultBuilder]: At program point L804-1(lines 804 808) the Hoare annotation is: true [2021-12-16 01:00:23,054 INFO L854 garLoopResultBuilder]: At program point L93(lines 88 95) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-16 01:00:23,054 INFO L858 garLoopResultBuilder]: For program point L184-1(lines 183 202) no Hoare annotation was computed. [2021-12-16 01:00:23,054 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 180 203) no Hoare annotation was computed. [2021-12-16 01:00:23,054 INFO L854 garLoopResultBuilder]: At program point L226(line 226) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-16 01:00:23,055 INFO L854 garLoopResultBuilder]: At program point L222(line 222) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-16 01:00:23,055 INFO L854 garLoopResultBuilder]: At program point L218(line 218) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-16 01:00:23,055 INFO L858 garLoopResultBuilder]: For program point L218-1(line 218) no Hoare annotation was computed. [2021-12-16 01:00:23,055 INFO L854 garLoopResultBuilder]: At program point L784(lines 779 787) the Hoare annotation is: (or (and (= ~waterLevel~0 |old(~waterLevel~0)|) (not (= 0 |timeShift_getWaterLevel_#res#1|)) (= ~pumpRunning~0 0)) (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-16 01:00:23,055 INFO L854 garLoopResultBuilder]: At program point L231(line 231) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and (= ~waterLevel~0 |old(~waterLevel~0)|) (not (= 0 ~systemActive~0)) (= ~pumpRunning~0 0)))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1))) [2021-12-16 01:00:23,057 INFO L854 garLoopResultBuilder]: At program point L231-1(lines 212 236) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and (= ~waterLevel~0 |old(~waterLevel~0)|) (not (= 0 ~systemActive~0)) (= ~pumpRunning~0 0)))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1))) [2021-12-16 01:00:23,057 INFO L858 garLoopResultBuilder]: For program point L715(lines 715 719) no Hoare annotation was computed. [2021-12-16 01:00:23,057 INFO L854 garLoopResultBuilder]: At program point L715-2(lines 711 722) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-16 01:00:23,057 INFO L858 garLoopResultBuilder]: For program point L897(lines 897 903) no Hoare annotation was computed. [2021-12-16 01:00:23,057 INFO L858 garLoopResultBuilder]: For program point L191-1(lines 191 197) no Hoare annotation was computed. [2021-12-16 01:00:23,058 INFO L854 garLoopResultBuilder]: At program point L286(lines 281 289) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) [2021-12-16 01:00:23,058 INFO L858 garLoopResultBuilder]: For program point L893(lines 893 906) no Hoare annotation was computed. [2021-12-16 01:00:23,058 INFO L858 garLoopResultBuilder]: For program point L220(lines 220 228) no Hoare annotation was computed. [2021-12-16 01:00:23,058 INFO L858 garLoopResultBuilder]: For program point L92(line 92) no Hoare annotation was computed. [2021-12-16 01:00:23,059 INFO L854 garLoopResultBuilder]: At program point L893-1(lines 885 909) the Hoare annotation is: (let ((.cse0 (and (not (= 0 |timeShift___utac_acc__Specification4_spec__1_~tmp~7#1|)) (= ~waterLevel~0 |old(~waterLevel~0)|) (not (= 0 |timeShift_getWaterLevel_#res#1|)) (= ~pumpRunning~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1))) [2021-12-16 01:00:23,059 INFO L858 garLoopResultBuilder]: For program point L216(lines 216 233) no Hoare annotation was computed. [2021-12-16 01:00:23,060 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 180 203) the Hoare annotation is: (let ((.cse0 (and (= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1) (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1))) [2021-12-16 01:00:23,060 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 180 203) no Hoare annotation was computed. [2021-12-16 01:00:23,060 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 92) no Hoare annotation was computed. [2021-12-16 01:00:23,060 INFO L858 garLoopResultBuilder]: For program point L122(lines 122 128) no Hoare annotation was computed. [2021-12-16 01:00:23,061 INFO L858 garLoopResultBuilder]: For program point L122-1(lines 122 128) no Hoare annotation was computed. [2021-12-16 01:00:23,061 INFO L858 garLoopResultBuilder]: For program point L114(lines 114 118) no Hoare annotation was computed. [2021-12-16 01:00:23,061 INFO L854 garLoopResultBuilder]: At program point L160(lines 111 161) the Hoare annotation is: false [2021-12-16 01:00:23,062 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-16 01:00:23,062 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-16 01:00:23,062 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-16 01:00:23,062 INFO L861 garLoopResultBuilder]: At program point L858(lines 851 860) the Hoare annotation is: true [2021-12-16 01:00:23,063 INFO L858 garLoopResultBuilder]: For program point L148(lines 148 154) no Hoare annotation was computed. [2021-12-16 01:00:23,063 INFO L854 garLoopResultBuilder]: At program point L338(lines 326 340) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) .cse1))) [2021-12-16 01:00:23,063 INFO L854 garLoopResultBuilder]: At program point L148-2(lines 142 155) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) .cse1))) [2021-12-16 01:00:23,065 INFO L858 garLoopResultBuilder]: For program point L330(lines 330 336) no Hoare annotation was computed. [2021-12-16 01:00:23,066 INFO L858 garLoopResultBuilder]: For program point L330-1(lines 330 336) no Hoare annotation was computed. [2021-12-16 01:00:23,066 INFO L858 garLoopResultBuilder]: For program point L871(lines 871 878) no Hoare annotation was computed. [2021-12-16 01:00:23,066 INFO L858 garLoopResultBuilder]: For program point L871-2(lines 871 878) no Hoare annotation was computed. [2021-12-16 01:00:23,066 INFO L858 garLoopResultBuilder]: For program point L132(lines 132 138) no Hoare annotation was computed. [2021-12-16 01:00:23,066 INFO L858 garLoopResultBuilder]: For program point L132-1(lines 132 138) no Hoare annotation was computed. [2021-12-16 01:00:23,066 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-16 01:00:23,067 INFO L854 garLoopResultBuilder]: At program point L157(lines 112 159) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) .cse1))) [2021-12-16 01:00:23,067 INFO L854 garLoopResultBuilder]: At program point L124(line 124) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) .cse1))) [2021-12-16 01:00:23,067 INFO L854 garLoopResultBuilder]: At program point L83(lines 78 86) the Hoare annotation is: (and (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:23,067 INFO L861 garLoopResultBuilder]: At program point L880(lines 861 883) the Hoare annotation is: true [2021-12-16 01:00:23,067 INFO L854 garLoopResultBuilder]: At program point L75(lines 71 77) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:23,067 INFO L858 garLoopResultBuilder]: For program point L113(lines 112 159) no Hoare annotation was computed. [2021-12-16 01:00:23,068 INFO L854 garLoopResultBuilder]: At program point L848(lines 844 850) the Hoare annotation is: (and (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) (= ~systemActive~0 |ULTIMATE.start_main_~tmp~6#1|) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:23,068 INFO L858 garLoopResultBuilder]: For program point L142(lines 142 155) no Hoare annotation was computed. [2021-12-16 01:00:23,068 INFO L854 garLoopResultBuilder]: At program point L332(line 332) the Hoare annotation is: false [2021-12-16 01:00:23,068 INFO L854 garLoopResultBuilder]: At program point L134(line 134) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~waterLevel~0 |ULTIMATE.start_valid_product_#res#1|) (= ~waterLevel~0 1) (= ~waterLevel~0 |ULTIMATE.start_main_~tmp~6#1|) .cse1))) [2021-12-16 01:00:23,068 INFO L854 garLoopResultBuilder]: At program point L68(lines 64 70) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:23,068 INFO L861 garLoopResultBuilder]: At program point L163(lines 102 167) the Hoare annotation is: true [2021-12-16 01:00:23,068 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 723 734) no Hoare annotation was computed. [2021-12-16 01:00:23,069 INFO L858 garLoopResultBuilder]: For program point L727-1(lines 723 734) no Hoare annotation was computed. [2021-12-16 01:00:23,069 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 723 734) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (= ~waterLevel~0 |old(~waterLevel~0)|))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 .cse1) (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1))) [2021-12-16 01:00:23,069 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__methaneQueryEXIT(lines 204 210) no Hoare annotation was computed. [2021-12-16 01:00:23,069 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__methaneQueryFINAL(lines 204 210) the Hoare annotation is: true [2021-12-16 01:00:23,069 INFO L861 garLoopResultBuilder]: At program point L752(lines 747 755) the Hoare annotation is: true [2021-12-16 01:00:23,069 INFO L861 garLoopResultBuilder]: At program point isMethaneAlarmENTRY(lines 270 280) the Hoare annotation is: true [2021-12-16 01:00:23,069 INFO L858 garLoopResultBuilder]: For program point isMethaneAlarmEXIT(lines 270 280) no Hoare annotation was computed. [2021-12-16 01:00:23,070 INFO L858 garLoopResultBuilder]: For program point isMethaneAlarmFINAL(lines 270 280) no Hoare annotation was computed. [2021-12-16 01:00:23,073 INFO L732 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1] [2021-12-16 01:00:23,074 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-16 01:00:23,102 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 16.12 01:00:23 BoogieIcfgContainer [2021-12-16 01:00:23,105 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-16 01:00:23,105 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-16 01:00:23,106 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-16 01:00:23,106 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-16 01:00:23,106 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 01:00:19" (3/4) ... [2021-12-16 01:00:23,109 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-16 01:00:23,115 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2021-12-16 01:00:23,115 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-16 01:00:23,115 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-16 01:00:23,115 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-16 01:00:23,116 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-16 01:00:23,116 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__methaneQuery [2021-12-16 01:00:23,116 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneAlarm [2021-12-16 01:00:23,129 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 48 nodes and edges [2021-12-16 01:00:23,129 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-16 01:00:23,130 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-16 01:00:23,130 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-16 01:00:23,131 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-16 01:00:23,131 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-16 01:00:23,131 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-16 01:00:23,150 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((waterLevel == \result && waterLevel == 1) && systemActive == 1) && pumpRunning == 0 [2021-12-16 01:00:23,151 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((waterLevel == \result && waterLevel == tmp) && systemActive == tmp) && systemActive == 1) && pumpRunning == 0 [2021-12-16 01:00:23,151 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((splverifierCounter == 0 && 2 <= waterLevel) && pumpRunning == 0) || ((((splverifierCounter == 0 && waterLevel == \result) && waterLevel == 1) && waterLevel == tmp) && pumpRunning == 0) [2021-12-16 01:00:23,152 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-16 01:00:23,153 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(waterLevel) == 1) || !(\old(pumpRunning) == 0)) || ((waterLevel == \old(waterLevel) && !(0 == systemActive)) && pumpRunning == 0)) && ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || ((waterLevel == \old(waterLevel) && !(0 == systemActive)) && pumpRunning == 0)) [2021-12-16 01:00:23,155 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((waterLevel == \old(waterLevel) && !(0 == \result)) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)) [2021-12-16 01:00:23,155 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((splverifierCounter == 0 && 2 <= waterLevel) && pumpRunning == 0) || ((((splverifierCounter == 0 && waterLevel == \result) && waterLevel == 1) && waterLevel == tmp) && pumpRunning == 0) [2021-12-16 01:00:23,155 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(waterLevel) == 1) || (((!(0 == tmp) && waterLevel == \old(waterLevel)) && !(0 == \result)) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) && ((!(2 <= \old(waterLevel)) || (((!(0 == tmp) && waterLevel == \old(waterLevel)) && !(0 == \result)) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) [2021-12-16 01:00:23,155 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-16 01:00:23,156 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) [2021-12-16 01:00:23,192 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-12-16 01:00:23,193 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-16 01:00:23,194 INFO L158 Benchmark]: Toolchain (without parser) took 4844.12ms. Allocated memory was 81.8MB in the beginning and 119.5MB in the end (delta: 37.7MB). Free memory was 53.5MB in the beginning and 65.9MB in the end (delta: -12.5MB). Peak memory consumption was 27.1MB. Max. memory is 16.1GB. [2021-12-16 01:00:23,194 INFO L158 Benchmark]: CDTParser took 0.22ms. Allocated memory is still 67.1MB. Free memory is still 42.5MB. There was no memory consumed. Max. memory is 16.1GB. [2021-12-16 01:00:23,194 INFO L158 Benchmark]: CACSL2BoogieTranslator took 382.69ms. Allocated memory is still 81.8MB. Free memory was 53.3MB in the beginning and 55.8MB in the end (delta: -2.4MB). Peak memory consumption was 15.9MB. Max. memory is 16.1GB. [2021-12-16 01:00:23,195 INFO L158 Benchmark]: Boogie Procedure Inliner took 64.83ms. Allocated memory is still 81.8MB. Free memory was 55.8MB in the beginning and 53.3MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-16 01:00:23,195 INFO L158 Benchmark]: Boogie Preprocessor took 59.26ms. Allocated memory is still 81.8MB. Free memory was 53.3MB in the beginning and 52.0MB in the end (delta: 1.3MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-16 01:00:23,195 INFO L158 Benchmark]: RCFGBuilder took 571.83ms. Allocated memory is still 81.8MB. Free memory was 52.0MB in the beginning and 37.3MB in the end (delta: 14.7MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. [2021-12-16 01:00:23,196 INFO L158 Benchmark]: TraceAbstraction took 3672.94ms. Allocated memory was 81.8MB in the beginning and 119.5MB in the end (delta: 37.7MB). Free memory was 36.5MB in the beginning and 71.0MB in the end (delta: -34.5MB). Peak memory consumption was 23.3MB. Max. memory is 16.1GB. [2021-12-16 01:00:23,196 INFO L158 Benchmark]: Witness Printer took 87.55ms. Allocated memory is still 119.5MB. Free memory was 71.0MB in the beginning and 65.9MB in the end (delta: 5.1MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2021-12-16 01:00:23,198 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.22ms. Allocated memory is still 67.1MB. Free memory is still 42.5MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 382.69ms. Allocated memory is still 81.8MB. Free memory was 53.3MB in the beginning and 55.8MB in the end (delta: -2.4MB). Peak memory consumption was 15.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 64.83ms. Allocated memory is still 81.8MB. Free memory was 55.8MB in the beginning and 53.3MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 59.26ms. Allocated memory is still 81.8MB. Free memory was 53.3MB in the beginning and 52.0MB in the end (delta: 1.3MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 571.83ms. Allocated memory is still 81.8MB. Free memory was 52.0MB in the beginning and 37.3MB in the end (delta: 14.7MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. * TraceAbstraction took 3672.94ms. Allocated memory was 81.8MB in the beginning and 119.5MB in the end (delta: 37.7MB). Free memory was 36.5MB in the beginning and 71.0MB in the end (delta: -34.5MB). Peak memory consumption was 23.3MB. Max. memory is 16.1GB. * Witness Printer took 87.55ms. Allocated memory is still 119.5MB. Free memory was 71.0MB in the beginning and 65.9MB in the end (delta: 5.1MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 92]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 78 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 3.5s, OverallIterations: 6, TraceHistogramMax: 2, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.8s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 550 SdHoareTripleChecker+Valid, 0.4s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 546 mSDsluCounter, 1509 SdHoareTripleChecker+Invalid, 0.3s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1047 mSDsCounter, 103 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 372 IncrementalHoareTripleChecker+Invalid, 475 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 103 mSolverCounterUnsat, 462 mSDtfsCounter, 372 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 155 GetRequests, 117 SyntacticMatches, 0 SemanticMatches, 38 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 55 ImplicationChecksByTransitivity, 0.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=387occurred in iteration=4, InterpolantAutomatonStates: 32, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 6 MinimizatonAttempts, 27 StatesRemovedByMinimization, 3 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 36 LocationsWithAnnotation, 477 PreInvPairs, 535 NumberOfFragments, 462 HoareAnnotationTreeSize, 477 FomulaSimplifications, 282 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 36 FomulaSimplificationsInter, 2222 FormulaSimplificationTreeSizeReductionInter, 0.7s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 1.0s InterpolantComputationTime, 229 NumberOfCodeBlocks, 229 NumberOfCodeBlocksAsserted, 7 NumberOfCheckSat, 274 ConstructedInterpolants, 0 QuantifiedInterpolants, 726 SizeOfPredicates, 0 NumberOfNonLiveVariables, 363 ConjunctsInSsa, 9 ConjunctsInUnsatCore, 8 InterpolantComputations, 5 PerfectInterpolantSequences, 48/54 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 326]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && 2 <= waterLevel) && pumpRunning == 0) || ((((splverifierCounter == 0 && waterLevel == \result) && waterLevel == 1) && waterLevel == tmp) && pumpRunning == 0) - InvariantResult [Line: 861]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 102]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 885]: Loop Invariant Derived loop invariant: ((!(\old(waterLevel) == 1) || (((!(0 == tmp) && waterLevel == \old(waterLevel)) && !(0 == \result)) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) && ((!(2 <= \old(waterLevel)) || (((!(0 == tmp) && waterLevel == \old(waterLevel)) && !(0 == \result)) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) - InvariantResult [Line: 790]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 779]: Loop Invariant Derived loop invariant: (((waterLevel == \old(waterLevel) && !(0 == \result)) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 747]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 112]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && 2 <= waterLevel) && pumpRunning == 0) || ((((splverifierCounter == 0 && waterLevel == \result) && waterLevel == 1) && waterLevel == tmp) && pumpRunning == 0) - InvariantResult [Line: 111]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 78]: Loop Invariant Derived loop invariant: ((waterLevel == \result && waterLevel == 1) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 851]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 71]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 844]: Loop Invariant Derived loop invariant: (((waterLevel == \result && waterLevel == tmp) && systemActive == tmp) && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 212]: Loop Invariant Derived loop invariant: ((!(\old(waterLevel) == 1) || !(\old(pumpRunning) == 0)) || ((waterLevel == \old(waterLevel) && !(0 == systemActive)) && pumpRunning == 0)) && ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || ((waterLevel == \old(waterLevel) && !(0 == systemActive)) && pumpRunning == 0)) - InvariantResult [Line: 281]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 800]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 711]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) - InvariantResult [Line: 88]: Loop Invariant Derived loop invariant: !(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel)) RESULT: Ultimate proved your program to be correct! [2021-12-16 01:00:23,264 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE